Skip to content

Commit 70d5e3e

Browse files
committed
Add option to disable Jas scans
1 parent 092691b commit 70d5e3e

File tree

5 files changed

+31
-11
lines changed

5 files changed

+31
-11
lines changed

scanpullrequest/scanpullrequest.go

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -136,7 +136,8 @@ func auditPullRequest(repoConfig *utils.Repository, client vcsclient.VcsClient,
136136
SetFixableOnly(repoConfig.FixableOnly).
137137
SetFailOnInstallationErrors(*repoConfig.FailOnSecurityIssues).
138138
SetConfigProfile(repoConfig.ConfigProfile).
139-
SetSkipAutoInstall(repoConfig.SkipAutoInstall)
139+
SetSkipAutoInstall(repoConfig.SkipAutoInstall).
140+
SetDisableJas(repoConfig.DisableJas)
140141
if scanDetails, err = scanDetails.SetMinSeverity(repoConfig.MinSeverity); err != nil {
141142
return
142143
}

scanrepository/scanrepository.go

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -4,13 +4,14 @@ import (
44
"context"
55
"errors"
66
"fmt"
7-
"github.com/go-git/go-git/v5"
8-
biutils "github.com/jfrog/build-info-go/utils"
97
"os"
108
"path/filepath"
119
"regexp"
1210
"strings"
1311

12+
"github.com/go-git/go-git/v5"
13+
biutils "github.com/jfrog/build-info-go/utils"
14+
1415
"github.com/jfrog/frogbot/v2/packagehandlers"
1516
"github.com/jfrog/frogbot/v2/utils"
1617
"github.com/jfrog/frogbot/v2/utils/outputwriter"
@@ -123,8 +124,7 @@ func (cfp *ScanRepositoryCmd) setCommandPrerequisites(repository *utils.Reposito
123124
SetFailOnInstallationErrors(*repository.FailOnSecurityIssues).
124125
SetFixableOnly(repository.FixableOnly).
125126
SetSkipAutoInstall(repository.SkipAutoInstall).
126-
SetFixableOnly(repository.FixableOnly).
127-
SetAllowPartialResults(repository.AllowPartialResults)
127+
SetAllowPartialResults(repository.AllowPartialResults).SetDisableJas(repository.DisableJas)
128128
if cfp.scanDetails, err = cfp.scanDetails.SetMinSeverity(repository.MinSeverity); err != nil {
129129
return
130130
}

utils/consts.go

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -61,6 +61,7 @@ const (
6161
DepsRepoEnv = "JF_DEPS_REPO"
6262
MinSeverityEnv = "JF_MIN_SEVERITY"
6363
FixableOnlyEnv = "JF_FIXABLE_ONLY"
64+
DisableJasEnv = "JF_DISABLE_ADVANCE_SECURITY"
6465
DetectionOnlyEnv = "JF_SKIP_AUTOFIX"
6566
AllowedLicensesEnv = "JF_ALLOWED_LICENSES"
6667
SkipAutoInstallEnv = "JF_SKIP_AUTO_INSTALL"

utils/params.go

Lines changed: 11 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -4,17 +4,18 @@ import (
44
"context"
55
"errors"
66
"fmt"
7-
"github.com/jfrog/jfrog-cli-security/utils/techutils"
8-
"github.com/jfrog/jfrog-cli-security/utils/xsc"
9-
"github.com/jfrog/jfrog-client-go/xsc/services"
10-
"golang.org/x/exp/slices"
117
"net/http"
128
"net/url"
139
"os"
1410
"path/filepath"
1511
"strconv"
1612
"strings"
1713

14+
"github.com/jfrog/jfrog-cli-security/utils/techutils"
15+
"github.com/jfrog/jfrog-cli-security/utils/xsc"
16+
"github.com/jfrog/jfrog-client-go/xsc/services"
17+
"golang.org/x/exp/slices"
18+
1819
"github.com/jfrog/frogbot/v2/utils/outputwriter"
1920
securityutils "github.com/jfrog/jfrog-cli-security/utils"
2021
"github.com/jfrog/jfrog-cli-security/utils/severityutils"
@@ -153,6 +154,7 @@ type Scan struct {
153154
FailOnSecurityIssues *bool `yaml:"failOnSecurityIssues,omitempty"`
154155
AvoidPreviousPrCommentsDeletion bool `yaml:"avoidPreviousPrCommentsDeletion,omitempty"`
155156
MinSeverity string `yaml:"minSeverity,omitempty"`
157+
DisableJas bool `yaml:"disableJas,omitempty"`
156158
AllowedLicenses []string `yaml:"allowedLicenses,omitempty"`
157159
Projects []Project `yaml:"projects,omitempty"`
158160
EmailDetails `yaml:",inline"`
@@ -213,6 +215,11 @@ func (s *Scan) setDefaultsIfNeeded() (err error) {
213215
return
214216
}
215217
}
218+
if !s.DisableJas {
219+
if s.DisableJas, err = getBoolEnv(DisableJasEnv, false); err != nil {
220+
return
221+
}
222+
}
216223
if !s.DetectionOnly {
217224
if s.DetectionOnly, err = getBoolEnv(DetectionOnlyEnv, false); err != nil {
218225
return

utils/scandetails.go

Lines changed: 13 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,11 @@ import (
44
"context"
55
"errors"
66
"fmt"
7-
clientservices "github.com/jfrog/jfrog-client-go/xsc/services"
87
"os"
98
"path/filepath"
109

10+
clientservices "github.com/jfrog/jfrog-client-go/xsc/services"
11+
1112
"github.com/jfrog/froggit-go/vcsclient"
1213
"github.com/jfrog/jfrog-cli-core/v2/utils/config"
1314
"github.com/jfrog/jfrog-cli-core/v2/utils/coreutils"
@@ -28,6 +29,7 @@ type ScanDetails struct {
2829
client vcsclient.VcsClient
2930
failOnInstallationErrors bool
3031
fixableOnly bool
32+
disableJas bool
3133
skipAutoInstall bool
3234
minSeverityFilter severityutils.Severity
3335
baseBranch string
@@ -39,6 +41,11 @@ func NewScanDetails(client vcsclient.VcsClient, server *config.ServerDetails, gi
3941
return &ScanDetails{client: client, ServerDetails: server, Git: git}
4042
}
4143

44+
func (sc *ScanDetails) SetDisableJas(disable bool) *ScanDetails {
45+
sc.disableJas = disable
46+
return sc
47+
}
48+
4249
func (sc *ScanDetails) SetFailOnInstallationErrors(toFail bool) *ScanDetails {
4350
sc.failOnInstallationErrors = toFail
4451
return sc
@@ -107,6 +114,10 @@ func (sc *ScanDetails) FixableOnly() bool {
107114
return sc.fixableOnly
108115
}
109116

117+
func (sc *ScanDetails) DisableJas() bool {
118+
return sc.disableJas
119+
}
120+
110121
func (sc *ScanDetails) MinSeverityFilter() severityutils.Severity {
111122
return sc.minSeverityFilter
112123
}
@@ -186,7 +197,7 @@ func (sc *ScanDetails) RunInstallAndAudit(workDirs ...string) (auditResults *res
186197
SetGraphBasicParams(auditBasicParams).
187198
SetCommonGraphScanParams(sc.CreateCommonGraphScanParams()).
188199
SetConfigProfile(sc.configProfile)
189-
auditParams.SetExclusions(sc.PathExclusions).SetIsRecursiveScan(sc.IsRecursiveScan)
200+
auditParams.SetExclusions(sc.PathExclusions).SetIsRecursiveScan(sc.IsRecursiveScan).SetUseJas(!sc.DisableJas())
190201

191202
auditResults, err = audit.RunAudit(auditParams)
192203

0 commit comments

Comments
 (0)