Container Scanning Tools for Vulnerability Management
To configure the images, set the CS_IMAGE_SUFFIX to -fips or modify the CS_ANALYZER_IMAGE variable to the standard tag plus the -fips extension. GitLab also offers FIPS-enabled Red Hat UBI versions of the container-scanning images. The Grype analyzer is no longer maintained, except for limited fixes as explained in the GitLab…
