Skip to content
Snippets Groups Projects

Resolve "Integrate dependency-check container with Sonarqube"

Compare and Show latest version
1 file
+ 33
1
Compare changes
  • Side-by-side
  • Inline
+ 33
1
@@ -2,9 +2,18 @@ stages:
- verify
- build
- test
- test:npm_install
- test:dependency_checker
- publish
- security
cache:
key: ${CI_COMMIT_REF_SLUG}
paths:
- t/dependency-check/simple-app/node_modules/
- t/dependency-check/simple-app/dependency_check_results/
policy: pull-push
.Check Makefile:
stage: verify
tags:
@@ -35,11 +44,34 @@ stages:
- docker run --rm its-registry.unl.edu/unl-its/docker-ci/static-code-analysis sonar-scanner -v
- docker run --rm -v "${PWD}:/work" -w /work its-registry.unl.edu/unl-its/docker-ci/detect-secrets -s
Test Dependency Checker:
Test Dependency Checker npm install:
stage: test:npm_install
tags:
- docker
image: node:alpine
script:
- cd t/dependency-check/simple-app/
- npm install
Test Dependency Checker dependency_check:
stage: test:dependency_checker
tags:
- docker
image: its-registry.unl.edu/unl-its/docker-ci/dependency-check
script:
- cd t/dependency-check/simple-app/
- ls -al
- dependency-check.sh --format ALL -s ./ --out ./dependency_check_results/ --project ${CI_PROJECT_NAMESPACE} -n
- echo "???"
- ls -al
.Test Dependency Checker:
stage: test
tags:
- dockerd
script:
- ls -al
- docker run --rm -v "${PWD}/t/dependency-check/simple-app:/work" -w /work --entrypoint "/bin/ls -al" node:alpine npm install
- docker run --rm -v "${PWD}/t/dependency-check/simple-app:/work" -w /work node:alpine npm install
- docker run --rm -v "${PWD}/t/dependency-check/simple-app:/work" -w /work -e DEPENDENCY_CHECK_OUT_DIR=./ its-registry.unl.edu/unl-its/docker-ci/dependency-check
- docker run --rm -v "${PWD}:/work" -w /work its-registry.unl.edu/unl-its/docker-ci/static-code-analysis sonar-scanner -Dsonar.host.url=$SONAR_URL -Dsonar.projectKey=$CI_PROJECT_PATH_SLUG -Dsonar.sources=. -Dsonar.login=$SONAR_TOKEN -Dsonar.dependencyCheck.reportPath=dependency-check-report.xml -Dsonar.dependencyCheck.htmlReportPath=dependency-check-report.html
Loading