DfC pre-scan possible (before pushing an image to a container)?

Smith, Patrice 0 Reputation points
2025-02-18T15:07:05.5766667+00:00

Is there a way to run a Defender for Containers like-scan before I push an image to a container? My team would like to verify that an image will pass DfC scans before pushing an image....

Azure Container Instances
Azure Container Instances
An Azure service that provides customers with a serverless container experience.
732 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,497 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Iufor 0 Reputation points
    2025-02-25T10:19:07.45+00:00

    Hello
    Yes, you may use Azure Defender's CI/CD integration or perform a local scan using Trivy or Docker Scout to perform a Microsoft Defender for Containers (DfC) scan prior to publishing an image. To find vulnerabilities early, you can combine Azure Security Center's pipeline scanning with GitHub Actions or Azure DevOps. As an alternative, examine photos locally before pushing them using the Microsoft Defender for Containers CLI.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.