Skip to content

Load STIG standard after ACOMMONS-11 is done #9558

@andrei-epure-sonarsource

Description

Next week, a new version of analyzer commons will be added via https://sonarsource.atlassian.net/browse/ACOMMONS-11 to enable the import of a new security standard.

As part of the SQ plugin hardening sprint, we should update Analyzer commons and call the metadata API.

Check the PR for adding support for ASVS standard - should be the same thing as in #5941
Edit by Mary: Functionality of this PR is no longer valid. We use the common functionality to add security standards by sonar-commons-io. Should be enough to update the package sonar-commons-io and add tests.

  • Add a check for the SonarQube version (it will be shipped in 10.7 in September). On SonarCloud it's already supported.
  • Tests are in CSharpSonarRulesDefinitionTest .

Metadata

Metadata

Assignees

Labels

UXImprove any kind of user experience

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions