From 4a32a83d32c3d99dfd88a8aa91f53a1136a773b1 Mon Sep 17 00:00:00 2001 From: Georgy Yakovlev Date: Sun, 19 Dec 2021 23:30:41 -0800 Subject: Move {app-emulation -> app-containers}/docker-bench-security Signed-off-by: Georgy Yakovlev --- app-containers/docker-bench-security/Manifest | 2 ++ .../docker-bench-security-1.3.2.ebuild | 24 ++++++++++++++++++++++ .../docker-bench-security-1.3.3.ebuild | 24 ++++++++++++++++++++++ .../files/docker-bench-security | 7 +++++++ app-containers/docker-bench-security/metadata.xml | 12 +++++++++++ 5 files changed, 69 insertions(+) create mode 100644 app-containers/docker-bench-security/Manifest create mode 100644 app-containers/docker-bench-security/docker-bench-security-1.3.2.ebuild create mode 100644 app-containers/docker-bench-security/docker-bench-security-1.3.3.ebuild create mode 100644 app-containers/docker-bench-security/files/docker-bench-security create mode 100644 app-containers/docker-bench-security/metadata.xml (limited to 'app-containers/docker-bench-security') diff --git a/app-containers/docker-bench-security/Manifest b/app-containers/docker-bench-security/Manifest new file mode 100644 index 000000000000..343ff9b85b6d --- /dev/null +++ b/app-containers/docker-bench-security/Manifest @@ -0,0 +1,2 @@ +DIST docker-bench-security-1.3.2.tar.gz 414608 BLAKE2B 27977df473c341783aab400bbe5064e267d6f53aa62ffd6f95386572e059616750eb06b98ad3044efaf565f929e6ebfb5d57607b227718032fa33d70ce65eed5 SHA512 7d271167584ff99fdaff15b1d303f1cedeb5888057437cc3bfae8260aff96f98d8a0173c4d4e5718bf8ee4e0ffe3ae0280f0026cf386ae32c38e8302159a2226 +DIST docker-bench-security-1.3.3.tar.gz 274361 BLAKE2B b0a3fef0fedd7353a11f18603af0a9bd5a9c5674df8e0c2988f3b7430739b1fe1c37b3bc29323f39604e8f9d3af66e4a64b97c1e4bb1ef253cc39e9b1e1cb6e2 SHA512 0b9a8bb3cc0bf0887f3b3462c3529568f6cc4d327f66fe482ceb24865a3df51ffee48a1a12c93ca13401f23bf1cd47b3e8b25c99537f63a823ff173d54994fe9 diff --git a/app-containers/docker-bench-security/docker-bench-security-1.3.2.ebuild b/app-containers/docker-bench-security/docker-bench-security-1.3.2.ebuild new file mode 100644 index 000000000000..6e423e8ccc19 --- /dev/null +++ b/app-containers/docker-bench-security/docker-bench-security-1.3.2.ebuild @@ -0,0 +1,24 @@ +# Copyright 1999-2017 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 + +EAPI=6 + +DESCRIPTION="Test for best practices around deploying docker containers" +HOMEPAGE="https://github.com/docker/docker-bench-security" +SRC_URI="https://github.com/docker/${PN}/archive/v${PV}.tar.gz -> ${P}.tar.gz" + +LICENSE="Apache-2.0" +SLOT="0" +KEYWORDS="~amd64" + +RDEPEND=">=app-emulation/docker-1.10" + +src_install() { +dobin "${FILESDIR}/docker-bench-security" +exeinto /usr/lib/${PN} +doexe ${PN}.sh +insinto /usr/lib/${PN} +doins -r *lib.sh tests + dodoc -r benchmark_log.png CONTRIBUTING.md distros docker-compose.yml \ + Dockerfile MAINTAINERS README.md +} diff --git a/app-containers/docker-bench-security/docker-bench-security-1.3.3.ebuild b/app-containers/docker-bench-security/docker-bench-security-1.3.3.ebuild new file mode 100644 index 000000000000..6e423e8ccc19 --- /dev/null +++ b/app-containers/docker-bench-security/docker-bench-security-1.3.3.ebuild @@ -0,0 +1,24 @@ +# Copyright 1999-2017 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 + +EAPI=6 + +DESCRIPTION="Test for best practices around deploying docker containers" +HOMEPAGE="https://github.com/docker/docker-bench-security" +SRC_URI="https://github.com/docker/${PN}/archive/v${PV}.tar.gz -> ${P}.tar.gz" + +LICENSE="Apache-2.0" +SLOT="0" +KEYWORDS="~amd64" + +RDEPEND=">=app-emulation/docker-1.10" + +src_install() { +dobin "${FILESDIR}/docker-bench-security" +exeinto /usr/lib/${PN} +doexe ${PN}.sh +insinto /usr/lib/${PN} +doins -r *lib.sh tests + dodoc -r benchmark_log.png CONTRIBUTING.md distros docker-compose.yml \ + Dockerfile MAINTAINERS README.md +} diff --git a/app-containers/docker-bench-security/files/docker-bench-security b/app-containers/docker-bench-security/files/docker-bench-security new file mode 100644 index 000000000000..3a79d1b3af4d --- /dev/null +++ b/app-containers/docker-bench-security/files/docker-bench-security @@ -0,0 +1,7 @@ +#!/bin/sh +if [ $(id -u) -ne 0 ]; then + printf "%s\n" "This script must be run as root." + exit 1 +fi +cd "$(dirname $0)/../lib/docker-bench-security" +./docker-bench-security.sh diff --git a/app-containers/docker-bench-security/metadata.xml b/app-containers/docker-bench-security/metadata.xml new file mode 100644 index 000000000000..cbef0562c18d --- /dev/null +++ b/app-containers/docker-bench-security/metadata.xml @@ -0,0 +1,12 @@ + + + + + williamh@gentoo.org + William Hubbs + + + The Docker Bench for Security is a script that checks for dozens of + common best-practices around deploying Docker containers in production. + + -- cgit v1.2.3-65-gdbad