Oscam is an Open Source Conditional Access Module software used for descrambling DVB transmissions using smart cards. It's both a server and a client.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

681 lines
30 KiB

  1. pipeline {
  2. agent {
  3. label 'X86-64-MULTI'
  4. }
  5. // Input to determine if this is a package check
  6. parameters {
  7. string(defaultValue: 'false', description: 'package check run', name: 'PACKAGE_CHECK')
  8. }
  9. // Configuration for the variables used for this specific repo
  10. environment {
  11. BUILDS_DISCORD=credentials('build_webhook_url')
  12. GITHUB_TOKEN=credentials('498b4638-2d02-4ce5-832d-8a57d01d97ab')
  13. BUILD_VERSION_ARG = 'OSCAM_VERSION'
  14. LS_USER = 'linuxserver'
  15. LS_REPO = 'docker-oscam'
  16. CONTAINER_NAME = 'oscam'
  17. DOCKERHUB_IMAGE = 'linuxserver/oscam'
  18. DEV_DOCKERHUB_IMAGE = 'lsiodev/oscam'
  19. PR_DOCKERHUB_IMAGE = 'lspipepr/oscam'
  20. DIST_IMAGE = 'alpine'
  21. MULTIARCH='true'
  22. CI='true'
  23. CI_WEB='true'
  24. CI_PORT='8888'
  25. CI_SSL='false'
  26. CI_DELAY='120'
  27. CI_DOCKERENV='TZ=US/Pacific'
  28. CI_AUTH='user:password'
  29. CI_WEBPATH=''
  30. }
  31. stages {
  32. // Setup all the basic environment variables needed for the build
  33. stage("Set ENV Variables base"){
  34. steps{
  35. script{
  36. env.EXIT_STATUS = ''
  37. env.LS_RELEASE = sh(
  38. script: '''docker run --rm alexeiled/skopeo sh -c 'skopeo inspect docker://docker.io/'${DOCKERHUB_IMAGE}':latest 2>/dev/null' | jq -r '.Labels.build_version' | awk '{print $3}' | grep '\\-ls' || : ''',
  39. returnStdout: true).trim()
  40. env.LS_RELEASE_NOTES = sh(
  41. script: '''cat readme-vars.yml | awk -F \\" '/date: "[0-9][0-9].[0-9][0-9].[0-9][0-9]:/ {print $4;exit;}' | sed -E ':a;N;$!ba;s/\\r{0,1}\\n/\\\\n/g' ''',
  42. returnStdout: true).trim()
  43. env.GITHUB_DATE = sh(
  44. script: '''date '+%Y-%m-%dT%H:%M:%S%:z' ''',
  45. returnStdout: true).trim()
  46. env.COMMIT_SHA = sh(
  47. script: '''git rev-parse HEAD''',
  48. returnStdout: true).trim()
  49. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/commit/' + env.GIT_COMMIT
  50. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DOCKERHUB_IMAGE + '/tags/'
  51. env.PULL_REQUEST = env.CHANGE_ID
  52. env.LICENSE_TAG = sh(
  53. script: '''#!/bin/bash
  54. if [ -e LICENSE ] ; then
  55. cat LICENSE | md5sum | cut -c1-8
  56. else
  57. echo none
  58. fi''',
  59. returnStdout: true).trim()
  60. env.FUNDING_TAG = sh(
  61. script: '''#!/bin/bash
  62. if [ -e ./.github/FUNDING.yml ] ; then
  63. cat ./.github/FUNDING.yml | md5sum | cut -c1-8
  64. else
  65. echo none
  66. fi''',
  67. returnStdout: true).trim()
  68. }
  69. script{
  70. env.LS_RELEASE_NUMBER = sh(
  71. script: '''echo ${LS_RELEASE} |sed 's/^.*-ls//g' ''',
  72. returnStdout: true).trim()
  73. }
  74. script{
  75. env.LS_TAG_NUMBER = sh(
  76. script: '''#! /bin/bash
  77. tagsha=$(git rev-list -n 1 ${LS_RELEASE} 2>/dev/null)
  78. if [ "${tagsha}" == "${COMMIT_SHA}" ]; then
  79. echo ${LS_RELEASE_NUMBER}
  80. elif [ -z "${GIT_COMMIT}" ]; then
  81. echo ${LS_RELEASE_NUMBER}
  82. else
  83. echo $((${LS_RELEASE_NUMBER} + 1))
  84. fi''',
  85. returnStdout: true).trim()
  86. }
  87. }
  88. }
  89. /* #######################
  90. Package Version Tagging
  91. ####################### */
  92. // Grab the current package versions in Git to determine package tag
  93. stage("Set Package tag"){
  94. steps{
  95. script{
  96. env.PACKAGE_TAG = sh(
  97. script: '''#!/bin/bash
  98. if [ -e package_versions.txt ] ; then
  99. cat package_versions.txt | md5sum | cut -c1-8
  100. else
  101. echo none
  102. fi''',
  103. returnStdout: true).trim()
  104. }
  105. }
  106. }
  107. /* ########################
  108. External Release Tagging
  109. ######################## */
  110. // If this is a custom command to determine version use that command
  111. stage("Set tag custom bash"){
  112. steps{
  113. script{
  114. env.EXT_RELEASE = sh(
  115. script: ''' docker run --rm alpine:3.9 sh -c 'apk add subversion > /dev/null 2>&1 && svn info --show-item revision http://www.streamboard.tv/svn/oscam/trunk' ''',
  116. returnStdout: true).trim()
  117. env.RELEASE_LINK = 'custom_command'
  118. }
  119. }
  120. }
  121. // Sanitize the release tag and strip illegal docker or github characters
  122. stage("Sanitize tag"){
  123. steps{
  124. script{
  125. env.EXT_RELEASE_CLEAN = sh(
  126. script: '''echo ${EXT_RELEASE} | sed 's/[~,%@+;:/]//g' ''',
  127. returnStdout: true).trim()
  128. }
  129. }
  130. }
  131. // If this is a master build use live docker endpoints
  132. stage("Set ENV live build"){
  133. when {
  134. branch "master"
  135. environment name: 'CHANGE_ID', value: ''
  136. }
  137. steps {
  138. script{
  139. env.IMAGE = env.DOCKERHUB_IMAGE
  140. if (env.MULTIARCH == 'true') {
  141. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  142. } else {
  143. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  144. }
  145. env.META_TAG = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  146. }
  147. }
  148. }
  149. // If this is a dev build use dev docker endpoints
  150. stage("Set ENV dev build"){
  151. when {
  152. not {branch "master"}
  153. environment name: 'CHANGE_ID', value: ''
  154. }
  155. steps {
  156. script{
  157. env.IMAGE = env.DEV_DOCKERHUB_IMAGE
  158. if (env.MULTIARCH == 'true') {
  159. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  160. } else {
  161. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  162. }
  163. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  164. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DEV_DOCKERHUB_IMAGE + '/tags/'
  165. }
  166. }
  167. }
  168. // If this is a pull request build use dev docker endpoints
  169. stage("Set ENV PR build"){
  170. when {
  171. not {environment name: 'CHANGE_ID', value: ''}
  172. }
  173. steps {
  174. script{
  175. env.IMAGE = env.PR_DOCKERHUB_IMAGE
  176. if (env.MULTIARCH == 'true') {
  177. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  178. } else {
  179. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  180. }
  181. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  182. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/pull/' + env.PULL_REQUEST
  183. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.PR_DOCKERHUB_IMAGE + '/tags/'
  184. }
  185. }
  186. }
  187. // Run ShellCheck
  188. stage('ShellCheck') {
  189. when {
  190. environment name: 'CI', value: 'true'
  191. }
  192. steps {
  193. withCredentials([
  194. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  195. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  196. ]) {
  197. script{
  198. env.SHELLCHECK_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/shellcheck-result.xml'
  199. }
  200. sh '''curl -sL https://raw.githubusercontent.com/linuxserver/docker-shellcheck/master/checkrun.sh | /bin/bash'''
  201. sh '''#! /bin/bash
  202. set -e
  203. docker pull lsiodev/spaces-file-upload:latest
  204. docker run --rm \
  205. -e DESTINATION=\"${IMAGE}/${META_TAG}/shellcheck-result.xml\" \
  206. -e FILE_NAME="shellcheck-result.xml" \
  207. -e MIMETYPE="text/xml" \
  208. -v ${WORKSPACE}:/mnt \
  209. -e SECRET_KEY=\"${DO_SECRET}\" \
  210. -e ACCESS_KEY=\"${DO_KEY}\" \
  211. -t lsiodev/spaces-file-upload:latest \
  212. python /upload.py'''
  213. }
  214. }
  215. }
  216. // Use helper containers to render templated files
  217. stage('Update-Templates') {
  218. when {
  219. branch "master"
  220. environment name: 'CHANGE_ID', value: ''
  221. expression {
  222. env.CONTAINER_NAME != null
  223. }
  224. }
  225. steps {
  226. sh '''#! /bin/bash
  227. set -e
  228. TEMPDIR=$(mktemp -d)
  229. docker pull linuxserver/jenkins-builder:latest
  230. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/jenkins linuxserver/jenkins-builder:latest
  231. docker pull linuxserver/doc-builder:latest
  232. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/readme linuxserver/doc-builder:latest
  233. if [ "$(md5sum ${TEMPDIR}/${LS_REPO}/Jenkinsfile | awk '{ print $1 }')" != "$(md5sum Jenkinsfile | awk '{ print $1 }')" ] || \
  234. [ "$(md5sum ${TEMPDIR}/${CONTAINER_NAME}/README.md | awk '{ print $1 }')" != "$(md5sum README.md | awk '{ print $1 }')" ] || \
  235. [ "$(cat ${TEMPDIR}/${LS_REPO}/LICENSE | md5sum | cut -c1-8)" != "${LICENSE_TAG}" ] || \
  236. [ "$(cat ${TEMPDIR}/${LS_REPO}/.github/FUNDING.yml | md5sum | cut -c1-8)" != "${FUNDING_TAG}" ]; then
  237. mkdir -p ${TEMPDIR}/repo
  238. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/repo/${LS_REPO}
  239. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git checkout -f master
  240. cp ${TEMPDIR}/${CONTAINER_NAME}/README.md ${TEMPDIR}/repo/${LS_REPO}/
  241. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/Jenkinsfile ${TEMPDIR}/repo/${LS_REPO}/
  242. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/LICENSE ${TEMPDIR}/repo/${LS_REPO}/
  243. mkdir -p ${TEMPDIR}/repo/${LS_REPO}/.github
  244. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/.github/FUNDING.yml ${TEMPDIR}/repo/${LS_REPO}/.github/FUNDING.yml
  245. cd ${TEMPDIR}/repo/${LS_REPO}/
  246. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git add Jenkinsfile README.md LICENSE ./.github/FUNDING.yml
  247. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git commit -m 'Bot Updating Templated Files'
  248. git --git-dir ${TEMPDIR}/repo/${LS_REPO}/.git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  249. echo "true" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  250. else
  251. echo "false" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  252. fi
  253. mkdir -p ${TEMPDIR}/gitbook
  254. git clone https://github.com/linuxserver/docker-documentation.git ${TEMPDIR}/gitbook/docker-documentation
  255. if [[ "${BRANCH_NAME}" == "master" ]] && [[ (! -f ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md) || ("$(md5sum ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')" != "$(md5sum ${TEMPDIR}/${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')") ]]; then
  256. cp ${TEMPDIR}/${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md ${TEMPDIR}/gitbook/docker-documentation/images/
  257. cd ${TEMPDIR}/gitbook/docker-documentation/
  258. git add images/docker-${CONTAINER_NAME}.md
  259. git commit -m 'Bot Updating Templated Files'
  260. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/linuxserver/docker-documentation.git --all
  261. fi
  262. rm -Rf ${TEMPDIR}'''
  263. script{
  264. env.FILES_UPDATED = sh(
  265. script: '''cat /tmp/${COMMIT_SHA}-${BUILD_NUMBER}''',
  266. returnStdout: true).trim()
  267. }
  268. }
  269. }
  270. // Exit the build if the Templated files were just updated
  271. stage('Template-exit') {
  272. when {
  273. branch "master"
  274. environment name: 'CHANGE_ID', value: ''
  275. environment name: 'FILES_UPDATED', value: 'true'
  276. expression {
  277. env.CONTAINER_NAME != null
  278. }
  279. }
  280. steps {
  281. script{
  282. env.EXIT_STATUS = 'ABORTED'
  283. }
  284. }
  285. }
  286. /* ###############
  287. Build Container
  288. ############### */
  289. // Build Docker container for push to LS Repo
  290. stage('Build-Single') {
  291. when {
  292. environment name: 'MULTIARCH', value: 'false'
  293. environment name: 'EXIT_STATUS', value: ''
  294. }
  295. steps {
  296. sh "docker build --no-cache --pull -t ${IMAGE}:${META_TAG} \
  297. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  298. }
  299. }
  300. // Build MultiArch Docker containers for push to LS Repo
  301. stage('Build-Multi') {
  302. when {
  303. environment name: 'MULTIARCH', value: 'true'
  304. environment name: 'EXIT_STATUS', value: ''
  305. }
  306. parallel {
  307. stage('Build X86') {
  308. steps {
  309. sh "docker build --no-cache --pull -t ${IMAGE}:amd64-${META_TAG} \
  310. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  311. }
  312. }
  313. stage('Build ARMHF') {
  314. agent {
  315. label 'ARMHF'
  316. }
  317. steps {
  318. withCredentials([
  319. [
  320. $class: 'UsernamePasswordMultiBinding',
  321. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  322. usernameVariable: 'DOCKERUSER',
  323. passwordVariable: 'DOCKERPASS'
  324. ]
  325. ]) {
  326. echo 'Logging into DockerHub'
  327. sh '''#! /bin/bash
  328. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  329. '''
  330. sh "docker build --no-cache --pull -f Dockerfile.armhf -t ${IMAGE}:arm32v7-${META_TAG} \
  331. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  332. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  333. sh "docker push lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  334. sh '''docker rmi \
  335. ${IMAGE}:arm32v7-${META_TAG} \
  336. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  337. }
  338. }
  339. }
  340. stage('Build ARM64') {
  341. agent {
  342. label 'ARM64'
  343. }
  344. steps {
  345. withCredentials([
  346. [
  347. $class: 'UsernamePasswordMultiBinding',
  348. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  349. usernameVariable: 'DOCKERUSER',
  350. passwordVariable: 'DOCKERPASS'
  351. ]
  352. ]) {
  353. echo 'Logging into DockerHub'
  354. sh '''#! /bin/bash
  355. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  356. '''
  357. sh "docker build --no-cache --pull -f Dockerfile.aarch64 -t ${IMAGE}:arm64v8-${META_TAG} \
  358. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  359. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  360. sh "docker push lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  361. sh '''docker rmi \
  362. ${IMAGE}:arm64v8-${META_TAG} \
  363. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  364. }
  365. }
  366. }
  367. }
  368. }
  369. // Take the image we just built and dump package versions for comparison
  370. stage('Update-packages') {
  371. when {
  372. branch "master"
  373. environment name: 'CHANGE_ID', value: ''
  374. environment name: 'EXIT_STATUS', value: ''
  375. }
  376. steps {
  377. sh '''#! /bin/bash
  378. set -e
  379. TEMPDIR=$(mktemp -d)
  380. if [ "${MULTIARCH}" == "true" ]; then
  381. LOCAL_CONTAINER=${IMAGE}:amd64-${META_TAG}
  382. else
  383. LOCAL_CONTAINER=${IMAGE}:${META_TAG}
  384. fi
  385. if [ "${DIST_IMAGE}" == "alpine" ]; then
  386. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  387. apk info -v > /tmp/package_versions.txt && \
  388. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  389. chmod 777 /tmp/package_versions.txt'
  390. elif [ "${DIST_IMAGE}" == "ubuntu" ]; then
  391. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  392. apt list -qq --installed | sed "s#/.*now ##g" | cut -d" " -f1 > /tmp/package_versions.txt && \
  393. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  394. chmod 777 /tmp/package_versions.txt'
  395. fi
  396. NEW_PACKAGE_TAG=$(md5sum ${TEMPDIR}/package_versions.txt | cut -c1-8 )
  397. echo "Package tag sha from current packages in buit container is ${NEW_PACKAGE_TAG} comparing to old ${PACKAGE_TAG} from github"
  398. if [ "${NEW_PACKAGE_TAG}" != "${PACKAGE_TAG}" ]; then
  399. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/${LS_REPO}
  400. git --git-dir ${TEMPDIR}/${LS_REPO}/.git checkout -f master
  401. cp ${TEMPDIR}/package_versions.txt ${TEMPDIR}/${LS_REPO}/
  402. cd ${TEMPDIR}/${LS_REPO}/
  403. wait
  404. git add package_versions.txt
  405. git commit -m 'Bot Updating Package Versions'
  406. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  407. echo "true" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  408. echo "Package tag updated, stopping build process"
  409. else
  410. echo "false" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  411. echo "Package tag is same as previous continue with build process"
  412. fi
  413. rm -Rf ${TEMPDIR}'''
  414. script{
  415. env.PACKAGE_UPDATED = sh(
  416. script: '''cat /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}''',
  417. returnStdout: true).trim()
  418. }
  419. }
  420. }
  421. // Exit the build if the package file was just updated
  422. stage('PACKAGE-exit') {
  423. when {
  424. branch "master"
  425. environment name: 'CHANGE_ID', value: ''
  426. environment name: 'PACKAGE_UPDATED', value: 'true'
  427. environment name: 'EXIT_STATUS', value: ''
  428. }
  429. steps {
  430. script{
  431. env.EXIT_STATUS = 'ABORTED'
  432. }
  433. }
  434. }
  435. // Exit the build if this is just a package check and there are no changes to push
  436. stage('PACKAGECHECK-exit') {
  437. when {
  438. branch "master"
  439. environment name: 'CHANGE_ID', value: ''
  440. environment name: 'PACKAGE_UPDATED', value: 'false'
  441. environment name: 'EXIT_STATUS', value: ''
  442. expression {
  443. params.PACKAGE_CHECK == 'true'
  444. }
  445. }
  446. steps {
  447. script{
  448. env.EXIT_STATUS = 'ABORTED'
  449. }
  450. }
  451. }
  452. /* #######
  453. Testing
  454. ####### */
  455. // Run Container tests
  456. stage('Test') {
  457. when {
  458. environment name: 'CI', value: 'true'
  459. environment name: 'EXIT_STATUS', value: ''
  460. }
  461. steps {
  462. withCredentials([
  463. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  464. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  465. ]) {
  466. script{
  467. env.CI_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/index.html'
  468. }
  469. sh '''#! /bin/bash
  470. set -e
  471. docker pull lsiodev/ci:latest
  472. if [ "${MULTIARCH}" == "true" ]; then
  473. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  474. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  475. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  476. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  477. fi
  478. docker run --rm \
  479. --shm-size=1gb \
  480. -v /var/run/docker.sock:/var/run/docker.sock \
  481. -e IMAGE=\"${IMAGE}\" \
  482. -e DELAY_START=\"${CI_DELAY}\" \
  483. -e TAGS=\"${CI_TAGS}\" \
  484. -e META_TAG=\"${META_TAG}\" \
  485. -e PORT=\"${CI_PORT}\" \
  486. -e SSL=\"${CI_SSL}\" \
  487. -e BASE=\"${DIST_IMAGE}\" \
  488. -e SECRET_KEY=\"${DO_SECRET}\" \
  489. -e ACCESS_KEY=\"${DO_KEY}\" \
  490. -e DOCKER_ENV=\"${CI_DOCKERENV}\" \
  491. -e WEB_SCREENSHOT=\"${CI_WEB}\" \
  492. -e WEB_AUTH=\"${CI_AUTH}\" \
  493. -e WEB_PATH=\"${CI_WEBPATH}\" \
  494. -e DO_REGION="ams3" \
  495. -e DO_BUCKET="lsio-ci" \
  496. -t lsiodev/ci:latest \
  497. python /ci/ci.py'''
  498. }
  499. }
  500. }
  501. /* ##################
  502. Release Logic
  503. ################## */
  504. // If this is an amd64 only image only push a single image
  505. stage('Docker-Push-Single') {
  506. when {
  507. environment name: 'MULTIARCH', value: 'false'
  508. environment name: 'EXIT_STATUS', value: ''
  509. }
  510. steps {
  511. withCredentials([
  512. [
  513. $class: 'UsernamePasswordMultiBinding',
  514. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  515. usernameVariable: 'DOCKERUSER',
  516. passwordVariable: 'DOCKERPASS'
  517. ]
  518. ]) {
  519. echo 'Logging into DockerHub'
  520. sh '''#! /bin/bash
  521. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  522. '''
  523. sh "docker tag ${IMAGE}:${META_TAG} ${IMAGE}:latest"
  524. sh "docker push ${IMAGE}:latest"
  525. sh "docker push ${IMAGE}:${META_TAG}"
  526. sh '''docker rmi \
  527. ${IMAGE}:${META_TAG} \
  528. ${IMAGE}:latest || :'''
  529. }
  530. }
  531. }
  532. // If this is a multi arch release push all images and define the manifest
  533. stage('Docker-Push-Multi') {
  534. when {
  535. environment name: 'MULTIARCH', value: 'true'
  536. environment name: 'EXIT_STATUS', value: ''
  537. }
  538. steps {
  539. withCredentials([
  540. [
  541. $class: 'UsernamePasswordMultiBinding',
  542. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  543. usernameVariable: 'DOCKERUSER',
  544. passwordVariable: 'DOCKERPASS'
  545. ]
  546. ]) {
  547. sh '''#! /bin/bash
  548. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  549. '''
  550. sh '''#! /bin/bash
  551. if [ "${CI}" == "false" ]; then
  552. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  553. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  554. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  555. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  556. fi'''
  557. sh "docker tag ${IMAGE}:amd64-${META_TAG} ${IMAGE}:amd64-latest"
  558. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} ${IMAGE}:arm32v7-latest"
  559. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} ${IMAGE}:arm64v8-latest"
  560. sh "docker push ${IMAGE}:amd64-${META_TAG}"
  561. sh "docker push ${IMAGE}:arm32v7-${META_TAG}"
  562. sh "docker push ${IMAGE}:arm64v8-${META_TAG}"
  563. sh "docker push ${IMAGE}:amd64-latest"
  564. sh "docker push ${IMAGE}:arm32v7-latest"
  565. sh "docker push ${IMAGE}:arm64v8-latest"
  566. sh "docker manifest push --purge ${IMAGE}:latest || :"
  567. sh "docker manifest create ${IMAGE}:latest ${IMAGE}:amd64-latest ${IMAGE}:arm32v7-latest ${IMAGE}:arm64v8-latest"
  568. sh "docker manifest annotate ${IMAGE}:latest ${IMAGE}:arm32v7-latest --os linux --arch arm"
  569. sh "docker manifest annotate ${IMAGE}:latest ${IMAGE}:arm64v8-latest --os linux --arch arm64 --variant v8"
  570. sh "docker manifest push --purge ${IMAGE}:${META_TAG} || :"
  571. sh "docker manifest create ${IMAGE}:${META_TAG} ${IMAGE}:amd64-${META_TAG} ${IMAGE}:arm32v7-${META_TAG} ${IMAGE}:arm64v8-${META_TAG}"
  572. sh "docker manifest annotate ${IMAGE}:${META_TAG} ${IMAGE}:arm32v7-${META_TAG} --os linux --arch arm"
  573. sh "docker manifest annotate ${IMAGE}:${META_TAG} ${IMAGE}:arm64v8-${META_TAG} --os linux --arch arm64 --variant v8"
  574. sh "docker manifest push --purge ${IMAGE}:latest"
  575. sh "docker manifest push --purge ${IMAGE}:${META_TAG}"
  576. sh '''docker rmi \
  577. ${IMAGE}:amd64-${META_TAG} \
  578. ${IMAGE}:amd64-latest \
  579. ${IMAGE}:arm32v7-${META_TAG} \
  580. ${IMAGE}:arm32v7-latest \
  581. ${IMAGE}:arm64v8-${META_TAG} \
  582. ${IMAGE}:arm64v8-latest \
  583. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} \
  584. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  585. }
  586. }
  587. }
  588. // If this is a public release tag it in the LS Github
  589. stage('Github-Tag-Push-Release') {
  590. when {
  591. branch "master"
  592. expression {
  593. env.LS_RELEASE != env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  594. }
  595. environment name: 'CHANGE_ID', value: ''
  596. environment name: 'EXIT_STATUS', value: ''
  597. }
  598. steps {
  599. echo "Pushing New tag for current commit ${EXT_RELEASE_CLEAN}-ls${LS_TAG_NUMBER}"
  600. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/git/tags \
  601. -d '{"tag":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  602. "object": "'${COMMIT_SHA}'",\
  603. "message": "Tagging Release '${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}' to master",\
  604. "type": "commit",\
  605. "tagger": {"name": "LinuxServer Jenkins","email": "jenkins@linuxserver.io","date": "'${GITHUB_DATE}'"}}' '''
  606. echo "Pushing New release for Tag"
  607. sh '''#! /bin/bash
  608. echo "Updating to ${EXT_RELEASE_CLEAN}" > releasebody.json
  609. echo '{"tag_name":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  610. "target_commitish": "master",\
  611. "name": "'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  612. "body": "**LinuxServer Changes:**\\n\\n'${LS_RELEASE_NOTES}'\\n**Remote Changes:**\\n\\n' > start
  613. printf '","draft": false,"prerelease": false}' >> releasebody.json
  614. paste -d'\\0' start releasebody.json > releasebody.json.done
  615. curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/releases -d @releasebody.json.done'''
  616. }
  617. }
  618. // Use helper container to sync the current README on master to the dockerhub endpoint
  619. stage('Sync-README') {
  620. when {
  621. environment name: 'CHANGE_ID', value: ''
  622. environment name: 'EXIT_STATUS', value: ''
  623. }
  624. steps {
  625. withCredentials([
  626. [
  627. $class: 'UsernamePasswordMultiBinding',
  628. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  629. usernameVariable: 'DOCKERUSER',
  630. passwordVariable: 'DOCKERPASS'
  631. ]
  632. ]) {
  633. sh '''#! /bin/bash
  634. docker pull lsiodev/readme-sync
  635. docker run --rm=true \
  636. -e DOCKERHUB_USERNAME=$DOCKERUSER \
  637. -e DOCKERHUB_PASSWORD=$DOCKERPASS \
  638. -e GIT_REPOSITORY=${LS_USER}/${LS_REPO} \
  639. -e DOCKER_REPOSITORY=${IMAGE} \
  640. -e GIT_BRANCH=master \
  641. lsiodev/readme-sync bash -c 'node sync' '''
  642. }
  643. }
  644. }
  645. // If this is a Pull request send the CI link as a comment on it
  646. stage('Pull Request Comment') {
  647. when {
  648. not {environment name: 'CHANGE_ID', value: ''}
  649. environment name: 'CI', value: 'true'
  650. environment name: 'EXIT_STATUS', value: ''
  651. }
  652. steps {
  653. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/issues/${PULL_REQUEST}/comments \
  654. -d '{"body": "I am a bot, here are the test results for this PR: \\n'${CI_URL}' \\n'${SHELLCHECK_URL}'"}' '''
  655. }
  656. }
  657. }
  658. /* ######################
  659. Send status to Discord
  660. ###################### */
  661. post {
  662. always {
  663. script{
  664. if (env.EXIT_STATUS == "ABORTED"){
  665. sh 'echo "build aborted"'
  666. }
  667. else if (currentBuild.currentResult == "SUCCESS"){
  668. sh ''' curl -X POST --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 1681177,\
  669. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** Success\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  670. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  671. }
  672. else {
  673. sh ''' curl -X POST --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 16711680,\
  674. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** failure\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  675. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  676. }
  677. }
  678. }
  679. }
  680. }