jfrog / jfrog/jfrog-cli-security
On-demand binary scans don't take into account ignore rules where "Based on Artifact" is set to something other than "for any artifact"
Open
@hadarshjfrog is already working on this.
Since Feb 5, 2025.
bug
- Dominant language
- Go
- Stars
- 13
- Forks
- 50
- Avg merge
- 3d 48m
- Merged PRs (30d)
- 26
Description
Describe the bug
This has been documented in a knowledge base article for some time now, but I see nothing that says it should not officially be supported.
https://jfrog.com/help/r/xray-jf-docker-scan-watches-xx-with-ignore-rule/how-to-deal-with-it
Current behavior
See above.
Reproduction steps
See above.
Expected behavior
Basically, we want ignore rules to work with the On Demand Binary scan when marking for specific artifacts. Creates unnecessary extra work with additional ignore rules or watches and policies to properly manage the flow.
JFrog CLI version
2.48.0
Operating system type and version
Mac OS X
JFrog Artifactory version
No response
JFrog Xray version
No response
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Assessment
This issue has not been assessed yet.