Oscam is an Open Source Conditional Access Module software used for descrambling DVB transmissions using smart cards. It's both a server and a client.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

670 lines
30 KiB

  1. pipeline {
  2. agent {
  3. label 'X86-64-MULTI'
  4. }
  5. // Input to determine if this is a package check
  6. parameters {
  7. string(defaultValue: 'false', description: 'package check run', name: 'PACKAGE_CHECK')
  8. }
  9. // Configuration for the variables used for this specific repo
  10. environment {
  11. BUILDS_DISCORD=credentials('build_webhook_url')
  12. GITHUB_TOKEN=credentials('498b4638-2d02-4ce5-832d-8a57d01d97ab')
  13. BUILD_VERSION_ARG = 'OSCAM_VERSION'
  14. LS_USER = 'linuxserver'
  15. LS_REPO = 'docker-oscam'
  16. CONTAINER_NAME = 'oscam'
  17. DOCKERHUB_IMAGE = 'linuxserver/oscam'
  18. DEV_DOCKERHUB_IMAGE = 'lsiodev/oscam'
  19. PR_DOCKERHUB_IMAGE = 'lspipepr/oscam'
  20. DIST_IMAGE = 'alpine'
  21. MULTIARCH='true'
  22. CI='true'
  23. CI_WEB='true'
  24. CI_PORT='8888'
  25. CI_SSL='false'
  26. CI_DELAY='120'
  27. CI_DOCKERENV='TZ=US/Pacific'
  28. CI_AUTH='user:password'
  29. CI_WEBPATH=''
  30. }
  31. stages {
  32. // Setup all the basic environment variables needed for the build
  33. stage("Set ENV Variables base"){
  34. steps{
  35. script{
  36. env.EXIT_STATUS = ''
  37. env.LS_RELEASE = sh(
  38. script: '''docker run --rm alexeiled/skopeo sh -c 'skopeo inspect docker://docker.io/'${DOCKERHUB_IMAGE}':latest 2>/dev/null' | jq -r '.Labels.build_version' | awk '{print $3}' | grep '\\-ls' || : ''',
  39. returnStdout: true).trim()
  40. env.LS_RELEASE_NOTES = sh(
  41. script: '''cat readme-vars.yml | awk -F \\" '/date: "[0-9][0-9].[0-9][0-9].[0-9][0-9]:/ {print $4;exit;}' | sed -E ':a;N;$!ba;s/\\r{0,1}\\n/\\\\n/g' ''',
  42. returnStdout: true).trim()
  43. env.GITHUB_DATE = sh(
  44. script: '''date '+%Y-%m-%dT%H:%M:%S%:z' ''',
  45. returnStdout: true).trim()
  46. env.COMMIT_SHA = sh(
  47. script: '''git rev-parse HEAD''',
  48. returnStdout: true).trim()
  49. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/commit/' + env.GIT_COMMIT
  50. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DOCKERHUB_IMAGE + '/tags/'
  51. env.PULL_REQUEST = env.CHANGE_ID
  52. env.LICENSE_TAG = sh(
  53. script: '''#!/bin/bash
  54. if [ -e LICENSE ] ; then
  55. cat LICENSE | md5sum | cut -c1-8
  56. else
  57. echo none
  58. fi''',
  59. returnStdout: true).trim()
  60. }
  61. script{
  62. env.LS_RELEASE_NUMBER = sh(
  63. script: '''echo ${LS_RELEASE} |sed 's/^.*-ls//g' ''',
  64. returnStdout: true).trim()
  65. }
  66. script{
  67. env.LS_TAG_NUMBER = sh(
  68. script: '''#! /bin/bash
  69. tagsha=$(git rev-list -n 1 ${LS_RELEASE} 2>/dev/null)
  70. if [ "${tagsha}" == "${COMMIT_SHA}" ]; then
  71. echo ${LS_RELEASE_NUMBER}
  72. elif [ -z "${GIT_COMMIT}" ]; then
  73. echo ${LS_RELEASE_NUMBER}
  74. else
  75. echo $((${LS_RELEASE_NUMBER} + 1))
  76. fi''',
  77. returnStdout: true).trim()
  78. }
  79. }
  80. }
  81. /* #######################
  82. Package Version Tagging
  83. ####################### */
  84. // Grab the current package versions in Git to determine package tag
  85. stage("Set Package tag"){
  86. steps{
  87. script{
  88. env.PACKAGE_TAG = sh(
  89. script: '''#!/bin/bash
  90. if [ -e package_versions.txt ] ; then
  91. cat package_versions.txt | md5sum | cut -c1-8
  92. else
  93. echo none
  94. fi''',
  95. returnStdout: true).trim()
  96. }
  97. }
  98. }
  99. /* ########################
  100. External Release Tagging
  101. ######################## */
  102. // If this is a custom command to determine version use that command
  103. stage("Set tag custom bash"){
  104. steps{
  105. script{
  106. env.EXT_RELEASE = sh(
  107. script: ''' docker run --rm alpine:3.9 sh -c 'apk add subversion > /dev/null 2>&1 && svn info --show-item revision http://www.streamboard.tv/svn/oscam/trunk' ''',
  108. returnStdout: true).trim()
  109. env.RELEASE_LINK = 'custom_command'
  110. }
  111. }
  112. }
  113. // Sanitize the release tag and strip illegal docker or github characters
  114. stage("Sanitize tag"){
  115. steps{
  116. script{
  117. env.EXT_RELEASE_CLEAN = sh(
  118. script: '''echo ${EXT_RELEASE} | sed 's/[~,%@+;:/]//g' ''',
  119. returnStdout: true).trim()
  120. }
  121. }
  122. }
  123. // If this is a master build use live docker endpoints
  124. stage("Set ENV live build"){
  125. when {
  126. branch "master"
  127. environment name: 'CHANGE_ID', value: ''
  128. }
  129. steps {
  130. script{
  131. env.IMAGE = env.DOCKERHUB_IMAGE
  132. if (env.MULTIARCH == 'true') {
  133. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  134. } else {
  135. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  136. }
  137. env.META_TAG = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  138. }
  139. }
  140. }
  141. // If this is a dev build use dev docker endpoints
  142. stage("Set ENV dev build"){
  143. when {
  144. not {branch "master"}
  145. environment name: 'CHANGE_ID', value: ''
  146. }
  147. steps {
  148. script{
  149. env.IMAGE = env.DEV_DOCKERHUB_IMAGE
  150. if (env.MULTIARCH == 'true') {
  151. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  152. } else {
  153. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  154. }
  155. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  156. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DEV_DOCKERHUB_IMAGE + '/tags/'
  157. }
  158. }
  159. }
  160. // If this is a pull request build use dev docker endpoints
  161. stage("Set ENV PR build"){
  162. when {
  163. not {environment name: 'CHANGE_ID', value: ''}
  164. }
  165. steps {
  166. script{
  167. env.IMAGE = env.PR_DOCKERHUB_IMAGE
  168. if (env.MULTIARCH == 'true') {
  169. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  170. } else {
  171. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  172. }
  173. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  174. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/pull/' + env.PULL_REQUEST
  175. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.PR_DOCKERHUB_IMAGE + '/tags/'
  176. }
  177. }
  178. }
  179. // Run ShellCheck
  180. stage('ShellCheck') {
  181. when {
  182. environment name: 'CI', value: 'true'
  183. }
  184. steps {
  185. withCredentials([
  186. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  187. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  188. ]) {
  189. script{
  190. env.SHELLCHECK_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/shellcheck-result.xml'
  191. }
  192. sh '''curl -sL https://raw.githubusercontent.com/linuxserver/docker-shellcheck/master/checkrun.sh | /bin/bash'''
  193. sh '''#! /bin/bash
  194. set -e
  195. docker pull lsiodev/spaces-file-upload:latest
  196. docker run --rm \
  197. -e DESTINATION=\"${IMAGE}/${META_TAG}/shellcheck-result.xml\" \
  198. -e FILE_NAME="shellcheck-result.xml" \
  199. -e MIMETYPE="text/xml" \
  200. -v ${WORKSPACE}:/mnt \
  201. -e SECRET_KEY=\"${DO_SECRET}\" \
  202. -e ACCESS_KEY=\"${DO_KEY}\" \
  203. -t lsiodev/spaces-file-upload:latest \
  204. python /upload.py'''
  205. }
  206. }
  207. }
  208. // Use helper containers to render templated files
  209. stage('Update-Templates') {
  210. when {
  211. branch "master"
  212. environment name: 'CHANGE_ID', value: ''
  213. expression {
  214. env.CONTAINER_NAME != null
  215. }
  216. }
  217. steps {
  218. sh '''#! /bin/bash
  219. set -e
  220. TEMPDIR=$(mktemp -d)
  221. docker pull linuxserver/jenkins-builder:latest
  222. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/jenkins linuxserver/jenkins-builder:latest
  223. docker pull linuxserver/doc-builder:latest
  224. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/readme linuxserver/doc-builder:latest
  225. if [ "$(md5sum ${TEMPDIR}/${LS_REPO}/Jenkinsfile | awk '{ print $1 }')" != "$(md5sum Jenkinsfile | awk '{ print $1 }')" ] || \
  226. [ "$(md5sum ${TEMPDIR}/${CONTAINER_NAME}/README.md | awk '{ print $1 }')" != "$(md5sum README.md | awk '{ print $1 }')" ] || \
  227. [ "$(cat ${TEMPDIR}/${LS_REPO}/LICENSE | md5sum | cut -c1-8)" != "${LICENSE_TAG}" ]; then
  228. mkdir -p ${TEMPDIR}/repo
  229. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/repo/${LS_REPO}
  230. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git checkout -f master
  231. cp ${TEMPDIR}/${CONTAINER_NAME}/README.md ${TEMPDIR}/repo/${LS_REPO}/
  232. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/Jenkinsfile ${TEMPDIR}/repo/${LS_REPO}/
  233. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/LICENSE ${TEMPDIR}/repo/${LS_REPO}/
  234. cd ${TEMPDIR}/repo/${LS_REPO}/
  235. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git add Jenkinsfile README.md LICENSE
  236. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git commit -m 'Bot Updating Templated Files'
  237. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  238. echo "true" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  239. else
  240. echo "false" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  241. fi
  242. mkdir -p ${TEMPDIR}/gitbook
  243. git clone https://github.com/linuxserver/docker-documentation.git ${TEMPDIR}/gitbook/docker-documentation
  244. if [[ "${BRANCH_NAME}" == "master" ]] && [[ (! -f ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md) || ("$(md5sum ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')" != "$(md5sum ${TEMPDIR}/${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')") ]]; then
  245. cp ${TEMPDIR}/${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md ${TEMPDIR}/gitbook/docker-documentation/images/
  246. cd ${TEMPDIR}/gitbook/docker-documentation/
  247. git add images/docker-${CONTAINER_NAME}.md
  248. git commit -m 'Bot Updating Templated Files'
  249. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/linuxserver/docker-documentation.git --all
  250. fi
  251. rm -Rf ${TEMPDIR}'''
  252. script{
  253. env.FILES_UPDATED = sh(
  254. script: '''cat /tmp/${COMMIT_SHA}-${BUILD_NUMBER}''',
  255. returnStdout: true).trim()
  256. }
  257. }
  258. }
  259. // Exit the build if the Templated files were just updated
  260. stage('Template-exit') {
  261. when {
  262. branch "master"
  263. environment name: 'CHANGE_ID', value: ''
  264. environment name: 'FILES_UPDATED', value: 'true'
  265. expression {
  266. env.CONTAINER_NAME != null
  267. }
  268. }
  269. steps {
  270. script{
  271. env.EXIT_STATUS = 'ABORTED'
  272. }
  273. }
  274. }
  275. /* ###############
  276. Build Container
  277. ############### */
  278. // Build Docker container for push to LS Repo
  279. stage('Build-Single') {
  280. when {
  281. environment name: 'MULTIARCH', value: 'false'
  282. environment name: 'EXIT_STATUS', value: ''
  283. }
  284. steps {
  285. sh "docker build --no-cache --pull -t ${IMAGE}:${META_TAG} \
  286. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  287. }
  288. }
  289. // Build MultiArch Docker containers for push to LS Repo
  290. stage('Build-Multi') {
  291. when {
  292. environment name: 'MULTIARCH', value: 'true'
  293. environment name: 'EXIT_STATUS', value: ''
  294. }
  295. parallel {
  296. stage('Build X86') {
  297. steps {
  298. sh "docker build --no-cache --pull -t ${IMAGE}:amd64-${META_TAG} \
  299. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  300. }
  301. }
  302. stage('Build ARMHF') {
  303. agent {
  304. label 'ARMHF'
  305. }
  306. steps {
  307. withCredentials([
  308. [
  309. $class: 'UsernamePasswordMultiBinding',
  310. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  311. usernameVariable: 'DOCKERUSER',
  312. passwordVariable: 'DOCKERPASS'
  313. ]
  314. ]) {
  315. echo 'Logging into DockerHub'
  316. sh '''#! /bin/bash
  317. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  318. '''
  319. sh "docker build --no-cache --pull -f Dockerfile.armhf -t ${IMAGE}:arm32v7-${META_TAG} \
  320. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  321. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  322. sh "docker push lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  323. sh '''docker rmi \
  324. ${IMAGE}:arm32v7-${META_TAG} \
  325. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  326. }
  327. }
  328. }
  329. stage('Build ARM64') {
  330. agent {
  331. label 'ARM64'
  332. }
  333. steps {
  334. withCredentials([
  335. [
  336. $class: 'UsernamePasswordMultiBinding',
  337. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  338. usernameVariable: 'DOCKERUSER',
  339. passwordVariable: 'DOCKERPASS'
  340. ]
  341. ]) {
  342. echo 'Logging into DockerHub'
  343. sh '''#! /bin/bash
  344. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  345. '''
  346. sh "docker build --no-cache --pull -f Dockerfile.aarch64 -t ${IMAGE}:arm64v8-${META_TAG} \
  347. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  348. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  349. sh "docker push lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  350. sh '''docker rmi \
  351. ${IMAGE}:arm64v8-${META_TAG} \
  352. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  353. }
  354. }
  355. }
  356. }
  357. }
  358. // Take the image we just built and dump package versions for comparison
  359. stage('Update-packages') {
  360. when {
  361. branch "master"
  362. environment name: 'CHANGE_ID', value: ''
  363. environment name: 'EXIT_STATUS', value: ''
  364. }
  365. steps {
  366. sh '''#! /bin/bash
  367. set -e
  368. TEMPDIR=$(mktemp -d)
  369. if [ "${MULTIARCH}" == "true" ]; then
  370. LOCAL_CONTAINER=${IMAGE}:amd64-${META_TAG}
  371. else
  372. LOCAL_CONTAINER=${IMAGE}:${META_TAG}
  373. fi
  374. if [ "${DIST_IMAGE}" == "alpine" ]; then
  375. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  376. apk info -v > /tmp/package_versions.txt && \
  377. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  378. chmod 777 /tmp/package_versions.txt'
  379. elif [ "${DIST_IMAGE}" == "ubuntu" ]; then
  380. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  381. apt list -qq --installed | sed "s#/.*now ##g" | cut -d" " -f1 > /tmp/package_versions.txt && \
  382. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  383. chmod 777 /tmp/package_versions.txt'
  384. fi
  385. NEW_PACKAGE_TAG=$(md5sum ${TEMPDIR}/package_versions.txt | cut -c1-8 )
  386. echo "Package tag sha from current packages in buit container is ${NEW_PACKAGE_TAG} comparing to old ${PACKAGE_TAG} from github"
  387. if [ "${NEW_PACKAGE_TAG}" != "${PACKAGE_TAG}" ]; then
  388. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/${LS_REPO}
  389. git --git-dir ${TEMPDIR}/${LS_REPO}/.git checkout -f master
  390. cp ${TEMPDIR}/package_versions.txt ${TEMPDIR}/${LS_REPO}/
  391. cd ${TEMPDIR}/${LS_REPO}/
  392. wait
  393. git add package_versions.txt
  394. git commit -m 'Bot Updating Package Versions'
  395. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  396. echo "true" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  397. echo "Package tag updated, stopping build process"
  398. else
  399. echo "false" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  400. echo "Package tag is same as previous continue with build process"
  401. fi
  402. rm -Rf ${TEMPDIR}'''
  403. script{
  404. env.PACKAGE_UPDATED = sh(
  405. script: '''cat /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}''',
  406. returnStdout: true).trim()
  407. }
  408. }
  409. }
  410. // Exit the build if the package file was just updated
  411. stage('PACKAGE-exit') {
  412. when {
  413. branch "master"
  414. environment name: 'CHANGE_ID', value: ''
  415. environment name: 'PACKAGE_UPDATED', value: 'true'
  416. environment name: 'EXIT_STATUS', value: ''
  417. }
  418. steps {
  419. script{
  420. env.EXIT_STATUS = 'ABORTED'
  421. }
  422. }
  423. }
  424. // Exit the build if this is just a package check and there are no changes to push
  425. stage('PACKAGECHECK-exit') {
  426. when {
  427. branch "master"
  428. environment name: 'CHANGE_ID', value: ''
  429. environment name: 'PACKAGE_UPDATED', value: 'false'
  430. environment name: 'EXIT_STATUS', value: ''
  431. expression {
  432. params.PACKAGE_CHECK == 'true'
  433. }
  434. }
  435. steps {
  436. script{
  437. env.EXIT_STATUS = 'ABORTED'
  438. }
  439. }
  440. }
  441. /* #######
  442. Testing
  443. ####### */
  444. // Run Container tests
  445. stage('Test') {
  446. when {
  447. environment name: 'CI', value: 'true'
  448. environment name: 'EXIT_STATUS', value: ''
  449. }
  450. steps {
  451. withCredentials([
  452. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  453. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  454. ]) {
  455. script{
  456. env.CI_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/index.html'
  457. }
  458. sh '''#! /bin/bash
  459. set -e
  460. docker pull lsiodev/ci:latest
  461. if [ "${MULTIARCH}" == "true" ]; then
  462. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  463. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  464. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  465. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  466. fi
  467. docker run --rm \
  468. --shm-size=1gb \
  469. -v /var/run/docker.sock:/var/run/docker.sock \
  470. -e IMAGE=\"${IMAGE}\" \
  471. -e DELAY_START=\"${CI_DELAY}\" \
  472. -e TAGS=\"${CI_TAGS}\" \
  473. -e META_TAG=\"${META_TAG}\" \
  474. -e PORT=\"${CI_PORT}\" \
  475. -e SSL=\"${CI_SSL}\" \
  476. -e BASE=\"${DIST_IMAGE}\" \
  477. -e SECRET_KEY=\"${DO_SECRET}\" \
  478. -e ACCESS_KEY=\"${DO_KEY}\" \
  479. -e DOCKER_ENV=\"${CI_DOCKERENV}\" \
  480. -e WEB_SCREENSHOT=\"${CI_WEB}\" \
  481. -e WEB_AUTH=\"${CI_AUTH}\" \
  482. -e WEB_PATH=\"${CI_WEBPATH}\" \
  483. -e DO_REGION="ams3" \
  484. -e DO_BUCKET="lsio-ci" \
  485. -t lsiodev/ci:latest \
  486. python /ci/ci.py'''
  487. }
  488. }
  489. }
  490. /* ##################
  491. Release Logic
  492. ################## */
  493. // If this is an amd64 only image only push a single image
  494. stage('Docker-Push-Single') {
  495. when {
  496. environment name: 'MULTIARCH', value: 'false'
  497. environment name: 'EXIT_STATUS', value: ''
  498. }
  499. steps {
  500. withCredentials([
  501. [
  502. $class: 'UsernamePasswordMultiBinding',
  503. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  504. usernameVariable: 'DOCKERUSER',
  505. passwordVariable: 'DOCKERPASS'
  506. ]
  507. ]) {
  508. echo 'Logging into DockerHub'
  509. sh '''#! /bin/bash
  510. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  511. '''
  512. sh "docker tag ${IMAGE}:${META_TAG} ${IMAGE}:latest"
  513. sh "docker push ${IMAGE}:latest"
  514. sh "docker push ${IMAGE}:${META_TAG}"
  515. sh '''docker rmi \
  516. ${IMAGE}:${META_TAG} \
  517. ${IMAGE}:latest || :'''
  518. }
  519. }
  520. }
  521. // If this is a multi arch release push all images and define the manifest
  522. stage('Docker-Push-Multi') {
  523. when {
  524. environment name: 'MULTIARCH', value: 'true'
  525. environment name: 'EXIT_STATUS', value: ''
  526. }
  527. steps {
  528. withCredentials([
  529. [
  530. $class: 'UsernamePasswordMultiBinding',
  531. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  532. usernameVariable: 'DOCKERUSER',
  533. passwordVariable: 'DOCKERPASS'
  534. ]
  535. ]) {
  536. sh '''#! /bin/bash
  537. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  538. '''
  539. sh '''#! /bin/bash
  540. if [ "${CI}" == "false" ]; then
  541. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  542. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  543. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  544. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  545. fi'''
  546. sh "docker tag ${IMAGE}:amd64-${META_TAG} ${IMAGE}:amd64-latest"
  547. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} ${IMAGE}:arm32v7-latest"
  548. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} ${IMAGE}:arm64v8-latest"
  549. sh "docker push ${IMAGE}:amd64-${META_TAG}"
  550. sh "docker push ${IMAGE}:arm32v7-${META_TAG}"
  551. sh "docker push ${IMAGE}:arm64v8-${META_TAG}"
  552. sh "docker push ${IMAGE}:amd64-latest"
  553. sh "docker push ${IMAGE}:arm32v7-latest"
  554. sh "docker push ${IMAGE}:arm64v8-latest"
  555. sh "docker manifest push --purge ${IMAGE}:latest || :"
  556. sh "docker manifest create ${IMAGE}:latest ${IMAGE}:amd64-latest ${IMAGE}:arm32v7-latest ${IMAGE}:arm64v8-latest"
  557. sh "docker manifest annotate ${IMAGE}:latest ${IMAGE}:arm32v7-latest --os linux --arch arm"
  558. sh "docker manifest annotate ${IMAGE}:latest ${IMAGE}:arm64v8-latest --os linux --arch arm64 --variant v8"
  559. sh "docker manifest push --purge ${IMAGE}:${META_TAG} || :"
  560. sh "docker manifest create ${IMAGE}:${META_TAG} ${IMAGE}:amd64-${META_TAG} ${IMAGE}:arm32v7-${META_TAG} ${IMAGE}:arm64v8-${META_TAG}"
  561. sh "docker manifest annotate ${IMAGE}:${META_TAG} ${IMAGE}:arm32v7-${META_TAG} --os linux --arch arm"
  562. sh "docker manifest annotate ${IMAGE}:${META_TAG} ${IMAGE}:arm64v8-${META_TAG} --os linux --arch arm64 --variant v8"
  563. sh "docker manifest push --purge ${IMAGE}:latest"
  564. sh "docker manifest push --purge ${IMAGE}:${META_TAG}"
  565. sh '''docker rmi \
  566. ${IMAGE}:amd64-${META_TAG} \
  567. ${IMAGE}:amd64-latest \
  568. ${IMAGE}:arm32v7-${META_TAG} \
  569. ${IMAGE}:arm32v7-latest \
  570. ${IMAGE}:arm64v8-${META_TAG} \
  571. ${IMAGE}:arm64v8-latest \
  572. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} \
  573. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  574. }
  575. }
  576. }
  577. // If this is a public release tag it in the LS Github
  578. stage('Github-Tag-Push-Release') {
  579. when {
  580. branch "master"
  581. expression {
  582. env.LS_RELEASE != env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  583. }
  584. environment name: 'CHANGE_ID', value: ''
  585. environment name: 'EXIT_STATUS', value: ''
  586. }
  587. steps {
  588. echo "Pushing New tag for current commit ${EXT_RELEASE_CLEAN}-ls${LS_TAG_NUMBER}"
  589. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/git/tags \
  590. -d '{"tag":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  591. "object": "'${COMMIT_SHA}'",\
  592. "message": "Tagging Release '${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}' to master",\
  593. "type": "commit",\
  594. "tagger": {"name": "LinuxServer Jenkins","email": "jenkins@linuxserver.io","date": "'${GITHUB_DATE}'"}}' '''
  595. echo "Pushing New release for Tag"
  596. sh '''#! /bin/bash
  597. echo "Updating to ${EXT_RELEASE_CLEAN}" > releasebody.json
  598. echo '{"tag_name":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  599. "target_commitish": "master",\
  600. "name": "'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  601. "body": "**LinuxServer Changes:**\\n\\n'${LS_RELEASE_NOTES}'\\n**Remote Changes:**\\n\\n' > start
  602. printf '","draft": false,"prerelease": false}' >> releasebody.json
  603. paste -d'\\0' start releasebody.json > releasebody.json.done
  604. curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/releases -d @releasebody.json.done'''
  605. }
  606. }
  607. // Use helper container to sync the current README on master to the dockerhub endpoint
  608. stage('Sync-README') {
  609. when {
  610. environment name: 'CHANGE_ID', value: ''
  611. environment name: 'EXIT_STATUS', value: ''
  612. }
  613. steps {
  614. withCredentials([
  615. [
  616. $class: 'UsernamePasswordMultiBinding',
  617. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  618. usernameVariable: 'DOCKERUSER',
  619. passwordVariable: 'DOCKERPASS'
  620. ]
  621. ]) {
  622. sh '''#! /bin/bash
  623. docker pull lsiodev/readme-sync
  624. docker run --rm=true \
  625. -e DOCKERHUB_USERNAME=$DOCKERUSER \
  626. -e DOCKERHUB_PASSWORD=$DOCKERPASS \
  627. -e GIT_REPOSITORY=${LS_USER}/${LS_REPO} \
  628. -e DOCKER_REPOSITORY=${IMAGE} \
  629. -e GIT_BRANCH=master \
  630. lsiodev/readme-sync bash -c 'node sync' '''
  631. }
  632. }
  633. }
  634. // If this is a Pull request send the CI link as a comment on it
  635. stage('Pull Request Comment') {
  636. when {
  637. not {environment name: 'CHANGE_ID', value: ''}
  638. environment name: 'CI', value: 'true'
  639. environment name: 'EXIT_STATUS', value: ''
  640. }
  641. steps {
  642. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/issues/${PULL_REQUEST}/comments \
  643. -d '{"body": "I am a bot, here are the test results for this PR: \\n'${CI_URL}' \\n'${SHELLCHECK_URL}'"}' '''
  644. }
  645. }
  646. }
  647. /* ######################
  648. Send status to Discord
  649. ###################### */
  650. post {
  651. always {
  652. script{
  653. if (env.EXIT_STATUS == "ABORTED"){
  654. sh 'echo "build aborted"'
  655. }
  656. else if (currentBuild.currentResult == "SUCCESS"){
  657. sh ''' curl -X POST --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 1681177,\
  658. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** Success\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  659. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  660. }
  661. else {
  662. sh ''' curl -X POST --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 16711680,\
  663. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** failure\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  664. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  665. }
  666. }
  667. }
  668. }
  669. }