Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[FEATURE]: Upgrade docker versions automatically #19

Closed
lejouson opened this issue May 31, 2023 · 1 comment · Fixed by #22 or #25
Closed

[FEATURE]: Upgrade docker versions automatically #19

lejouson opened this issue May 31, 2023 · 1 comment · Fixed by #22 or #25
Assignees
Labels
enhancement New feature or request

Comments

@lejouson
Copy link
Owner

Is your feature request related to a problem? Please describe.
The Dockerfile manifest has fixed versions for security. However this causes problems when building the image from scratch as versions must be upgraded or the process fails.

Describe the solution you'd like
Automatically upgrade versions in order to make build process straight forward.

Describe alternatives you've considered
Enable dependabot.

@lejouson lejouson added the enhancement New feature or request label May 31, 2023
@lejouson lejouson self-assigned this May 31, 2023
@lejouson lejouson mentioned this issue Jun 1, 2023
3 tasks
@lejouson
Copy link
Owner Author

lejouson commented Jun 7, 2023

This is not supported by now: dependabot/dependabot-core#2129

However, I should pin the alpine version and update package versions when dependabot opens a pull request.

@lejouson lejouson reopened this Jun 7, 2023
@lejouson lejouson mentioned this issue Jun 11, 2023
4 tasks
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
enhancement New feature or request
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant