Use the Plugin

Qualys recommends setting up the Qualys Container Scanning Connector after the container image is built and before it is pushed to the registry.

Ensure that you do not delete the image before the plugin setup is complete.

You can use this plugin as a task in your Azure DevOps pipeline. After installing the Qualys Container Scanning Connector, you see this plugin as a task in your pipeline.

Perform the following steps to start using the plugin:

  1. In the Tasks tab, click Add Task under your agent job.
  2. Search for 'Qualys' to get the 'Scan container images with Qualys CS Plugin' task.
  3. Select the task and click Add to add it as a task.
  4. You can see the task under the agent.

    add_task

  5. Click 'Scan container images with Qualys CS Plugin' task.
  6. Configure the plugin. For more information refer to Enter Configuration Details page.

    config_screen1

Next Step

Define Container Image IDs