This project is analysed on SonarCloud!
It is very easy to analyze a C, C++ and Objective-C project with SonarCloud on GitLab CI:
-
Create a
sonar-project.properties
file to store your configuration -
In your
.gitlab-ci.yml
file:-
As the
.pre
stage:-
Download the Sonar Scanner
-
Download the Build Wrapper
-
Push both binaries to cache, so they can be used in next step
-
-
As part of the
build
stage:-
Install cmake package
-
Pull Sonar Scanner and Build Wrapper from cache
-
Wrap your compilation with the Build Wrapper
-
Push Sonar Scanner and build Wrapper output directory to the cache
-
-
As part of the
.post
stage:-
Pull build wrapper output and Sonar Scanner from cache
-
Run
sonar-scanner
on thecompile_commands.json
file inside of the build wrapper output directory
-
-
-
Make sure that you have your token stored as a CI variable in your project (
SONAR_TOKEN
). You can request new tokens using Account/Security page.
You can take a look at the sonar-project.properties and .gitlab-ci.yml to see it in practice.
A build of the code repository on a Linux platform using CMake build system.
To build the code run:
mkdir build && cd build cmake .. make
An example of a flawed C++ code. The code repository can be analyzed automatically, but it can also be compiled with different build systems using different CI pipelines on Linux, macOS, and Windows.
The code repository is forked into other repositories in this collection to add a specific build system, platform, and CI. The downstream repositories are analyzed either with SonarQube or SonarCloud.
You can find examples for:
Using the following build systems:
Running on the following CI services:
-
Additionally, generic examples demonstrate integration with other CIs and manual-configuration examples should help you if you are running locally.
Configured for analysis on:
You can find also a few examples demonstrating:
See examples-structure.adoc for a description of the structure of this GitHub organization and the relations between its different repositories.