Obtaining Codebase Files for Scanning
To support deep scanning, it is necessary to bring the project codebase files to the Scan Server. Code Insight provides the following ways to bring codebase files into the system:
-
Upload a codebase into Code Insight—Uploading a codebase is useful to project Analysts who typically perform ad-hoc scans on an arbitrary snapshot of code provided by the product team.
-
Use a version control SCM connector—Code Insight SCM (Source Code Management) connectors provide an automated way to fetch the code based on criteria, such as build, release, calendar, checkin, and other information. SCM connectors support various authentication mechanisms, including anonymous, username and password, and token, key, or ticket on a Scan Server.
-
The connectors for all SCM systems supported by Code Insight are provided as part of your Code Insight installation.
-
See the next section, SCM Support, for information about the supported SCM systems.
-