Book Image

Jenkins 2.x Continuous Integration Cookbook - Third Edition

By : Mitesh Soni, Alan Mark Berg
Book Image

Jenkins 2.x Continuous Integration Cookbook - Third Edition

By: Mitesh Soni, Alan Mark Berg

Overview of this book

Jenkins 2.x is one of the most popular Continuous Integration servers in the market today. It was designed to maintain, secure, communicate, test, build, and improve the software development process. This book will begin by guiding you through steps for installing and configuring Jenkins 2.x on AWS and Azure. This is followed by steps that enable you to manage and monitor Jenkins 2.x. You will also explore the ways to enhance the overall security of Jenkins 2.x. You will then explore the steps involved in improving the code quality using SonarQube. Then, you will learn the ways to improve quality, followed by how to run performance and functional tests against a web application and web services. Finally, you will see what the available plugins are, concluding with best practices to improve quality.
Table of Contents (11 chapters)

Jenkins and OWASP Zed Attack Proxy integration

OWASP Zed Attack Proxy(ZAP) is an open source web application security scanner. You can integrate ZAP security tool with the Jenkins CI environment.

Getting ready

Go to https://github.com/zaproxy/zaproxy/wiki/Downloads and download the Windows (64) Installer.

Install it on Windows.

Open OWASP ZAP in Windows, click on File | Persist Session and save it in the Jenkins workspace in the directory of the build job:

Now you are good to configure ZAP plugins in Jenkins.

How to do it...

  1. Go to the Jenkins dashboard | Configure system...