Oscam is an Open Source Conditional Access Module software used for descrambling DVB transmissions using smart cards. It's both a server and a client.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

749 lines
34 KiB

  1. pipeline {
  2. agent {
  3. label 'X86-64-MULTI'
  4. }
  5. options {
  6. buildDiscarder(logRotator(numToKeepStr: '10', daysToKeepStr: '60'))
  7. parallelsAlwaysFailFast()
  8. }
  9. // Input to determine if this is a package check
  10. parameters {
  11. string(defaultValue: 'false', description: 'package check run', name: 'PACKAGE_CHECK')
  12. }
  13. // Configuration for the variables used for this specific repo
  14. environment {
  15. BUILDS_DISCORD=credentials('build_webhook_url')
  16. GITHUB_TOKEN=credentials('498b4638-2d02-4ce5-832d-8a57d01d97ab')
  17. GITLAB_TOKEN=credentials('b6f0f1dd-6952-4cf6-95d1-9c06380283f0')
  18. GITLAB_NAMESPACE=credentials('gitlab-namespace-id')
  19. BUILD_VERSION_ARG = 'OSCAM_VERSION'
  20. LS_USER = 'linuxserver'
  21. LS_REPO = 'docker-oscam'
  22. CONTAINER_NAME = 'oscam'
  23. DOCKERHUB_IMAGE = 'linuxserver/oscam'
  24. DEV_DOCKERHUB_IMAGE = 'lsiodev/oscam'
  25. PR_DOCKERHUB_IMAGE = 'lspipepr/oscam'
  26. DIST_IMAGE = 'alpine'
  27. MULTIARCH='true'
  28. CI='true'
  29. CI_WEB='true'
  30. CI_PORT='8888'
  31. CI_SSL='false'
  32. CI_DELAY='120'
  33. CI_DOCKERENV='TZ=US/Pacific'
  34. CI_AUTH='user:password'
  35. CI_WEBPATH=''
  36. }
  37. stages {
  38. // Setup all the basic environment variables needed for the build
  39. stage("Set ENV Variables base"){
  40. steps{
  41. script{
  42. env.EXIT_STATUS = ''
  43. env.LS_RELEASE = sh(
  44. script: '''docker run --rm alexeiled/skopeo sh -c 'skopeo inspect docker://docker.io/'${DOCKERHUB_IMAGE}':latest 2>/dev/null' | jq -r '.Labels.build_version' | awk '{print $3}' | grep '\\-ls' || : ''',
  45. returnStdout: true).trim()
  46. env.LS_RELEASE_NOTES = sh(
  47. script: '''cat readme-vars.yml | awk -F \\" '/date: "[0-9][0-9].[0-9][0-9].[0-9][0-9]:/ {print $4;exit;}' | sed -E ':a;N;$!ba;s/\\r{0,1}\\n/\\\\n/g' ''',
  48. returnStdout: true).trim()
  49. env.GITHUB_DATE = sh(
  50. script: '''date '+%Y-%m-%dT%H:%M:%S%:z' ''',
  51. returnStdout: true).trim()
  52. env.COMMIT_SHA = sh(
  53. script: '''git rev-parse HEAD''',
  54. returnStdout: true).trim()
  55. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/commit/' + env.GIT_COMMIT
  56. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DOCKERHUB_IMAGE + '/tags/'
  57. env.PULL_REQUEST = env.CHANGE_ID
  58. env.TEMPLATED_FILES = 'Jenkinsfile README.md LICENSE ./.github/FUNDING.yml ./.github/ISSUE_TEMPLATE.md ./.github/PULL_REQUEST_TEMPLATE.md'
  59. }
  60. script{
  61. env.LS_RELEASE_NUMBER = sh(
  62. script: '''echo ${LS_RELEASE} |sed 's/^.*-ls//g' ''',
  63. returnStdout: true).trim()
  64. }
  65. script{
  66. env.LS_TAG_NUMBER = sh(
  67. script: '''#! /bin/bash
  68. tagsha=$(git rev-list -n 1 ${LS_RELEASE} 2>/dev/null)
  69. if [ "${tagsha}" == "${COMMIT_SHA}" ]; then
  70. echo ${LS_RELEASE_NUMBER}
  71. elif [ -z "${GIT_COMMIT}" ]; then
  72. echo ${LS_RELEASE_NUMBER}
  73. else
  74. echo $((${LS_RELEASE_NUMBER} + 1))
  75. fi''',
  76. returnStdout: true).trim()
  77. }
  78. }
  79. }
  80. /* #######################
  81. Package Version Tagging
  82. ####################### */
  83. // Grab the current package versions in Git to determine package tag
  84. stage("Set Package tag"){
  85. steps{
  86. script{
  87. env.PACKAGE_TAG = sh(
  88. script: '''#!/bin/bash
  89. if [ -e package_versions.txt ] ; then
  90. cat package_versions.txt | md5sum | cut -c1-8
  91. else
  92. echo none
  93. fi''',
  94. returnStdout: true).trim()
  95. }
  96. }
  97. }
  98. /* ########################
  99. External Release Tagging
  100. ######################## */
  101. // If this is a custom command to determine version use that command
  102. stage("Set tag custom bash"){
  103. steps{
  104. script{
  105. env.EXT_RELEASE = sh(
  106. script: ''' docker run --rm alpine:3.9 sh -c 'apk add subversion > /dev/null 2>&1 && svn info --show-item revision http://www.streamboard.tv/svn/oscam/trunk' ''',
  107. returnStdout: true).trim()
  108. env.RELEASE_LINK = 'custom_command'
  109. }
  110. }
  111. }
  112. // Sanitize the release tag and strip illegal docker or github characters
  113. stage("Sanitize tag"){
  114. steps{
  115. script{
  116. env.EXT_RELEASE_CLEAN = sh(
  117. script: '''echo ${EXT_RELEASE} | sed 's/[~,%@+;:/]//g' ''',
  118. returnStdout: true).trim()
  119. }
  120. }
  121. }
  122. // If this is a master build use live docker endpoints
  123. stage("Set ENV live build"){
  124. when {
  125. branch "master"
  126. environment name: 'CHANGE_ID', value: ''
  127. }
  128. steps {
  129. script{
  130. env.IMAGE = env.DOCKERHUB_IMAGE
  131. env.QUAYIMAGE = 'quay.io/linuxserver.io/' + env.CONTAINER_NAME
  132. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/' + env.CONTAINER_NAME
  133. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/' + env.CONTAINER_NAME
  134. if (env.MULTIARCH == 'true') {
  135. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  136. } else {
  137. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  138. }
  139. env.META_TAG = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  140. }
  141. }
  142. }
  143. // If this is a dev build use dev docker endpoints
  144. stage("Set ENV dev build"){
  145. when {
  146. not {branch "master"}
  147. environment name: 'CHANGE_ID', value: ''
  148. }
  149. steps {
  150. script{
  151. env.IMAGE = env.DEV_DOCKERHUB_IMAGE
  152. env.QUAYIMAGE = 'quay.io/linuxserver.io/lsiodev-' + env.CONTAINER_NAME
  153. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/lsiodev-' + env.CONTAINER_NAME
  154. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/lsiodev-' + env.CONTAINER_NAME
  155. if (env.MULTIARCH == 'true') {
  156. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  157. } else {
  158. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  159. }
  160. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  161. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DEV_DOCKERHUB_IMAGE + '/tags/'
  162. }
  163. }
  164. }
  165. // If this is a pull request build use dev docker endpoints
  166. stage("Set ENV PR build"){
  167. when {
  168. not {environment name: 'CHANGE_ID', value: ''}
  169. }
  170. steps {
  171. script{
  172. env.IMAGE = env.PR_DOCKERHUB_IMAGE
  173. env.QUAYIMAGE = 'quay.io/linuxserver.io/lspipepr-' + env.CONTAINER_NAME
  174. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/lspipepr-' + env.CONTAINER_NAME
  175. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/lspipepr-' + env.CONTAINER_NAME
  176. if (env.MULTIARCH == 'true') {
  177. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  178. } else {
  179. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  180. }
  181. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  182. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/pull/' + env.PULL_REQUEST
  183. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.PR_DOCKERHUB_IMAGE + '/tags/'
  184. }
  185. }
  186. }
  187. // Run ShellCheck
  188. stage('ShellCheck') {
  189. when {
  190. environment name: 'CI', value: 'true'
  191. }
  192. steps {
  193. withCredentials([
  194. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  195. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  196. ]) {
  197. script{
  198. env.SHELLCHECK_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/shellcheck-result.xml'
  199. }
  200. sh '''curl -sL https://raw.githubusercontent.com/linuxserver/docker-shellcheck/master/checkrun.sh | /bin/bash'''
  201. sh '''#! /bin/bash
  202. set -e
  203. docker pull lsiodev/spaces-file-upload:latest
  204. docker run --rm \
  205. -e DESTINATION=\"${IMAGE}/${META_TAG}/shellcheck-result.xml\" \
  206. -e FILE_NAME="shellcheck-result.xml" \
  207. -e MIMETYPE="text/xml" \
  208. -v ${WORKSPACE}:/mnt \
  209. -e SECRET_KEY=\"${DO_SECRET}\" \
  210. -e ACCESS_KEY=\"${DO_KEY}\" \
  211. -t lsiodev/spaces-file-upload:latest \
  212. python /upload.py'''
  213. }
  214. }
  215. }
  216. // Use helper containers to render templated files
  217. stage('Update-Templates') {
  218. when {
  219. branch "master"
  220. environment name: 'CHANGE_ID', value: ''
  221. expression {
  222. env.CONTAINER_NAME != null
  223. }
  224. }
  225. steps {
  226. sh '''#! /bin/bash
  227. set -e
  228. TEMPDIR=$(mktemp -d)
  229. docker pull linuxserver/jenkins-builder:latest
  230. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/jenkins linuxserver/jenkins-builder:latest
  231. CURRENTHASH=$(grep -hs ^ ${TEMPLATED_FILES} | md5sum | cut -c1-8)
  232. cd ${TEMPDIR}/docker-${CONTAINER_NAME}
  233. NEWHASH=$(grep -hs ^ ${TEMPLATED_FILES} | md5sum | cut -c1-8)
  234. if [[ "${CURRENTHASH}" != "${NEWHASH}" ]]; then
  235. mkdir -p ${TEMPDIR}/repo
  236. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/repo/${LS_REPO}
  237. cd ${TEMPDIR}/repo/${LS_REPO}
  238. git checkout -f master
  239. cd ${TEMPDIR}/docker-${CONTAINER_NAME}
  240. mkdir -p ${TEMPDIR}/repo/${LS_REPO}/.github
  241. cp --parents ${TEMPLATED_FILES} ${TEMPDIR}/repo/${LS_REPO}/
  242. cd ${TEMPDIR}/repo/${LS_REPO}/
  243. git add ${TEMPLATED_FILES}
  244. git commit -m 'Bot Updating Templated Files'
  245. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  246. echo "true" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  247. else
  248. echo "false" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  249. fi
  250. mkdir -p ${TEMPDIR}/gitbook
  251. git clone https://github.com/linuxserver/docker-documentation.git ${TEMPDIR}/gitbook/docker-documentation
  252. if [[ "${BRANCH_NAME}" == "master" ]] && [[ (! -f ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md) || ("$(md5sum ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')" != "$(md5sum ${TEMPDIR}/docker-${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')") ]]; then
  253. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md ${TEMPDIR}/gitbook/docker-documentation/images/
  254. cd ${TEMPDIR}/gitbook/docker-documentation/
  255. git add images/docker-${CONTAINER_NAME}.md
  256. git commit -m 'Bot Updating Documentation'
  257. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/linuxserver/docker-documentation.git --all
  258. fi
  259. rm -Rf ${TEMPDIR}'''
  260. script{
  261. env.FILES_UPDATED = sh(
  262. script: '''cat /tmp/${COMMIT_SHA}-${BUILD_NUMBER}''',
  263. returnStdout: true).trim()
  264. }
  265. }
  266. }
  267. // Exit the build if the Templated files were just updated
  268. stage('Template-exit') {
  269. when {
  270. branch "master"
  271. environment name: 'CHANGE_ID', value: ''
  272. environment name: 'FILES_UPDATED', value: 'true'
  273. expression {
  274. env.CONTAINER_NAME != null
  275. }
  276. }
  277. steps {
  278. script{
  279. env.EXIT_STATUS = 'ABORTED'
  280. }
  281. }
  282. }
  283. /* #######################
  284. GitLab Mirroring
  285. ####################### */
  286. // Ping into Gitlab to mirror this repo and have a registry endpoint
  287. stage("GitLab Mirror"){
  288. when {
  289. environment name: 'EXIT_STATUS', value: ''
  290. }
  291. steps{
  292. sh '''curl -H "Content-Type: application/json" -H "Private-Token: ${GITLAB_TOKEN}" -X POST https://gitlab.com/api/v4/projects \
  293. -d '{"namespace_id":'${GITLAB_NAMESPACE}',\
  294. "name":"'${LS_REPO}'",
  295. "mirror":true,\
  296. "import_url":"https://github.com/linuxserver/'${LS_REPO}'.git",\
  297. "issues_access_level":"disabled",\
  298. "merge_requests_access_level":"disabled",\
  299. "repository_access_level":"enabled",\
  300. "visibility":"public"}' '''
  301. }
  302. }
  303. /* ###############
  304. Build Container
  305. ############### */
  306. // Build Docker container for push to LS Repo
  307. stage('Build-Single') {
  308. when {
  309. environment name: 'MULTIARCH', value: 'false'
  310. environment name: 'EXIT_STATUS', value: ''
  311. }
  312. steps {
  313. sh "docker build --no-cache --pull -t ${IMAGE}:${META_TAG} \
  314. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  315. }
  316. }
  317. // Build MultiArch Docker containers for push to LS Repo
  318. stage('Build-Multi') {
  319. when {
  320. environment name: 'MULTIARCH', value: 'true'
  321. environment name: 'EXIT_STATUS', value: ''
  322. }
  323. parallel {
  324. stage('Build X86') {
  325. steps {
  326. sh "docker build --no-cache --pull -t ${IMAGE}:amd64-${META_TAG} \
  327. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  328. }
  329. }
  330. stage('Build ARMHF') {
  331. agent {
  332. label 'ARMHF'
  333. }
  334. steps {
  335. withCredentials([
  336. [
  337. $class: 'UsernamePasswordMultiBinding',
  338. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  339. usernameVariable: 'DOCKERUSER',
  340. passwordVariable: 'DOCKERPASS'
  341. ]
  342. ]) {
  343. echo 'Logging into DockerHub'
  344. sh '''#! /bin/bash
  345. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  346. '''
  347. sh "docker build --no-cache --pull -f Dockerfile.armhf -t ${IMAGE}:arm32v7-${META_TAG} \
  348. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  349. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  350. sh "docker push lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  351. sh '''docker rmi \
  352. ${IMAGE}:arm32v7-${META_TAG} \
  353. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  354. }
  355. }
  356. }
  357. stage('Build ARM64') {
  358. agent {
  359. label 'ARM64'
  360. }
  361. steps {
  362. withCredentials([
  363. [
  364. $class: 'UsernamePasswordMultiBinding',
  365. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  366. usernameVariable: 'DOCKERUSER',
  367. passwordVariable: 'DOCKERPASS'
  368. ]
  369. ]) {
  370. echo 'Logging into DockerHub'
  371. sh '''#! /bin/bash
  372. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  373. '''
  374. sh "docker build --no-cache --pull -f Dockerfile.aarch64 -t ${IMAGE}:arm64v8-${META_TAG} \
  375. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  376. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  377. sh "docker push lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  378. sh '''docker rmi \
  379. ${IMAGE}:arm64v8-${META_TAG} \
  380. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  381. }
  382. }
  383. }
  384. }
  385. }
  386. // Take the image we just built and dump package versions for comparison
  387. stage('Update-packages') {
  388. when {
  389. branch "master"
  390. environment name: 'CHANGE_ID', value: ''
  391. environment name: 'EXIT_STATUS', value: ''
  392. }
  393. steps {
  394. sh '''#! /bin/bash
  395. set -e
  396. TEMPDIR=$(mktemp -d)
  397. if [ "${MULTIARCH}" == "true" ]; then
  398. LOCAL_CONTAINER=${IMAGE}:amd64-${META_TAG}
  399. else
  400. LOCAL_CONTAINER=${IMAGE}:${META_TAG}
  401. fi
  402. if [ "${DIST_IMAGE}" == "alpine" ]; then
  403. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  404. apk info -v > /tmp/package_versions.txt && \
  405. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  406. chmod 777 /tmp/package_versions.txt'
  407. elif [ "${DIST_IMAGE}" == "ubuntu" ]; then
  408. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  409. apt list -qq --installed | sed "s#/.*now ##g" | cut -d" " -f1 > /tmp/package_versions.txt && \
  410. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  411. chmod 777 /tmp/package_versions.txt'
  412. fi
  413. NEW_PACKAGE_TAG=$(md5sum ${TEMPDIR}/package_versions.txt | cut -c1-8 )
  414. echo "Package tag sha from current packages in buit container is ${NEW_PACKAGE_TAG} comparing to old ${PACKAGE_TAG} from github"
  415. if [ "${NEW_PACKAGE_TAG}" != "${PACKAGE_TAG}" ]; then
  416. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/${LS_REPO}
  417. git --git-dir ${TEMPDIR}/${LS_REPO}/.git checkout -f master
  418. cp ${TEMPDIR}/package_versions.txt ${TEMPDIR}/${LS_REPO}/
  419. cd ${TEMPDIR}/${LS_REPO}/
  420. wait
  421. git add package_versions.txt
  422. git commit -m 'Bot Updating Package Versions'
  423. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  424. echo "true" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  425. echo "Package tag updated, stopping build process"
  426. else
  427. echo "false" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  428. echo "Package tag is same as previous continue with build process"
  429. fi
  430. rm -Rf ${TEMPDIR}'''
  431. script{
  432. env.PACKAGE_UPDATED = sh(
  433. script: '''cat /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}''',
  434. returnStdout: true).trim()
  435. }
  436. }
  437. }
  438. // Exit the build if the package file was just updated
  439. stage('PACKAGE-exit') {
  440. when {
  441. branch "master"
  442. environment name: 'CHANGE_ID', value: ''
  443. environment name: 'PACKAGE_UPDATED', value: 'true'
  444. environment name: 'EXIT_STATUS', value: ''
  445. }
  446. steps {
  447. script{
  448. env.EXIT_STATUS = 'ABORTED'
  449. }
  450. }
  451. }
  452. // Exit the build if this is just a package check and there are no changes to push
  453. stage('PACKAGECHECK-exit') {
  454. when {
  455. branch "master"
  456. environment name: 'CHANGE_ID', value: ''
  457. environment name: 'PACKAGE_UPDATED', value: 'false'
  458. environment name: 'EXIT_STATUS', value: ''
  459. expression {
  460. params.PACKAGE_CHECK == 'true'
  461. }
  462. }
  463. steps {
  464. script{
  465. env.EXIT_STATUS = 'ABORTED'
  466. }
  467. }
  468. }
  469. /* #######
  470. Testing
  471. ####### */
  472. // Run Container tests
  473. stage('Test') {
  474. when {
  475. environment name: 'CI', value: 'true'
  476. environment name: 'EXIT_STATUS', value: ''
  477. }
  478. steps {
  479. withCredentials([
  480. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  481. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  482. ]) {
  483. script{
  484. env.CI_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/index.html'
  485. }
  486. sh '''#! /bin/bash
  487. set -e
  488. docker pull lsiodev/ci:latest
  489. if [ "${MULTIARCH}" == "true" ]; then
  490. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  491. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  492. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  493. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  494. fi
  495. docker run --rm \
  496. --shm-size=1gb \
  497. -v /var/run/docker.sock:/var/run/docker.sock \
  498. -e IMAGE=\"${IMAGE}\" \
  499. -e DELAY_START=\"${CI_DELAY}\" \
  500. -e TAGS=\"${CI_TAGS}\" \
  501. -e META_TAG=\"${META_TAG}\" \
  502. -e PORT=\"${CI_PORT}\" \
  503. -e SSL=\"${CI_SSL}\" \
  504. -e BASE=\"${DIST_IMAGE}\" \
  505. -e SECRET_KEY=\"${DO_SECRET}\" \
  506. -e ACCESS_KEY=\"${DO_KEY}\" \
  507. -e DOCKER_ENV=\"${CI_DOCKERENV}\" \
  508. -e WEB_SCREENSHOT=\"${CI_WEB}\" \
  509. -e WEB_AUTH=\"${CI_AUTH}\" \
  510. -e WEB_PATH=\"${CI_WEBPATH}\" \
  511. -e DO_REGION="ams3" \
  512. -e DO_BUCKET="lsio-ci" \
  513. -t lsiodev/ci:latest \
  514. python /ci/ci.py'''
  515. }
  516. }
  517. }
  518. /* ##################
  519. Release Logic
  520. ################## */
  521. // If this is an amd64 only image only push a single image
  522. stage('Docker-Push-Single') {
  523. when {
  524. environment name: 'MULTIARCH', value: 'false'
  525. environment name: 'EXIT_STATUS', value: ''
  526. }
  527. steps {
  528. withCredentials([
  529. [
  530. $class: 'UsernamePasswordMultiBinding',
  531. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  532. usernameVariable: 'DOCKERUSER',
  533. passwordVariable: 'DOCKERPASS'
  534. ],
  535. [
  536. $class: 'UsernamePasswordMultiBinding',
  537. credentialsId: 'Quay.io-Robot',
  538. usernameVariable: 'QUAYUSER',
  539. passwordVariable: 'QUAYPASS'
  540. ]
  541. ]) {
  542. sh '''#! /bin/bash
  543. set -e
  544. echo $QUAYPASS | docker login quay.io -u $QUAYUSER --password-stdin
  545. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  546. echo $GITHUB_TOKEN | docker login docker.pkg.github.com -u LinuxServer-CI --password-stdin
  547. echo $GITLAB_TOKEN | docker login registry.gitlab.com -u LinuxServer.io --password-stdin
  548. for PUSHIMAGE in "${QUAYIMAGE}" "${GITHUBIMAGE}" "${GITLABIMAGE}" "${IMAGE}"; do
  549. docker tag ${IMAGE}:${META_TAG} ${PUSHIMAGE}:${META_TAG}
  550. docker tag ${PUSHIMAGE}:${META_TAG} ${PUSHIMAGE}:latest
  551. docker push ${PUSHIMAGE}:latest
  552. docker push ${PUSHIMAGE}:${META_TAG}
  553. done
  554. for DELETEIMAGE in "${QUAYIMAGE}" "${GITHUBIMAGE}" "{GITLABIMAGE}" "${IMAGE}"; do
  555. docker rmi \
  556. ${DELETEIMAGE}:${META_TAG} \
  557. ${DELETEIMAGE}:latest || :
  558. done
  559. '''
  560. }
  561. }
  562. }
  563. // If this is a multi arch release push all images and define the manifest
  564. stage('Docker-Push-Multi') {
  565. when {
  566. environment name: 'MULTIARCH', value: 'true'
  567. environment name: 'EXIT_STATUS', value: ''
  568. }
  569. steps {
  570. withCredentials([
  571. [
  572. $class: 'UsernamePasswordMultiBinding',
  573. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  574. usernameVariable: 'DOCKERUSER',
  575. passwordVariable: 'DOCKERPASS'
  576. ],
  577. [
  578. $class: 'UsernamePasswordMultiBinding',
  579. credentialsId: 'Quay.io-Robot',
  580. usernameVariable: 'QUAYUSER',
  581. passwordVariable: 'QUAYPASS'
  582. ]
  583. ]) {
  584. sh '''#! /bin/bash
  585. set -e
  586. echo $QUAYPASS | docker login quay.io -u $QUAYUSER --password-stdin
  587. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  588. echo $GITHUB_TOKEN | docker login docker.pkg.github.com -u LinuxServer-CI --password-stdin
  589. echo $GITLAB_TOKEN | docker login registry.gitlab.com -u LinuxServer.io --password-stdin
  590. if [ "${CI}" == "false" ]; then
  591. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  592. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  593. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  594. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  595. fi
  596. for MANIFESTIMAGE in "${IMAGE}" "${GITLABIMAGE}"; do
  597. docker tag ${IMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-${META_TAG}
  598. docker tag ${IMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG}
  599. docker tag ${IMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  600. docker tag ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-latest
  601. docker tag ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-latest
  602. docker tag ${MANIFESTIMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-latest
  603. docker push ${MANIFESTIMAGE}:amd64-${META_TAG}
  604. docker push ${MANIFESTIMAGE}:arm32v7-${META_TAG}
  605. docker push ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  606. docker push ${MANIFESTIMAGE}:amd64-latest
  607. docker push ${MANIFESTIMAGE}:arm32v7-latest
  608. docker push ${MANIFESTIMAGE}:arm64v8-latest
  609. docker manifest push --purge ${MANIFESTIMAGE}:latest || :
  610. docker manifest create ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:amd64-latest ${MANIFESTIMAGE}:arm32v7-latest ${MANIFESTIMAGE}:arm64v8-latest
  611. docker manifest annotate ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:arm32v7-latest --os linux --arch arm
  612. docker manifest annotate ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:arm64v8-latest --os linux --arch arm64 --variant v8
  613. docker manifest push --purge ${MANIFESTIMAGE}:${META_TAG} || :
  614. docker manifest create ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  615. docker manifest annotate ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG} --os linux --arch arm
  616. docker manifest annotate ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG} --os linux --arch arm64 --variant v8
  617. docker manifest push --purge ${MANIFESTIMAGE}:latest
  618. docker manifest push --purge ${MANIFESTIMAGE}:${META_TAG}
  619. done
  620. for LEGACYIMAGE in "${GITHUBIMAGE}" "${QUAYIMAGE}"; do
  621. docker tag ${IMAGE}:amd64-${META_TAG} ${LEGACYIMAGE}:amd64-${META_TAG}
  622. docker tag ${IMAGE}:arm32v7-${META_TAG} ${LEGACYIMAGE}:arm32v7-${META_TAG}
  623. docker tag ${IMAGE}:arm64v8-${META_TAG} ${LEGACYIMAGE}:arm64v8-${META_TAG}
  624. docker tag ${LEGACYIMAGE}:amd64-${META_TAG} ${LEGACYIMAGE}:latest
  625. docker tag ${LEGACYIMAGE}:amd64-${META_TAG} ${LEGACYIMAGE}:${META_TAG}
  626. docker tag ${LEGACYIMAGE}:arm32v7-${META_TAG} ${LEGACYIMAGE}:arm32v7-latest
  627. docker tag ${LEGACYIMAGE}:arm64v8-${META_TAG} ${LEGACYIMAGE}:arm64v8-latest
  628. docker push ${LEGACYIMAGE}:amd64-${META_TAG}
  629. docker push ${LEGACYIMAGE}:arm32v7-${META_TAG}
  630. docker push ${LEGACYIMAGE}:arm64v8-${META_TAG}
  631. docker push ${LEGACYIMAGE}:latest
  632. docker push ${LEGACYIMAGE}:${META_TAG}
  633. docker push ${LEGACYIMAGE}:arm32v7-latest
  634. docker push ${LEGACYIMAGE}:arm64v8-latest
  635. done
  636. '''
  637. sh '''#! /bin/bash
  638. for DELETEIMAGE in "${QUAYIMAGE}" "${GITHUBIMAGE}" "${GITLABIMAGE}" "${IMAGE}"; do
  639. docker rmi \
  640. ${DELETEIMAGE}:amd64-${META_TAG} \
  641. ${DELETEIMAGE}:amd64-latest \
  642. ${DELETEIMAGE}:arm32v7-${META_TAG} \
  643. ${DELETEIMAGE}:arm32v7-latest \
  644. ${DELETEIMAGE}:arm64v8-${META_TAG} \
  645. ${DELETEIMAGE}:arm64v8-latest || :
  646. done
  647. docker rmi \
  648. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} \
  649. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :
  650. '''
  651. }
  652. }
  653. }
  654. // If this is a public release tag it in the LS Github
  655. stage('Github-Tag-Push-Release') {
  656. when {
  657. branch "master"
  658. expression {
  659. env.LS_RELEASE != env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  660. }
  661. environment name: 'CHANGE_ID', value: ''
  662. environment name: 'EXIT_STATUS', value: ''
  663. }
  664. steps {
  665. echo "Pushing New tag for current commit ${EXT_RELEASE_CLEAN}-ls${LS_TAG_NUMBER}"
  666. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/git/tags \
  667. -d '{"tag":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  668. "object": "'${COMMIT_SHA}'",\
  669. "message": "Tagging Release '${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}' to master",\
  670. "type": "commit",\
  671. "tagger": {"name": "LinuxServer Jenkins","email": "jenkins@linuxserver.io","date": "'${GITHUB_DATE}'"}}' '''
  672. echo "Pushing New release for Tag"
  673. sh '''#! /bin/bash
  674. echo "Updating to ${EXT_RELEASE_CLEAN}" > releasebody.json
  675. echo '{"tag_name":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  676. "target_commitish": "master",\
  677. "name": "'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  678. "body": "**LinuxServer Changes:**\\n\\n'${LS_RELEASE_NOTES}'\\n**Remote Changes:**\\n\\n' > start
  679. printf '","draft": false,"prerelease": false}' >> releasebody.json
  680. paste -d'\\0' start releasebody.json > releasebody.json.done
  681. curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/releases -d @releasebody.json.done'''
  682. }
  683. }
  684. // Use helper container to sync the current README on master to the dockerhub endpoint
  685. stage('Sync-README') {
  686. when {
  687. environment name: 'CHANGE_ID', value: ''
  688. environment name: 'EXIT_STATUS', value: ''
  689. }
  690. steps {
  691. withCredentials([
  692. [
  693. $class: 'UsernamePasswordMultiBinding',
  694. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  695. usernameVariable: 'DOCKERUSER',
  696. passwordVariable: 'DOCKERPASS'
  697. ]
  698. ]) {
  699. sh '''#! /bin/bash
  700. docker pull lsiodev/readme-sync
  701. docker run --rm=true \
  702. -e DOCKERHUB_USERNAME=$DOCKERUSER \
  703. -e DOCKERHUB_PASSWORD=$DOCKERPASS \
  704. -e GIT_REPOSITORY=${LS_USER}/${LS_REPO} \
  705. -e DOCKER_REPOSITORY=${IMAGE} \
  706. -e GIT_BRANCH=master \
  707. lsiodev/readme-sync bash -c 'node sync' '''
  708. }
  709. }
  710. }
  711. // If this is a Pull request send the CI link as a comment on it
  712. stage('Pull Request Comment') {
  713. when {
  714. not {environment name: 'CHANGE_ID', value: ''}
  715. environment name: 'CI', value: 'true'
  716. environment name: 'EXIT_STATUS', value: ''
  717. }
  718. steps {
  719. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/issues/${PULL_REQUEST}/comments \
  720. -d '{"body": "I am a bot, here are the test results for this PR: \\n'${CI_URL}' \\n'${SHELLCHECK_URL}'"}' '''
  721. }
  722. }
  723. }
  724. /* ######################
  725. Send status to Discord
  726. ###################### */
  727. post {
  728. always {
  729. script{
  730. if (env.EXIT_STATUS == "ABORTED"){
  731. sh 'echo "build aborted"'
  732. }
  733. else if (currentBuild.currentResult == "SUCCESS"){
  734. sh ''' curl -X POST -H "Content-Type: application/json" --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 1681177,\
  735. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** Success\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  736. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  737. }
  738. else {
  739. sh ''' curl -X POST -H "Content-Type: application/json" --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 16711680,\
  740. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** failure\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  741. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  742. }
  743. }
  744. }
  745. cleanup {
  746. cleanWs()
  747. }
  748. }
  749. }