Prisma Cloud Compute: "Last downloaded" field is updated by Prisma Cloud with every scan cycle in JFrog Artifactory
2636
Created On 07/15/24 11:39 AM - Last Modified 12/09/24 18:49 PM
Symptom
When performing a registry scan of an onboarded JFrog Artifactory, the process is performed as intended and the results are presented correctly; however, with every scanning cycle the "last downloaded" field is updated for all of the scanned images, regardless of whether the SHA of the image was updated or not.
Environment
- Prisma Cloud Self-hosted
- Jfrog Artifactory
- OpenShift
Cause
The "last downloaded" date is adjusted because the image is being downloaded and re-scanned with every scanning cycle, even though the SHA of the image has not changed since the last scanning cycle.
Additionally, the following message is found in the logs:
"scanner.go:<id> Cached content not found for image <image name>"
Resolution
The root cause of the issue is currently unknown; as a workaround to images being scanned during every cycle, try implementing additional collections and limiting the frequency of the registry scans.