-
Notifications
You must be signed in to change notification settings - Fork 5
/
Jenkinsfile
64 lines (62 loc) · 1.75 KB
/
Jenkinsfile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
pipeline{
agent any
tools{
nodejs 'nodejs16'
jdk 'jdk17'
}
environment{
SONAR_HOME=tool 'sonar-scanner'
}
stages{
stage("Clean Workspace"){
steps{
cleanWs()
}
}
stage("Git checkout"){
steps{
git branch: 'main', url:'https://github.com/Yatingambhir85/SWIGGY-CLONE-PROJECT'
}
}
stage("Static Code Analysis"){
steps{
withSonarQubeEnv('sonar-server'){
sh ' $SONAR_HOME/bin/sonar-scanner -Dsonar.projectName=swiggy-clone-cicd -Dsonar.projectKey=swiggy-clone-cicd '
}
}
}
stage("OWASP DEPENDENCY CHECK"){
steps{
dependencyCheck additionalArguments: '--scan ./ --disableYarnAudit --disableNodeAudit', odcInstallation: 'DP-check'
dependencyCheckPublisher pattern: '**/dependency-check-report.xml'
}
}
stage("Trivy FS SCAN"){
steps{
sh 'trivy fs . > trivyfs.txt'
}
}
stage("DOCKER BUILD & PUSH"){
steps{
script{
withDockerRegistry(credentialsId: 'dockerhub', toolName: 'docker'){
sh 'docker build -t swiggy-clone-cicd .'
sh 'docker tag swiggy-clone-cicd yatingambhir/swiggy-clone-cicd:latest'
sh 'docker push yatingambhir/swiggy-clone-cicd:latest'
}
}
}
}
stage("TRIVY"){
steps{
sh 'trivy image yatingambhir/swiggy-clone-cicd:latest > trivy.txt'
}
}
stage("DOCKER DEPLOYMENT"){
steps{
sh "docker stop swiggy-clone-cicd && docker rm swiggy-clone-cicd || true"
sh 'docker run -itd --name swiggy-clone-cicd -p 3000:3000 swiggy-clone-cicd:latest'
}
}
}
}