Educational Foundations

Educational Foundations provides conceptual, principle-based, and best practice knowledge related to the DevOps and DevSecOps foundations our products are built on.

IQ Server

Nexus IQ Server is the policy engine that powers Lifecycle, Firewall and Auditor. Check out our quick start guides and deep-dive technical articles to help you get the most value out of these IQ Server products.

Repository Manager

Nexus Repository Manager lets you proxy remote repositories and host internal artifacts. Check out our quick start guides and deep-dive technical articles to help you get the most value out of Nexus Repository.

What's new?

Comprehensive Guide to Lifecycle Scanning

This guide will help Sonatype customers evaluate their applications and deliver timely component intelligence to their developers throughout the software development lifecycle (SDLC).

Lifecycle Foundation

This article goes over the features, and limitations, associated with a Lifecycle Foundation license.

What is DevSecOps?

This article discusses DevSecOps as an extension of DevOps, with the goal of "building quality in" or "shifting security left" in the software development lifecycle.

What is DevOps?

This article discusses common misconceptions around DevOps, and seeks to provide a a common, principle-based definition of DevOps as a discipline.

Why DevSecOps?

This article discusses the business case for DevSecOps, including the current state of the software supply chain, increasingly sophisticated OSS breaches, development cost savings, and security as a competitive differentiator.