IBM i Global

IBM i 

A space for professionals working with IBM’s integrated OS for Power systems to exchange ideas, ask questions, and share expertise on topics like RPG and COBOL development, application modernization, open source integration, system administration, and business continuity.


#Power


#IBMi
 View Only
  • 1.  RPG secure code scan tool

    Posted Mon October 02, 2023 09:06 AM

    I have a customer that needs to do a secure code scan of its entire client-server application suite and a vendor uses SonarCube tool to do this with web-based part of the codes such as JAVA, .NET, REST API, etc.  SonarCube seems to have a plug-in for RPG code scan as well but the vendor is having difficulty installing this plug-in and getting it to work for a few days now.   So, I wonder if there is anyone of you who ever used this SonarCube tool successfully with RPG codes (mostly RPI IV with minimal free-format RPG) and could share any information as to how to make this SonarCube RPG plug-in works?   Or you may suggest any other tool that works.

    Thanks. 



    ------------------------------
    Chance favors only the prepared mind.
    -- Louis Pasteur
    ------------------------------
    Satid S.
    ------------------------------