170 lessons published

Stage 04 · Testing & Code Quality

SonarQube Complete Course

Static analysis, quality gates, clean-code governance, security analysis, DevOps-platform integration, server administration, upgrades, and enterprise operations.

SQ
34chapters
170lessons
Beginner → Advancedstarting level
Hands-onlearning mode
Course state170 published · 0 planned

Course brief

A complete SonarQube Server curriculum spanning code-quality concepts, scanners and quality gates through security, governance, scaling, upgrades, and production administration.

This course is organized as a progressive operational curriculum. Lesson files are reserved in the repository structure so future content can be added without changing URLs or navigation.

By the end

You will be able to

  • Configure projects, scanners, rules, profiles, and quality gates
  • Apply new-code policies and interpret maintainability, reliability, and security findings
  • Integrate analysis with pull requests and CI/CD platforms
  • Secure and administer SonarQube Server in Docker, Kubernetes, and enterprise environments
  • Plan upgrades, backups, observability, performance, and governance at scale

Complete syllabus

34 chapters in prerequisite order.

The structure moves from fundamentals through architecture, automation, security, reliability, troubleshooting, scaling, and production operations.

01

Chapter 1

Static Analysis, Clean Code, Technical Debt, and Quality Governance

5 lessons
02

Chapter 2

SonarQube Product Model, Editions, Components, and Architecture

5 lessons
03

Chapter 3

Installation Prerequisites, Database Planning, and First Server

5 lessons
04

Chapter 4

Docker, Containers, Persistent Storage, and Production Deployment

5 lessons
05

Chapter 5

Kubernetes and OpenShift Deployment Patterns

5 lessons
06

Chapter 6

Projects, Tokens, Scanners, Analysis Parameters, and First Analysis

5 lessons
07

Chapter 7

Scanner Ecosystem: CLI, Maven, Gradle, .NET, and Build Integration

5 lessons
08

Chapter 8

Language Analysis, Sensors, SCM Data, and Source-Code Indexing

5 lessons
09

Chapter 9

Rules, Rule Types, Severities, Quality Profiles, and Customization

5 lessons
10

Chapter 10

Issues, Statuses, Assignments, False Positives, and Resolution Workflow

5 lessons
11

Chapter 11

Quality Gates, Conditions, Policies, and Pipeline Enforcement

5 lessons
12

Chapter 12

New Code, Clean-as-You-Code, Baselines, and Legacy Modernization

5 lessons
13

Chapter 13

Metrics: Reliability, Maintainability, Security, Complexity, and Size

5 lessons
14

Chapter 14

Coverage, Test Execution Data, Duplication, and External Analyzer Reports

5 lessons
15

Chapter 15

Security Hotspots, Vulnerabilities, Taint Analysis, and Review Workflow

5 lessons
16

Chapter 16

Secrets, Dependency/Supply-Chain Signals, and Advanced Security Boundaries

5 lessons
17

Chapter 17

Branches, Pull Requests, Merge Requests, and Edition-Aware Analysis

5 lessons
18

Chapter 18

GitHub, GitLab, Azure DevOps, and Bitbucket Integration

5 lessons
19

Chapter 19

CI Integration with GitHub Actions, GitLab CI, Jenkins, and Other Runners

5 lessons
20

Chapter 20

SonarQube for IDE Connected Mode and Developer Feedback Loops

5 lessons
21

Chapter 21

Users, Groups, Permissions, Tokens, Authentication, and Authorization

5 lessons
22

Chapter 22

SAML, LDAP, OIDC/SSO, Proxies, TLS, and Network Security

5 lessons
23

Chapter 23

Web API, Webhooks, Automation, Provisioning, and Policy as Code

5 lessons
24

Chapter 24

Monorepos, Multi-Module Builds, Generated Code, and Complex Repository Layouts

5 lessons
25

Chapter 25

Portfolios, Applications, Enterprise Reporting, and Governance Boundaries

5 lessons
26

Chapter 26

Marketplace, Plugins, Extension Risks, and Compatibility Management

5 lessons
27

Chapter 27

Server Logs, Monitoring, Health, Elasticsearch, and Operational Diagnostics

5 lessons
28

Chapter 28

Database Backup, Restore, Disaster Recovery, and Data Protection

5 lessons
29

Chapter 29

Release Cycle, LTA Strategy, Upgrade Paths, and Migration Planning

5 lessons
30

Chapter 30

Data Center Edition, Clustering, High Availability, and Scale

5 lessons
31

Chapter 31

Performance Sizing, Reference Architectures, and Large-Instance Tuning

5 lessons
32

Chapter 32

Troubleshooting Analysis Failures, Index Problems, CI Drift, and Incidents

5 lessons
33

Chapter 33

Enterprise Standards, Auditability, Developer Adoption, and Quality Programs

5 lessons
34

Chapter 34

Capstone: Operate a Governed Production SonarQube Quality Platform

5 lessons

Keep the academy open

Support free, practical DevOps education.

Every lesson is designed to remain readable in a browser, downloadable from GitHub, and usable without a paid learning platform. Contributions help expand and maintain the curriculum.

Ethereum / ERC-20
0x716c4Ab160C4B66F31a28AE2448BfF68fc3a2ef0 Send only Ethereum/ERC-20 compatible assets to this address.