Ovrriding policies defined at root level - Sonatype Lifecycle & Repository Firewall - Sonatype Community
Ovrriding policies defined at root level
post by nitin.jain.4 on Sep 2, 2020
NITIN JAIN
1
My queries:
(1) whether user can override root polices at his application level. Lets say for particular vulnerability or license type we have defined “warning” at root level but user want to override to “failure” for his application. is this possible?
(2) if 1 is true, do we have an api to achieve same?
post by kmatthews on Sep 3, 2020
hi Nitin - The capability you describe is not currently offered within Nexus IQ. As your CSE, I will represent this to our product team. My only caveat is to permit policy actions to be overridden to an increased level of enforcement only. ie
- No Action -> Warn or Fail
- Warn -> Fail
I have a few ideas about how you might mitigate the current situation. Please reach out and we can schedule time to discuss.