Skip to content
| Marketplace
Sign in
Azure DevOps>Azure Pipelines>Container Security - dev
Container Security - dev

Container Security - dev

Aqua Security

|
15 installs
| (0) | Preview
Vulnerability scanner for container images
This extension is now unpublished from Marketplace. You can choose to uninstall it.

Software containers (Docker and other formats) are rapidly being adopted in enterprise deployments, but present unique security challenges due to the scale, agility and open nature of the container operating environment. The rapid DevOps process that is often behind container deployments, as well as the inclusion of many open source components, require tight governance of the process from the development phase and beyond.

Aqua’s container security solution was architected specifically to address the challenges of visibility, control, isolation, intrusion detection and intrusion prevention in container environments, while remaining transparent and non-intrusive to DevOps, allowing organizations to reap the business benefits of containers without increasing their risk profile.

Microsoft VSTS users can integrate with Aqua’s continuous image assurance, which is the most comprehensive, automated solution on the market for scanning and locking down container images, with deep scanning of container layers for vulnerabilities, and persistent controls to assure image integrity throughout its lifecycle.

Aqua Scan Results

What is the Aqua Security VSTS Integration?

This extension allows you to add a step to your Docker Image build process, where image can be checked for security vulnerabilities before it is pushed to your registry. Aqua Security assessment can be configured to fail the build in case it conflict with an Image Assurance policy defined in the Aqua Security Command Center.

Getting Started

  1. First you will need to install Aqua Security Command Center. Click here if you don't have the Aqua software.
  2. Install the extension
  3. Configure a "Generic Connection" to the Aqua Command Center. The connection should include the Aqua Server URL, user namd and password. Aqua Scan Results
  4. Add the container security step to your build definition, right after the step for creating a Docker image. In this step you will be asked to supply the connection to Aqua Server and the name of the image to scan.
  5. Now that Aqua image assurance is integrated into your Docker image build pipeline it will automaticall scan created images for vulnerabilities. The build will fail in case the created image has more security issues than the define trashold in Aqua Command
  • Contact us
  • Jobs
  • Privacy
  • Manage cookies
  • Terms of use
  • Trademarks
© 2025 Microsoft