diff options
author | Cédric Ollivier <cedric.ollivier@orange.com> | 2019-05-25 11:03:40 +0200 |
---|---|---|
committer | Cédric Ollivier <cedric.ollivier@orange.com> | 2019-05-25 11:29:32 +0200 |
commit | c659caccbf1f55db4e6e3cb31bf088ac57751e86 (patch) | |
tree | ab2f9a3bcf47543badb8e82538d8cce29ee9a414 | |
parent | 12aa6e34ec1f388a40cb5a00826729f7c0d6f201 (diff) |
Run bandit when verifying changes
It reports only MEDIUM issues or higher like nova [1].
It selects bandit 1.1.0 as defined in nova and neutron lower
constraints [2].
[1] https://github.com/openstack/nova/blob/master/tox.ini#L221
[2] https://github.com/openstack/nova/blob/master/lower-constraints.txt#L8
Change-Id: I52524df867d99fae75798475c762a5f8253dacfa
Signed-off-by: Cédric Ollivier <cedric.ollivier@orange.com>
-rw-r--r-- | test-requirements.txt | 1 | ||||
-rw-r--r-- | tox.ini | 4 | ||||
-rw-r--r-- | upper-constraints.txt | 1 |
3 files changed, 6 insertions, 0 deletions
diff --git a/test-requirements.txt b/test-requirements.txt index 0cfead31..bac66abe 100644 --- a/test-requirements.txt +++ b/test-requirements.txt @@ -12,3 +12,4 @@ yamllint doc8 # Apache-2.0 bashate # Apache-2.0 ansible-lint +bandit @@ -57,6 +57,10 @@ files = build.sh commands = bashate {[testenv:bashate]files} +[testenv:bandit] +basepython = python2.7 +commands = bandit -r xtesting -x tests -n 5 -ll -s B602 + [testenv:cover] basepython = python2.7 dirs = diff --git a/upper-constraints.txt b/upper-constraints.txt index 2ef26717..8b12ecc6 100644 --- a/upper-constraints.txt +++ b/upper-constraints.txt @@ -1 +1,2 @@ robotframework===3.1.1 +bandit===1.1.0 |