VeriBOM User Guide
  • Getting Started
    • Introduction
    • Signup up for VeriBOM as an Organization
    • Login to VeriBOM as an Organization
  • SBOM Concepts
  • Product Management
    • Adding Product
    • Editing Product
    • Deletion of Product
    • Additional Notes
  • Connection Management
    • Adding Connection as Publisher
    • Adding Connection as Auditor
    • Editing Connection
    • Deletion of Connection
  • Project and SBOM Management
    • Adding Project
    • Scan Sources Integration
      • Source Code Upload
      • SCM Integration - GitHub
      • Container Image Scanning
      • CI/CD Integration - Jenkins
      • Container Orchestration Platforms
    • Initiating SBOM Scans
    • Publishing SBOMs
    • Editing Project
    • Deletion of Project
  • User Management
    • Adding User
    • Editing User
    • Deletion of User
  • Roles and Permissions Management
    • Predefined Roles and Permission
    • Custom Roles and Permission
      • Permissions Hierarchy
  • Organization Types
    • Sending Invitation Request to Organization From Partner Portal
    • Sending Invitation Request to Partner From Partner Portal
    • Free Publisher
    • Publisher
    • Auditor
  • Appendices
    • Contact Information
    • Glossary
    • Troubleshooting
    • Frequently Asked Questions (FAQ)
    • VeriBOM Video Guides
    • Best Practices
    • References
    • Supported Languages and Manifests
Powered by GitBook
On this page
  1. Project and SBOM Management
  2. Scan Sources Integration

Container Image Scanning

Overview: Scanning container images for SBOM is essential, especially in containerized environments. Integrating VeriBOM with container image scanning tools enhances security by identifying vulnerable components.

Steps for Container Image Scanning Integration:

  1. Access VeriBOM: Start by logging in to VeriBOM using your authorized credentials.

  2. Navigate to the container image scanning integration settings option in the Source Type section.

  3. Connect your container registry to the VeriBOM.

  4. Configure scanning policies and repositories.

  5. When new container images are built, the scanning tool will update SBOMs accordingly.

PreviousSCM Integration - GitHubNextCI/CD Integration - Jenkins

Last updated 1 year ago