Skip to content

Latest commit

 

History

History
12 lines (9 loc) · 508 Bytes

CredScan.md

File metadata and controls

12 lines (9 loc) · 508 Bytes

Suppressing CredScan Warnings

When updating the openssl submodule, new tests or code may get flagged by CredScan, and will need to be suppressed as it's 3rd party and we can't fix it.

These are the steps to silence the warnings.

  1. Look at the sdl_sources results
  2. Click on "1 artifact produced" and navigate to drop_sdl_sources/sdl_sources
  3. Download the .gdnsuppress file
  4. Copy the new warnings into openssl.gdnsuppress, sorting by the Target field
  5. Commit the changes and ingest into Windows.