Skip to content

Conversation

@tanishka-jain
Copy link

No description provided.

Epshteyn and others added 30 commits March 31, 2020 12:02
Moved publishing to Bintray into a separate pipeline.
 - and publish uaa docker image only on release branch
…irtual and public maven repos.

Remove unreachable shibboleth.net repo.
…g URL in our DTR. Allow publishing of docker image from release_4.30.0_dockerize branch.
[US435530]: Persist changes made to release dockerized version of UAA 4.30.0
 - Move Dockerfile instructions from docker.gradle into a separate Dockerfile

 - Remove dockerfile instructions for removing tomcat default
   web applications as they do not exist in the new base image.

 - Improve UAA Dockerfile

     Replace deprecated MAINTAINER instruction with LABEL

     Remove unused environment variables

     Replace ADD with COPY for basic copying of local files

     Combines RUN instructions to reduce the number of image layers
…vice broker tests in RC; catalog is empty.
rameshaviligonda and others added 17 commits October 15, 2024 12:13
…r-manual-setup-page

This small change for correcting key color to black for uniformness
removing unwanted css for button background
…pdates

Updating jenkins urls after github migration
We are building docker image in our build pipeline and image scanning is handled by the jfrog artifactory server so deleting unused gesos image build jenkinsfile.

[1] https://github.com/GESoftware-CF/uaa/blob/rc_75.18.5/Jenkinsfile#L363-L599
[2] https://dig-grid-artifactory.apps.ge.com/
To fix Bitsight findings on UAA, need to add the following csp headers
[1]

[1] https://confluence.apps.gevernova.net/devspace/display/~223036055/XSS+-+CSP
- Parameterize UAA Host in Acceptance Tests Jenkins pipeline for Blue Green deployment validation against green or blue routes

[1] https://github.software.gevernova.com/pers/uaa-k8s-deploy/pull/135
* Add csp header to uaa

To fix Bitsight findings on UAA, need to add the following csp headers
[1]

[1] https://confluence.apps.gevernova.net/devspace/display/~223036055/XSS+-+CSP
- Run sonar stages after all stages in pipeline so build can publish artifacts and docker image even if sonar fails this build.
- Quality gate->abortPipeline is set to false else all builds will fail due to less coverage percentage.

Referance, https://github.software.gevernova.com/pers/ums-ci-config/pull/16/files
* Adding CSP header with report-uri and report-only

---------

Co-authored-by: 260004147 <260004147@ge.com>
* Adding CSP header with report-uri and report-only

---------

Co-authored-by: 260004147 <260004147@ge.com>
@linux-foundation-easycla
Copy link

linux-foundation-easycla bot commented Aug 12, 2025

CLA Missing ID CLA Not Signed

Jeyaraj, Johnson and others added 4 commits August 14, 2025 15:56
Add HEAD method for reset password to prevent routing to GET method
Co-authored-by: 260004147 <260004147@ge.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Development

Successfully merging this pull request may close these issues.