From b08ce2454fffb0328c23e2768dfb95aa781ce3cd Mon Sep 17 00:00:00 2001 From: Atomist Bot Date: Fri, 7 Oct 2022 01:36:45 +0000 Subject: [PATCH 1/2] Pin Docker image maven:3.8.5-eclipse-temurin-17 --platform=$BUILDPLATFORM -> maven:3.8.5-eclipse-temurin-17@sha256:a554849fd74b733acb76379bd7df0ea26635a48ab9b54ede1e94bbeaaf448cf6 [atomist:generated] [atomist-skill:atomist/docker-base-image-policy] Signed-off-by: Atomist Bot --- sparkjava-mysql/backend/Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/sparkjava-mysql/backend/Dockerfile b/sparkjava-mysql/backend/Dockerfile index 0d9e7e7..9cfbf44 100755 --- a/sparkjava-mysql/backend/Dockerfile +++ b/sparkjava-mysql/backend/Dockerfile @@ -1,6 +1,6 @@ # syntax=docker/dockerfile:1.4 -FROM --platform=$BUILDPLATFORM maven:3.8.5-eclipse-temurin-17 AS build +FROM --platform=$BUILDPLATFORM maven:3.8.5-eclipse-temurin-17@sha256:a554849fd74b733acb76379bd7df0ea26635a48ab9b54ede1e94bbeaaf448cf6 AS build WORKDIR /workdir/server COPY pom.xml /workdir/server/pom.xml RUN mvn dependency:go-offline From 0d49289c9f414def91dcf11cc2737d4f85cd5e26 Mon Sep 17 00:00:00 2001 From: Atomist Bot Date: Fri, 7 Oct 2022 01:36:45 +0000 Subject: [PATCH 2/2] Pin Docker image eclipse-temurin:17-jre-focal eclipse-temurin:17-jre-focal -> eclipse-temurin:17-jre-focal@sha256:55c1ff40a91898c456dc5a874a66db17b6aa1b4aef8d9cac1ad3b194575638a1 [atomist:generated] [atomist-skill:atomist/docker-base-image-policy] Signed-off-by: Atomist Bot --- sparkjava-mysql/backend/Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/sparkjava-mysql/backend/Dockerfile b/sparkjava-mysql/backend/Dockerfile index 9cfbf44..b87bbf8 100755 --- a/sparkjava-mysql/backend/Dockerfile +++ b/sparkjava-mysql/backend/Dockerfile @@ -24,7 +24,7 @@ EOF COPY --from=gloursdocker/docker / / CMD ["java", "-jar", "target/app.jar" ] -FROM eclipse-temurin:17-jre-focal +FROM eclipse-temurin:17-jre-focal@sha256:55c1ff40a91898c456dc5a874a66db17b6aa1b4aef8d9cac1ad3b194575638a1 ARG DEPENDENCY=/workdir/server/target EXPOSE 8080 COPY --from=build ${DEPENDENCY}/app.jar /app.jar