Oscam is an Open Source Conditional Access Module software used for descrambling DVB transmissions using smart cards. It's both a server and a client.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

740 lines
34 KiB

  1. pipeline {
  2. agent {
  3. label 'X86-64-MULTI'
  4. }
  5. options {
  6. buildDiscarder(logRotator(numToKeepStr: '10', daysToKeepStr: '60'))
  7. parallelsAlwaysFailFast()
  8. }
  9. // Input to determine if this is a package check
  10. parameters {
  11. string(defaultValue: 'false', description: 'package check run', name: 'PACKAGE_CHECK')
  12. }
  13. // Configuration for the variables used for this specific repo
  14. environment {
  15. BUILDS_DISCORD=credentials('build_webhook_url')
  16. GITHUB_TOKEN=credentials('498b4638-2d02-4ce5-832d-8a57d01d97ab')
  17. GITLAB_TOKEN=credentials('b6f0f1dd-6952-4cf6-95d1-9c06380283f0')
  18. GITLAB_NAMESPACE=credentials('gitlab-namespace-id')
  19. BUILD_VERSION_ARG = 'OSCAM_VERSION'
  20. LS_USER = 'linuxserver'
  21. LS_REPO = 'docker-oscam'
  22. CONTAINER_NAME = 'oscam'
  23. DOCKERHUB_IMAGE = 'linuxserver/oscam'
  24. DEV_DOCKERHUB_IMAGE = 'lsiodev/oscam'
  25. PR_DOCKERHUB_IMAGE = 'lspipepr/oscam'
  26. DIST_IMAGE = 'alpine'
  27. MULTIARCH='true'
  28. CI='true'
  29. CI_WEB='true'
  30. CI_PORT='8888'
  31. CI_SSL='false'
  32. CI_DELAY='120'
  33. CI_DOCKERENV='TZ=US/Pacific'
  34. CI_AUTH='user:password'
  35. CI_WEBPATH=''
  36. }
  37. stages {
  38. // Setup all the basic environment variables needed for the build
  39. stage("Set ENV Variables base"){
  40. steps{
  41. script{
  42. env.EXIT_STATUS = ''
  43. env.LS_RELEASE = sh(
  44. script: '''docker run --rm alexeiled/skopeo sh -c 'skopeo inspect docker://docker.io/'${DOCKERHUB_IMAGE}':latest 2>/dev/null' | jq -r '.Labels.build_version' | awk '{print $3}' | grep '\\-ls' || : ''',
  45. returnStdout: true).trim()
  46. env.LS_RELEASE_NOTES = sh(
  47. script: '''cat readme-vars.yml | awk -F \\" '/date: "[0-9][0-9].[0-9][0-9].[0-9][0-9]:/ {print $4;exit;}' | sed -E ':a;N;$!ba;s/\\r{0,1}\\n/\\\\n/g' ''',
  48. returnStdout: true).trim()
  49. env.GITHUB_DATE = sh(
  50. script: '''date '+%Y-%m-%dT%H:%M:%S%:z' ''',
  51. returnStdout: true).trim()
  52. env.COMMIT_SHA = sh(
  53. script: '''git rev-parse HEAD''',
  54. returnStdout: true).trim()
  55. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/commit/' + env.GIT_COMMIT
  56. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DOCKERHUB_IMAGE + '/tags/'
  57. env.PULL_REQUEST = env.CHANGE_ID
  58. env.TEMPLATED_FILES = 'Jenkinsfile README.md LICENSE ./.github/FUNDING.yml ./.github/ISSUE_TEMPLATE.md ./.github/PULL_REQUEST_TEMPLATE.md'
  59. }
  60. script{
  61. env.LS_RELEASE_NUMBER = sh(
  62. script: '''echo ${LS_RELEASE} |sed 's/^.*-ls//g' ''',
  63. returnStdout: true).trim()
  64. }
  65. script{
  66. env.LS_TAG_NUMBER = sh(
  67. script: '''#! /bin/bash
  68. tagsha=$(git rev-list -n 1 ${LS_RELEASE} 2>/dev/null)
  69. if [ "${tagsha}" == "${COMMIT_SHA}" ]; then
  70. echo ${LS_RELEASE_NUMBER}
  71. elif [ -z "${GIT_COMMIT}" ]; then
  72. echo ${LS_RELEASE_NUMBER}
  73. else
  74. echo $((${LS_RELEASE_NUMBER} + 1))
  75. fi''',
  76. returnStdout: true).trim()
  77. }
  78. }
  79. }
  80. /* #######################
  81. Package Version Tagging
  82. ####################### */
  83. // Grab the current package versions in Git to determine package tag
  84. stage("Set Package tag"){
  85. steps{
  86. script{
  87. env.PACKAGE_TAG = sh(
  88. script: '''#!/bin/bash
  89. if [ -e package_versions.txt ] ; then
  90. cat package_versions.txt | md5sum | cut -c1-8
  91. else
  92. echo none
  93. fi''',
  94. returnStdout: true).trim()
  95. }
  96. }
  97. }
  98. /* ########################
  99. External Release Tagging
  100. ######################## */
  101. // If this is a custom command to determine version use that command
  102. stage("Set tag custom bash"){
  103. steps{
  104. script{
  105. env.EXT_RELEASE = sh(
  106. script: ''' docker run --rm alpine:3.9 sh -c 'apk add subversion > /dev/null 2>&1 && svn info --show-item revision https://svn.streamboard.tv/oscam/trunk' ''',
  107. returnStdout: true).trim()
  108. env.RELEASE_LINK = 'custom_command'
  109. }
  110. }
  111. }
  112. // Sanitize the release tag and strip illegal docker or github characters
  113. stage("Sanitize tag"){
  114. steps{
  115. script{
  116. env.EXT_RELEASE_CLEAN = sh(
  117. script: '''echo ${EXT_RELEASE} | sed 's/[~,%@+;:/]//g' ''',
  118. returnStdout: true).trim()
  119. }
  120. }
  121. }
  122. // If this is a master build use live docker endpoints
  123. stage("Set ENV live build"){
  124. when {
  125. branch "master"
  126. environment name: 'CHANGE_ID', value: ''
  127. }
  128. steps {
  129. script{
  130. env.IMAGE = env.DOCKERHUB_IMAGE
  131. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/' + env.CONTAINER_NAME
  132. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/' + env.CONTAINER_NAME
  133. if (env.MULTIARCH == 'true') {
  134. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  135. } else {
  136. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  137. }
  138. env.META_TAG = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  139. }
  140. }
  141. }
  142. // If this is a dev build use dev docker endpoints
  143. stage("Set ENV dev build"){
  144. when {
  145. not {branch "master"}
  146. environment name: 'CHANGE_ID', value: ''
  147. }
  148. steps {
  149. script{
  150. env.IMAGE = env.DEV_DOCKERHUB_IMAGE
  151. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/lsiodev-' + env.CONTAINER_NAME
  152. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/lsiodev-' + env.CONTAINER_NAME
  153. if (env.MULTIARCH == 'true') {
  154. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  155. } else {
  156. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  157. }
  158. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  159. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DEV_DOCKERHUB_IMAGE + '/tags/'
  160. }
  161. }
  162. }
  163. // If this is a pull request build use dev docker endpoints
  164. stage("Set ENV PR build"){
  165. when {
  166. not {environment name: 'CHANGE_ID', value: ''}
  167. }
  168. steps {
  169. script{
  170. env.IMAGE = env.PR_DOCKERHUB_IMAGE
  171. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/lspipepr-' + env.CONTAINER_NAME
  172. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/lspipepr-' + env.CONTAINER_NAME
  173. if (env.MULTIARCH == 'true') {
  174. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  175. } else {
  176. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  177. }
  178. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  179. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/pull/' + env.PULL_REQUEST
  180. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.PR_DOCKERHUB_IMAGE + '/tags/'
  181. }
  182. }
  183. }
  184. // Run ShellCheck
  185. stage('ShellCheck') {
  186. when {
  187. environment name: 'CI', value: 'true'
  188. }
  189. steps {
  190. withCredentials([
  191. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  192. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  193. ]) {
  194. script{
  195. env.SHELLCHECK_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/shellcheck-result.xml'
  196. }
  197. sh '''curl -sL https://raw.githubusercontent.com/linuxserver/docker-shellcheck/master/checkrun.sh | /bin/bash'''
  198. sh '''#! /bin/bash
  199. set -e
  200. docker pull lsiodev/spaces-file-upload:latest
  201. docker run --rm \
  202. -e DESTINATION=\"${IMAGE}/${META_TAG}/shellcheck-result.xml\" \
  203. -e FILE_NAME="shellcheck-result.xml" \
  204. -e MIMETYPE="text/xml" \
  205. -v ${WORKSPACE}:/mnt \
  206. -e SECRET_KEY=\"${DO_SECRET}\" \
  207. -e ACCESS_KEY=\"${DO_KEY}\" \
  208. -t lsiodev/spaces-file-upload:latest \
  209. python /upload.py'''
  210. }
  211. }
  212. }
  213. // Use helper containers to render templated files
  214. stage('Update-Templates') {
  215. when {
  216. branch "master"
  217. environment name: 'CHANGE_ID', value: ''
  218. expression {
  219. env.CONTAINER_NAME != null
  220. }
  221. }
  222. steps {
  223. sh '''#! /bin/bash
  224. set -e
  225. TEMPDIR=$(mktemp -d)
  226. docker pull linuxserver/jenkins-builder:latest
  227. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/jenkins linuxserver/jenkins-builder:latest
  228. CURRENTHASH=$(grep -hs ^ ${TEMPLATED_FILES} | md5sum | cut -c1-8)
  229. cd ${TEMPDIR}/docker-${CONTAINER_NAME}
  230. NEWHASH=$(grep -hs ^ ${TEMPLATED_FILES} | md5sum | cut -c1-8)
  231. if [[ "${CURRENTHASH}" != "${NEWHASH}" ]]; then
  232. mkdir -p ${TEMPDIR}/repo
  233. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/repo/${LS_REPO}
  234. cd ${TEMPDIR}/repo/${LS_REPO}
  235. git checkout -f master
  236. cd ${TEMPDIR}/docker-${CONTAINER_NAME}
  237. mkdir -p ${TEMPDIR}/repo/${LS_REPO}/.github
  238. cp --parents ${TEMPLATED_FILES} ${TEMPDIR}/repo/${LS_REPO}/
  239. cd ${TEMPDIR}/repo/${LS_REPO}/
  240. git add ${TEMPLATED_FILES}
  241. git commit -m 'Bot Updating Templated Files'
  242. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  243. echo "true" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  244. else
  245. echo "false" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  246. fi
  247. mkdir -p ${TEMPDIR}/gitbook
  248. git clone https://github.com/linuxserver/docker-documentation.git ${TEMPDIR}/gitbook/docker-documentation
  249. if [[ "${BRANCH_NAME}" == "master" ]] && [[ (! -f ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md) || ("$(md5sum ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')" != "$(md5sum ${TEMPDIR}/docker-${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')") ]]; then
  250. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md ${TEMPDIR}/gitbook/docker-documentation/images/
  251. cd ${TEMPDIR}/gitbook/docker-documentation/
  252. git add images/docker-${CONTAINER_NAME}.md
  253. git commit -m 'Bot Updating Documentation'
  254. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/linuxserver/docker-documentation.git --all
  255. fi
  256. rm -Rf ${TEMPDIR}'''
  257. script{
  258. env.FILES_UPDATED = sh(
  259. script: '''cat /tmp/${COMMIT_SHA}-${BUILD_NUMBER}''',
  260. returnStdout: true).trim()
  261. }
  262. }
  263. }
  264. // Exit the build if the Templated files were just updated
  265. stage('Template-exit') {
  266. when {
  267. branch "master"
  268. environment name: 'CHANGE_ID', value: ''
  269. environment name: 'FILES_UPDATED', value: 'true'
  270. expression {
  271. env.CONTAINER_NAME != null
  272. }
  273. }
  274. steps {
  275. script{
  276. env.EXIT_STATUS = 'ABORTED'
  277. }
  278. }
  279. }
  280. /* #######################
  281. GitLab Mirroring
  282. ####################### */
  283. // Ping into Gitlab to mirror this repo and have a registry endpoint
  284. stage("GitLab Mirror"){
  285. when {
  286. environment name: 'EXIT_STATUS', value: ''
  287. }
  288. steps{
  289. sh '''curl -H "Content-Type: application/json" -H "Private-Token: ${GITLAB_TOKEN}" -X POST https://gitlab.com/api/v4/projects \
  290. -d '{"namespace_id":'${GITLAB_NAMESPACE}',\
  291. "name":"'${LS_REPO}'",
  292. "mirror":true,\
  293. "import_url":"https://github.com/linuxserver/'${LS_REPO}'.git",\
  294. "issues_access_level":"disabled",\
  295. "merge_requests_access_level":"disabled",\
  296. "repository_access_level":"enabled",\
  297. "visibility":"public"}' '''
  298. }
  299. }
  300. /* ###############
  301. Build Container
  302. ############### */
  303. // Build Docker container for push to LS Repo
  304. stage('Build-Single') {
  305. when {
  306. environment name: 'MULTIARCH', value: 'false'
  307. environment name: 'EXIT_STATUS', value: ''
  308. }
  309. steps {
  310. sh "docker build --no-cache --pull -t ${IMAGE}:${META_TAG} \
  311. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  312. }
  313. }
  314. // Build MultiArch Docker containers for push to LS Repo
  315. stage('Build-Multi') {
  316. when {
  317. environment name: 'MULTIARCH', value: 'true'
  318. environment name: 'EXIT_STATUS', value: ''
  319. }
  320. parallel {
  321. stage('Build X86') {
  322. steps {
  323. sh "docker build --no-cache --pull -t ${IMAGE}:amd64-${META_TAG} \
  324. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  325. }
  326. }
  327. stage('Build ARMHF') {
  328. agent {
  329. label 'ARMHF'
  330. }
  331. steps {
  332. withCredentials([
  333. [
  334. $class: 'UsernamePasswordMultiBinding',
  335. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  336. usernameVariable: 'DOCKERUSER',
  337. passwordVariable: 'DOCKERPASS'
  338. ]
  339. ]) {
  340. echo 'Logging into DockerHub'
  341. sh '''#! /bin/bash
  342. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  343. '''
  344. sh "docker build --no-cache --pull -f Dockerfile.armhf -t ${IMAGE}:arm32v7-${META_TAG} \
  345. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  346. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  347. retry(5) {
  348. sh "docker push lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  349. }
  350. sh '''docker rmi \
  351. ${IMAGE}:arm32v7-${META_TAG} \
  352. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  353. }
  354. }
  355. }
  356. stage('Build ARM64') {
  357. agent {
  358. label 'ARM64'
  359. }
  360. steps {
  361. withCredentials([
  362. [
  363. $class: 'UsernamePasswordMultiBinding',
  364. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  365. usernameVariable: 'DOCKERUSER',
  366. passwordVariable: 'DOCKERPASS'
  367. ]
  368. ]) {
  369. echo 'Logging into DockerHub'
  370. sh '''#! /bin/bash
  371. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  372. '''
  373. sh "docker build --no-cache --pull -f Dockerfile.aarch64 -t ${IMAGE}:arm64v8-${META_TAG} \
  374. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  375. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  376. retry(5) {
  377. sh "docker push lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  378. }
  379. sh '''docker rmi \
  380. ${IMAGE}:arm64v8-${META_TAG} \
  381. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  382. }
  383. }
  384. }
  385. }
  386. }
  387. // Take the image we just built and dump package versions for comparison
  388. stage('Update-packages') {
  389. when {
  390. branch "master"
  391. environment name: 'CHANGE_ID', value: ''
  392. environment name: 'EXIT_STATUS', value: ''
  393. }
  394. steps {
  395. sh '''#! /bin/bash
  396. set -e
  397. TEMPDIR=$(mktemp -d)
  398. if [ "${MULTIARCH}" == "true" ]; then
  399. LOCAL_CONTAINER=${IMAGE}:amd64-${META_TAG}
  400. else
  401. LOCAL_CONTAINER=${IMAGE}:${META_TAG}
  402. fi
  403. if [ "${DIST_IMAGE}" == "alpine" ]; then
  404. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  405. apk info -v > /tmp/package_versions.txt && \
  406. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  407. chmod 777 /tmp/package_versions.txt'
  408. elif [ "${DIST_IMAGE}" == "ubuntu" ]; then
  409. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  410. apt list -qq --installed | sed "s#/.*now ##g" | cut -d" " -f1 > /tmp/package_versions.txt && \
  411. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  412. chmod 777 /tmp/package_versions.txt'
  413. fi
  414. NEW_PACKAGE_TAG=$(md5sum ${TEMPDIR}/package_versions.txt | cut -c1-8 )
  415. echo "Package tag sha from current packages in buit container is ${NEW_PACKAGE_TAG} comparing to old ${PACKAGE_TAG} from github"
  416. if [ "${NEW_PACKAGE_TAG}" != "${PACKAGE_TAG}" ]; then
  417. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/${LS_REPO}
  418. git --git-dir ${TEMPDIR}/${LS_REPO}/.git checkout -f master
  419. cp ${TEMPDIR}/package_versions.txt ${TEMPDIR}/${LS_REPO}/
  420. cd ${TEMPDIR}/${LS_REPO}/
  421. wait
  422. git add package_versions.txt
  423. git commit -m 'Bot Updating Package Versions'
  424. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  425. echo "true" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  426. echo "Package tag updated, stopping build process"
  427. else
  428. echo "false" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  429. echo "Package tag is same as previous continue with build process"
  430. fi
  431. rm -Rf ${TEMPDIR}'''
  432. script{
  433. env.PACKAGE_UPDATED = sh(
  434. script: '''cat /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}''',
  435. returnStdout: true).trim()
  436. }
  437. }
  438. }
  439. // Exit the build if the package file was just updated
  440. stage('PACKAGE-exit') {
  441. when {
  442. branch "master"
  443. environment name: 'CHANGE_ID', value: ''
  444. environment name: 'PACKAGE_UPDATED', value: 'true'
  445. environment name: 'EXIT_STATUS', value: ''
  446. }
  447. steps {
  448. script{
  449. env.EXIT_STATUS = 'ABORTED'
  450. }
  451. }
  452. }
  453. // Exit the build if this is just a package check and there are no changes to push
  454. stage('PACKAGECHECK-exit') {
  455. when {
  456. branch "master"
  457. environment name: 'CHANGE_ID', value: ''
  458. environment name: 'PACKAGE_UPDATED', value: 'false'
  459. environment name: 'EXIT_STATUS', value: ''
  460. expression {
  461. params.PACKAGE_CHECK == 'true'
  462. }
  463. }
  464. steps {
  465. script{
  466. env.EXIT_STATUS = 'ABORTED'
  467. }
  468. }
  469. }
  470. /* #######
  471. Testing
  472. ####### */
  473. // Run Container tests
  474. stage('Test') {
  475. when {
  476. environment name: 'CI', value: 'true'
  477. environment name: 'EXIT_STATUS', value: ''
  478. }
  479. steps {
  480. withCredentials([
  481. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  482. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  483. ]) {
  484. script{
  485. env.CI_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/index.html'
  486. }
  487. sh '''#! /bin/bash
  488. set -e
  489. docker pull lsiodev/ci:latest
  490. if [ "${MULTIARCH}" == "true" ]; then
  491. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  492. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  493. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  494. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  495. fi
  496. docker run --rm \
  497. --shm-size=1gb \
  498. -v /var/run/docker.sock:/var/run/docker.sock \
  499. -e IMAGE=\"${IMAGE}\" \
  500. -e DELAY_START=\"${CI_DELAY}\" \
  501. -e TAGS=\"${CI_TAGS}\" \
  502. -e META_TAG=\"${META_TAG}\" \
  503. -e PORT=\"${CI_PORT}\" \
  504. -e SSL=\"${CI_SSL}\" \
  505. -e BASE=\"${DIST_IMAGE}\" \
  506. -e SECRET_KEY=\"${DO_SECRET}\" \
  507. -e ACCESS_KEY=\"${DO_KEY}\" \
  508. -e DOCKER_ENV=\"${CI_DOCKERENV}\" \
  509. -e WEB_SCREENSHOT=\"${CI_WEB}\" \
  510. -e WEB_AUTH=\"${CI_AUTH}\" \
  511. -e WEB_PATH=\"${CI_WEBPATH}\" \
  512. -e DO_REGION="ams3" \
  513. -e DO_BUCKET="lsio-ci" \
  514. -t lsiodev/ci:latest \
  515. python /ci/ci.py'''
  516. }
  517. }
  518. }
  519. /* ##################
  520. Release Logic
  521. ################## */
  522. // If this is an amd64 only image only push a single image
  523. stage('Docker-Push-Single') {
  524. when {
  525. environment name: 'MULTIARCH', value: 'false'
  526. environment name: 'EXIT_STATUS', value: ''
  527. }
  528. steps {
  529. withCredentials([
  530. [
  531. $class: 'UsernamePasswordMultiBinding',
  532. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  533. usernameVariable: 'DOCKERUSER',
  534. passwordVariable: 'DOCKERPASS'
  535. ]
  536. ]) {
  537. retry(5) {
  538. sh '''#! /bin/bash
  539. set -e
  540. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  541. echo $GITHUB_TOKEN | docker login docker.pkg.github.com -u LinuxServer-CI --password-stdin
  542. echo $GITLAB_TOKEN | docker login registry.gitlab.com -u LinuxServer.io --password-stdin
  543. for PUSHIMAGE in "${GITHUBIMAGE}" "${GITLABIMAGE}" "${IMAGE}"; do
  544. docker tag ${IMAGE}:${META_TAG} ${PUSHIMAGE}:${META_TAG}
  545. docker tag ${PUSHIMAGE}:${META_TAG} ${PUSHIMAGE}:latest
  546. docker push ${PUSHIMAGE}:latest
  547. docker push ${PUSHIMAGE}:${META_TAG}
  548. done
  549. '''
  550. }
  551. sh '''#! /bin/bash
  552. for DELETEIMAGE in "${GITHUBIMAGE}" "{GITLABIMAGE}" "${IMAGE}"; do
  553. docker rmi \
  554. ${DELETEIMAGE}:${META_TAG} \
  555. ${DELETEIMAGE}:latest || :
  556. done
  557. '''
  558. }
  559. }
  560. }
  561. // If this is a multi arch release push all images and define the manifest
  562. stage('Docker-Push-Multi') {
  563. when {
  564. environment name: 'MULTIARCH', value: 'true'
  565. environment name: 'EXIT_STATUS', value: ''
  566. }
  567. steps {
  568. withCredentials([
  569. [
  570. $class: 'UsernamePasswordMultiBinding',
  571. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  572. usernameVariable: 'DOCKERUSER',
  573. passwordVariable: 'DOCKERPASS'
  574. ]
  575. ]) {
  576. retry(5) {
  577. sh '''#! /bin/bash
  578. set -e
  579. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  580. echo $GITHUB_TOKEN | docker login docker.pkg.github.com -u LinuxServer-CI --password-stdin
  581. echo $GITLAB_TOKEN | docker login registry.gitlab.com -u LinuxServer.io --password-stdin
  582. if [ "${CI}" == "false" ]; then
  583. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  584. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  585. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  586. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  587. fi
  588. for MANIFESTIMAGE in "${IMAGE}" "${GITLABIMAGE}"; do
  589. docker tag ${IMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-${META_TAG}
  590. docker tag ${IMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG}
  591. docker tag ${IMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  592. docker tag ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-latest
  593. docker tag ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-latest
  594. docker tag ${MANIFESTIMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-latest
  595. docker push ${MANIFESTIMAGE}:amd64-${META_TAG}
  596. docker push ${MANIFESTIMAGE}:arm32v7-${META_TAG}
  597. docker push ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  598. docker push ${MANIFESTIMAGE}:amd64-latest
  599. docker push ${MANIFESTIMAGE}:arm32v7-latest
  600. docker push ${MANIFESTIMAGE}:arm64v8-latest
  601. docker manifest push --purge ${MANIFESTIMAGE}:latest || :
  602. docker manifest create ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:amd64-latest ${MANIFESTIMAGE}:arm32v7-latest ${MANIFESTIMAGE}:arm64v8-latest
  603. docker manifest annotate ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:arm32v7-latest --os linux --arch arm
  604. docker manifest annotate ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:arm64v8-latest --os linux --arch arm64 --variant v8
  605. docker manifest push --purge ${MANIFESTIMAGE}:${META_TAG} || :
  606. docker manifest create ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  607. docker manifest annotate ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG} --os linux --arch arm
  608. docker manifest annotate ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG} --os linux --arch arm64 --variant v8
  609. docker manifest push --purge ${MANIFESTIMAGE}:latest
  610. docker manifest push --purge ${MANIFESTIMAGE}:${META_TAG}
  611. done
  612. docker tag ${IMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:amd64-${META_TAG}
  613. docker tag ${IMAGE}:arm32v7-${META_TAG} ${GITHUBIMAGE}:arm32v7-${META_TAG}
  614. docker tag ${IMAGE}:arm64v8-${META_TAG} ${GITHUBIMAGE}:arm64v8-${META_TAG}
  615. docker tag ${GITHUBIMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:latest
  616. docker tag ${GITHUBIMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:${META_TAG}
  617. docker tag ${GITHUBIMAGE}:arm32v7-${META_TAG} ${GITHUBIMAGE}:arm32v7-latest
  618. docker tag ${GITHUBIMAGE}:arm64v8-${META_TAG} ${GITHUBIMAGE}:arm64v8-latest
  619. docker push ${GITHUBIMAGE}:amd64-${META_TAG}
  620. docker push ${GITHUBIMAGE}:arm32v7-${META_TAG}
  621. docker push ${GITHUBIMAGE}:arm64v8-${META_TAG}
  622. docker push ${GITHUBIMAGE}:latest
  623. docker push ${GITHUBIMAGE}:${META_TAG}
  624. docker push ${GITHUBIMAGE}:arm32v7-latest
  625. docker push ${GITHUBIMAGE}:arm64v8-latest
  626. '''
  627. }
  628. sh '''#! /bin/bash
  629. for DELETEIMAGE in "${GITHUBIMAGE}" "${GITLABIMAGE}" "${IMAGE}"; do
  630. docker rmi \
  631. ${DELETEIMAGE}:amd64-${META_TAG} \
  632. ${DELETEIMAGE}:amd64-latest \
  633. ${DELETEIMAGE}:arm32v7-${META_TAG} \
  634. ${DELETEIMAGE}:arm32v7-latest \
  635. ${DELETEIMAGE}:arm64v8-${META_TAG} \
  636. ${DELETEIMAGE}:arm64v8-latest || :
  637. done
  638. docker rmi \
  639. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} \
  640. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :
  641. '''
  642. }
  643. }
  644. }
  645. // If this is a public release tag it in the LS Github
  646. stage('Github-Tag-Push-Release') {
  647. when {
  648. branch "master"
  649. expression {
  650. env.LS_RELEASE != env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  651. }
  652. environment name: 'CHANGE_ID', value: ''
  653. environment name: 'EXIT_STATUS', value: ''
  654. }
  655. steps {
  656. echo "Pushing New tag for current commit ${EXT_RELEASE_CLEAN}-ls${LS_TAG_NUMBER}"
  657. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/git/tags \
  658. -d '{"tag":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  659. "object": "'${COMMIT_SHA}'",\
  660. "message": "Tagging Release '${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}' to master",\
  661. "type": "commit",\
  662. "tagger": {"name": "LinuxServer Jenkins","email": "jenkins@linuxserver.io","date": "'${GITHUB_DATE}'"}}' '''
  663. echo "Pushing New release for Tag"
  664. sh '''#! /bin/bash
  665. echo "Updating to ${EXT_RELEASE_CLEAN}" > releasebody.json
  666. echo '{"tag_name":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  667. "target_commitish": "master",\
  668. "name": "'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  669. "body": "**LinuxServer Changes:**\\n\\n'${LS_RELEASE_NOTES}'\\n**Remote Changes:**\\n\\n' > start
  670. printf '","draft": false,"prerelease": false}' >> releasebody.json
  671. paste -d'\\0' start releasebody.json > releasebody.json.done
  672. curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/releases -d @releasebody.json.done'''
  673. }
  674. }
  675. // Use helper container to sync the current README on master to the dockerhub endpoint
  676. stage('Sync-README') {
  677. when {
  678. environment name: 'CHANGE_ID', value: ''
  679. environment name: 'EXIT_STATUS', value: ''
  680. }
  681. steps {
  682. withCredentials([
  683. [
  684. $class: 'UsernamePasswordMultiBinding',
  685. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  686. usernameVariable: 'DOCKERUSER',
  687. passwordVariable: 'DOCKERPASS'
  688. ]
  689. ]) {
  690. sh '''#! /bin/bash
  691. docker pull lsiodev/readme-sync
  692. docker run --rm=true \
  693. -e DOCKERHUB_USERNAME=$DOCKERUSER \
  694. -e DOCKERHUB_PASSWORD=$DOCKERPASS \
  695. -e GIT_REPOSITORY=${LS_USER}/${LS_REPO} \
  696. -e DOCKER_REPOSITORY=${IMAGE} \
  697. -e GIT_BRANCH=master \
  698. lsiodev/readme-sync bash -c 'node sync' '''
  699. }
  700. }
  701. }
  702. // If this is a Pull request send the CI link as a comment on it
  703. stage('Pull Request Comment') {
  704. when {
  705. not {environment name: 'CHANGE_ID', value: ''}
  706. environment name: 'CI', value: 'true'
  707. environment name: 'EXIT_STATUS', value: ''
  708. }
  709. steps {
  710. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/issues/${PULL_REQUEST}/comments \
  711. -d '{"body": "I am a bot, here are the test results for this PR: \\n'${CI_URL}' \\n'${SHELLCHECK_URL}'"}' '''
  712. }
  713. }
  714. }
  715. /* ######################
  716. Send status to Discord
  717. ###################### */
  718. post {
  719. always {
  720. script{
  721. if (env.EXIT_STATUS == "ABORTED"){
  722. sh 'echo "build aborted"'
  723. }
  724. else if (currentBuild.currentResult == "SUCCESS"){
  725. sh ''' curl -X POST -H "Content-Type: application/json" --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 1681177,\
  726. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** Success\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  727. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  728. }
  729. else {
  730. sh ''' curl -X POST -H "Content-Type: application/json" --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 16711680,\
  731. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** failure\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  732. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  733. }
  734. }
  735. }
  736. cleanup {
  737. cleanWs()
  738. }
  739. }
  740. }