Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Move checkmarx/kics:gh-action-kics1.7 out of DockerHub #103

Open
gpaulfleetwood opened this issue Feb 1, 2024 · 0 comments
Open

Move checkmarx/kics:gh-action-kics1.7 out of DockerHub #103

gpaulfleetwood opened this issue Feb 1, 2024 · 0 comments

Comments

@gpaulfleetwood
Copy link

Hi Team,
We have many projects and workflows and I have rolled out KICS as Dockerfile scanner. We are starting to see DockerHub rate limit errors at peak build times. I think it is related to the Dockerfile pulls an image with each GitHub Action run of kics-github-action.

The Dockerfile has the FROM as the following, which is pulling from DockerHub:
FROM checkmarx/kics:gh-action-kics1.7

In GitHub Actions we see this error:

Build container for action use: '/runner/_work/_actions/checkmarx/kics-github-action/v1.7.0/Dockerfile'.
  /usr/local/bin/docker build -t cb6c97:92d05c25b4fe44ca831a6ff9b1489e29 -f "/runner/_work/_actions/checkmarx/kics-github-action/v1.7.0/Dockerfile" "/runner/_work/_actions/checkmarx/kics-github-action/v1.7.0"
  DEPRECATED: The legacy builder is deprecated and will be removed in a future release.
              Install the buildx component to build images with BuildKit:
              https://docs.docker.com/go/buildx/
  
  Sending build context to Docker daemon  948.7kB
  
  Step 1/5 : FROM checkmarx/kics:gh-action-kics1.7
  toomanyrequests: You have reached your pull rate limit. You may increase the limit by authenticating and upgrading: https://www.docker.com/increase-rate-limit
  Warning: Docker build failed with exit code 1, back off 9.139 seconds before retry.

Other Marketplace Actions I have checked use ghcr.io or quay.io instead of DockerHub, probably to avoid the rate limit issue.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant