mirror of
https://github.com/jung-geun/DynamicDNS-SSL.git
synced 2025-12-19 20:44:40 +09:00
Refactor file paths in Makefile, run_script.sh, and start.sh
This commit is contained in:
@@ -1,45 +1,8 @@
|
|||||||
variables:
|
|
||||||
SONAR_USER_HOME: "${CI_PROJECT_DIR}/.sonar" # Defines the location of the analysis task cache
|
|
||||||
GIT_DEPTH: "0" # Tells git to fetch all the branches of the project, required by the analysis task
|
|
||||||
|
|
||||||
stages:
|
stages:
|
||||||
- sonarqube-check
|
- sonarqube-check
|
||||||
- sonarqube-vulnerability-report
|
- sonarqube-vulnerability-report
|
||||||
|
include:
|
||||||
sonarqube-check:
|
- local: .gitlab/ci/*.gitlab-ci.yml
|
||||||
stage: sonarqube-check
|
- template: Jobs/Dependency-Scanning.latest.gitlab-ci.yml
|
||||||
image:
|
- template: Jobs/SAST.latest.gitlab-ci.yml
|
||||||
name: sonarsource/sonar-scanner-cli:11.0
|
- template: Jobs/Secret-Detection.gitlab-ci.yml
|
||||||
entrypoint: [""]
|
|
||||||
variables:
|
|
||||||
SONAR_USER_HOME: "${CI_PROJECT_DIR}/.sonar" # Defines the location of the analysis task cache
|
|
||||||
GIT_DEPTH: "0" # Tells git to fetch all the branches of the project, required by the analysis task
|
|
||||||
cache:
|
|
||||||
key: "${CI_JOB_NAME}"
|
|
||||||
paths:
|
|
||||||
- .sonar/cache
|
|
||||||
script:
|
|
||||||
- sonar-scanner
|
|
||||||
allow_failure: true
|
|
||||||
only:
|
|
||||||
- merge_requests
|
|
||||||
- master
|
|
||||||
- main
|
|
||||||
- develop
|
|
||||||
|
|
||||||
sonarqube-vulnerability-report:
|
|
||||||
stage: sonarqube-vulnerability-report
|
|
||||||
script:
|
|
||||||
- 'curl -u "${SONAR_TOKEN}:" "${SONAR_HOST_URL}/api/issues/gitlab_sast_export?projectKey=pieroot_cloudflare-ddns_AZIFhiXEwbr_NxNtXMWZ&branch=${CI_COMMIT_BRANCH}&pullRequest=${CI_MERGE_REQUEST_IID}" -o gl-sast-sonar-report.json'
|
|
||||||
allow_failure: true
|
|
||||||
only:
|
|
||||||
- merge_requests
|
|
||||||
- master
|
|
||||||
- main
|
|
||||||
- develop
|
|
||||||
artifacts:
|
|
||||||
expire_in: 1 day
|
|
||||||
reports:
|
|
||||||
sast: gl-sast-sonar-report.json
|
|
||||||
dependencies:
|
|
||||||
- sonarqube-check
|
|
||||||
41
.gitlab/ci/sonarqube.gitlab-ci.yml
Normal file
41
.gitlab/ci/sonarqube.gitlab-ci.yml
Normal file
@@ -0,0 +1,41 @@
|
|||||||
|
variables:
|
||||||
|
SONAR_USER_HOME: "${CI_PROJECT_DIR}/.sonar" # Defines the location of the analysis task cache
|
||||||
|
GIT_DEPTH: "0" # Tells git to fetch all the branches of the project, required by the analysis task
|
||||||
|
|
||||||
|
sonarqube-check:
|
||||||
|
stage: sonarqube-check
|
||||||
|
image:
|
||||||
|
name: sonarsource/sonar-scanner-cli:11.0
|
||||||
|
entrypoint: [""]
|
||||||
|
variables:
|
||||||
|
SONAR_USER_HOME: "${CI_PROJECT_DIR}/.sonar" # Defines the location of the analysis task cache
|
||||||
|
GIT_DEPTH: "0" # Tells git to fetch all the branches of the project, required by the analysis task
|
||||||
|
cache:
|
||||||
|
key: "${CI_JOB_NAME}"
|
||||||
|
paths:
|
||||||
|
- .sonar/cache
|
||||||
|
script:
|
||||||
|
- sonar-scanner
|
||||||
|
allow_failure: true
|
||||||
|
only:
|
||||||
|
- merge_requests
|
||||||
|
- master
|
||||||
|
- main
|
||||||
|
- develop
|
||||||
|
|
||||||
|
sonarqube-vulnerability-report:
|
||||||
|
stage: sonarqube-vulnerability-report
|
||||||
|
script:
|
||||||
|
- 'curl -u "${SONAR_TOKEN}:" "${SONAR_HOST_URL}/api/issues/gitlab_sast_export?projectKey=pieroot_cloudflare-ddns_AZIFhiXEwbr_NxNtXMWZ&branch=${CI_COMMIT_BRANCH}&pullRequest=${CI_MERGE_REQUEST_IID}" -o gl-sast-sonar-report.json'
|
||||||
|
allow_failure: true
|
||||||
|
only:
|
||||||
|
- merge_requests
|
||||||
|
- master
|
||||||
|
- main
|
||||||
|
- develop
|
||||||
|
artifacts:
|
||||||
|
expire_in: 1 day
|
||||||
|
reports:
|
||||||
|
sast: gl-sast-sonar-report.json
|
||||||
|
dependencies:
|
||||||
|
- sonarqube-check
|
||||||
Reference in New Issue
Block a user