sonar扫描代码的三种途径
下载sonar-scanner
下载地址:
https://docs.sonarqube.org/latest/analysis/scan/sonarscanner/
配置sonar-scanner
环境变量的配置:
验证配置成功
命令行输入sonar-scanner -version,出现下面界面表示sonar-scanner安装配置成功。
使用sonar-scanner
1.到要检查的代码根目录下创建文件sonar-project.properties
# must be unique in a given SonarQube instance
sonar.projectKey=study
# this is the name and version displayed in the SonarQube UI. Was mandatory prior to SonarQube 6.1.
sonar.projectName=study
sonar.projectVersion=1.0
# Path is relative to the sonar-project.properties file. Replace "\" by "/" on Windows.
# This property is optional if sonar.modules is set.
sonar.sources=./src
sonar.java.binaries=./target/classes
sonar.language=java
# Encoding of the source code. Default is default system encoding
#sonar.sourceEncoding=UTF-8
2.命令行到要检查的代码目录下,输入命令:sonar-scanner
检查的结果直接可以在浏览器SonarQube
上查看