Oscam is an Open Source Conditional Access Module software used for descrambling DVB transmissions using smart cards. It's both a server and a client.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

770 lines
36 KiB

  1. pipeline {
  2. agent {
  3. label 'X86-64-MULTI'
  4. }
  5. options {
  6. buildDiscarder(logRotator(numToKeepStr: '10', daysToKeepStr: '60'))
  7. parallelsAlwaysFailFast()
  8. }
  9. // Input to determine if this is a package check
  10. parameters {
  11. string(defaultValue: 'false', description: 'package check run', name: 'PACKAGE_CHECK')
  12. }
  13. // Configuration for the variables used for this specific repo
  14. environment {
  15. BUILDS_DISCORD=credentials('build_webhook_url')
  16. GITHUB_TOKEN=credentials('498b4638-2d02-4ce5-832d-8a57d01d97ab')
  17. GITLAB_TOKEN=credentials('b6f0f1dd-6952-4cf6-95d1-9c06380283f0')
  18. GITLAB_NAMESPACE=credentials('gitlab-namespace-id')
  19. BUILD_VERSION_ARG = 'OSCAM_VERSION'
  20. LS_USER = 'linuxserver'
  21. LS_REPO = 'docker-oscam'
  22. CONTAINER_NAME = 'oscam'
  23. DOCKERHUB_IMAGE = 'linuxserver/oscam'
  24. DEV_DOCKERHUB_IMAGE = 'lsiodev/oscam'
  25. PR_DOCKERHUB_IMAGE = 'lspipepr/oscam'
  26. DIST_IMAGE = 'alpine'
  27. MULTIARCH='true'
  28. CI='true'
  29. CI_WEB='true'
  30. CI_PORT='8888'
  31. CI_SSL='false'
  32. CI_DELAY='120'
  33. CI_DOCKERENV='TZ=US/Pacific'
  34. CI_AUTH='user:password'
  35. CI_WEBPATH=''
  36. }
  37. stages {
  38. // Setup all the basic environment variables needed for the build
  39. stage("Set ENV Variables base"){
  40. steps{
  41. script{
  42. env.EXIT_STATUS = ''
  43. env.LS_RELEASE = sh(
  44. script: '''docker run --rm alexeiled/skopeo sh -c 'skopeo inspect docker://docker.io/'${DOCKERHUB_IMAGE}':latest 2>/dev/null' | jq -r '.Labels.build_version' | awk '{print $3}' | grep '\\-ls' || : ''',
  45. returnStdout: true).trim()
  46. env.LS_RELEASE_NOTES = sh(
  47. script: '''cat readme-vars.yml | awk -F \\" '/date: "[0-9][0-9].[0-9][0-9].[0-9][0-9]:/ {print $4;exit;}' | sed -E ':a;N;$!ba;s/\\r{0,1}\\n/\\\\n/g' ''',
  48. returnStdout: true).trim()
  49. env.GITHUB_DATE = sh(
  50. script: '''date '+%Y-%m-%dT%H:%M:%S%:z' ''',
  51. returnStdout: true).trim()
  52. env.COMMIT_SHA = sh(
  53. script: '''git rev-parse HEAD''',
  54. returnStdout: true).trim()
  55. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/commit/' + env.GIT_COMMIT
  56. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DOCKERHUB_IMAGE + '/tags/'
  57. env.PULL_REQUEST = env.CHANGE_ID
  58. env.TEMPLATED_FILES = 'Jenkinsfile README.md LICENSE ./.github/CONTRIBUTING.md ./.github/FUNDING.yml ./.github/ISSUE_TEMPLATE.md ./.github/PULL_REQUEST_TEMPLATE.md ./.github/workflows/greetings.yml ./.github/workflows/stale.yml'
  59. }
  60. script{
  61. env.LS_RELEASE_NUMBER = sh(
  62. script: '''echo ${LS_RELEASE} |sed 's/^.*-ls//g' ''',
  63. returnStdout: true).trim()
  64. }
  65. script{
  66. env.LS_TAG_NUMBER = sh(
  67. script: '''#! /bin/bash
  68. tagsha=$(git rev-list -n 1 ${LS_RELEASE} 2>/dev/null)
  69. if [ "${tagsha}" == "${COMMIT_SHA}" ]; then
  70. echo ${LS_RELEASE_NUMBER}
  71. elif [ -z "${GIT_COMMIT}" ]; then
  72. echo ${LS_RELEASE_NUMBER}
  73. else
  74. echo $((${LS_RELEASE_NUMBER} + 1))
  75. fi''',
  76. returnStdout: true).trim()
  77. }
  78. }
  79. }
  80. /* #######################
  81. Package Version Tagging
  82. ####################### */
  83. // Grab the current package versions in Git to determine package tag
  84. stage("Set Package tag"){
  85. steps{
  86. script{
  87. env.PACKAGE_TAG = sh(
  88. script: '''#!/bin/bash
  89. if [ -e package_versions.txt ] ; then
  90. cat package_versions.txt | md5sum | cut -c1-8
  91. else
  92. echo none
  93. fi''',
  94. returnStdout: true).trim()
  95. }
  96. }
  97. }
  98. /* ########################
  99. External Release Tagging
  100. ######################## */
  101. // If this is a custom command to determine version use that command
  102. stage("Set tag custom bash"){
  103. steps{
  104. script{
  105. env.EXT_RELEASE = sh(
  106. script: ''' docker run --rm alpine:3.9 sh -c 'apk add subversion > /dev/null 2>&1 && svn info --show-item revision https://svn.streamboard.tv/oscam/trunk' ''',
  107. returnStdout: true).trim()
  108. env.RELEASE_LINK = 'custom_command'
  109. }
  110. }
  111. }
  112. // Sanitize the release tag and strip illegal docker or github characters
  113. stage("Sanitize tag"){
  114. steps{
  115. script{
  116. env.EXT_RELEASE_CLEAN = sh(
  117. script: '''echo ${EXT_RELEASE} | sed 's/[~,%@+;:/]//g' ''',
  118. returnStdout: true).trim()
  119. }
  120. }
  121. }
  122. // If this is a master build use live docker endpoints
  123. stage("Set ENV live build"){
  124. when {
  125. branch "master"
  126. environment name: 'CHANGE_ID', value: ''
  127. }
  128. steps {
  129. script{
  130. env.IMAGE = env.DOCKERHUB_IMAGE
  131. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/' + env.CONTAINER_NAME
  132. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/' + env.CONTAINER_NAME
  133. if (env.MULTIARCH == 'true') {
  134. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  135. } else {
  136. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  137. }
  138. env.META_TAG = env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  139. env.EXT_RELEASE_TAG = 'version-' + env.EXT_RELEASE_CLEAN
  140. }
  141. }
  142. }
  143. // If this is a dev build use dev docker endpoints
  144. stage("Set ENV dev build"){
  145. when {
  146. not {branch "master"}
  147. environment name: 'CHANGE_ID', value: ''
  148. }
  149. steps {
  150. script{
  151. env.IMAGE = env.DEV_DOCKERHUB_IMAGE
  152. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/lsiodev-' + env.CONTAINER_NAME
  153. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/lsiodev-' + env.CONTAINER_NAME
  154. if (env.MULTIARCH == 'true') {
  155. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  156. } else {
  157. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  158. }
  159. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-dev-' + env.COMMIT_SHA
  160. env.EXT_RELEASE_TAG = 'version-' + env.EXT_RELEASE_CLEAN
  161. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.DEV_DOCKERHUB_IMAGE + '/tags/'
  162. }
  163. }
  164. }
  165. // If this is a pull request build use dev docker endpoints
  166. stage("Set ENV PR build"){
  167. when {
  168. not {environment name: 'CHANGE_ID', value: ''}
  169. }
  170. steps {
  171. script{
  172. env.IMAGE = env.PR_DOCKERHUB_IMAGE
  173. env.GITHUBIMAGE = 'docker.pkg.github.com/' + env.LS_USER + '/' + env.LS_REPO + '/lspipepr-' + env.CONTAINER_NAME
  174. env.GITLABIMAGE = 'registry.gitlab.com/linuxserver.io/' + env.LS_REPO + '/lspipepr-' + env.CONTAINER_NAME
  175. if (env.MULTIARCH == 'true') {
  176. env.CI_TAGS = 'amd64-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm32v7-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST + '|arm64v8-' + env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  177. } else {
  178. env.CI_TAGS = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  179. }
  180. env.META_TAG = env.EXT_RELEASE_CLEAN + '-pkg-' + env.PACKAGE_TAG + '-pr-' + env.PULL_REQUEST
  181. env.EXT_RELEASE_TAG = 'version-' + env.EXT_RELEASE_CLEAN
  182. env.CODE_URL = 'https://github.com/' + env.LS_USER + '/' + env.LS_REPO + '/pull/' + env.PULL_REQUEST
  183. env.DOCKERHUB_LINK = 'https://hub.docker.com/r/' + env.PR_DOCKERHUB_IMAGE + '/tags/'
  184. }
  185. }
  186. }
  187. // Run ShellCheck
  188. stage('ShellCheck') {
  189. when {
  190. environment name: 'CI', value: 'true'
  191. }
  192. steps {
  193. withCredentials([
  194. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  195. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  196. ]) {
  197. script{
  198. env.SHELLCHECK_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/shellcheck-result.xml'
  199. }
  200. sh '''curl -sL https://raw.githubusercontent.com/linuxserver/docker-shellcheck/master/checkrun.sh | /bin/bash'''
  201. sh '''#! /bin/bash
  202. set -e
  203. docker pull lsiodev/spaces-file-upload:latest
  204. docker run --rm \
  205. -e DESTINATION=\"${IMAGE}/${META_TAG}/shellcheck-result.xml\" \
  206. -e FILE_NAME="shellcheck-result.xml" \
  207. -e MIMETYPE="text/xml" \
  208. -v ${WORKSPACE}:/mnt \
  209. -e SECRET_KEY=\"${DO_SECRET}\" \
  210. -e ACCESS_KEY=\"${DO_KEY}\" \
  211. -t lsiodev/spaces-file-upload:latest \
  212. python /upload.py'''
  213. }
  214. }
  215. }
  216. // Use helper containers to render templated files
  217. stage('Update-Templates') {
  218. when {
  219. branch "master"
  220. environment name: 'CHANGE_ID', value: ''
  221. expression {
  222. env.CONTAINER_NAME != null
  223. }
  224. }
  225. steps {
  226. sh '''#! /bin/bash
  227. set -e
  228. TEMPDIR=$(mktemp -d)
  229. docker pull linuxserver/jenkins-builder:latest
  230. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH=master -v ${TEMPDIR}:/ansible/jenkins linuxserver/jenkins-builder:latest
  231. CURRENTHASH=$(grep -hs ^ ${TEMPLATED_FILES} | md5sum | cut -c1-8)
  232. cd ${TEMPDIR}/docker-${CONTAINER_NAME}
  233. NEWHASH=$(grep -hs ^ ${TEMPLATED_FILES} | md5sum | cut -c1-8)
  234. if [[ "${CURRENTHASH}" != "${NEWHASH}" ]]; then
  235. mkdir -p ${TEMPDIR}/repo
  236. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/repo/${LS_REPO}
  237. cd ${TEMPDIR}/repo/${LS_REPO}
  238. git checkout -f master
  239. cd ${TEMPDIR}/docker-${CONTAINER_NAME}
  240. mkdir -p ${TEMPDIR}/repo/${LS_REPO}/.github/workflows
  241. cp --parents ${TEMPLATED_FILES} ${TEMPDIR}/repo/${LS_REPO}/
  242. cd ${TEMPDIR}/repo/${LS_REPO}/
  243. git add ${TEMPLATED_FILES}
  244. git commit -m 'Bot Updating Templated Files'
  245. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  246. echo "true" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  247. else
  248. echo "false" > /tmp/${COMMIT_SHA}-${BUILD_NUMBER}
  249. fi
  250. mkdir -p ${TEMPDIR}/gitbook
  251. git clone https://github.com/linuxserver/docker-documentation.git ${TEMPDIR}/gitbook/docker-documentation
  252. if [[ "${BRANCH_NAME}" == "master" ]] && [[ (! -f ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md) || ("$(md5sum ${TEMPDIR}/gitbook/docker-documentation/images/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')" != "$(md5sum ${TEMPDIR}/docker-${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md | awk '{ print $1 }')") ]]; then
  253. cp ${TEMPDIR}/docker-${CONTAINER_NAME}/docker-${CONTAINER_NAME}.md ${TEMPDIR}/gitbook/docker-documentation/images/
  254. cd ${TEMPDIR}/gitbook/docker-documentation/
  255. git add images/docker-${CONTAINER_NAME}.md
  256. git commit -m 'Bot Updating Documentation'
  257. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/linuxserver/docker-documentation.git --all
  258. fi
  259. rm -Rf ${TEMPDIR}'''
  260. script{
  261. env.FILES_UPDATED = sh(
  262. script: '''cat /tmp/${COMMIT_SHA}-${BUILD_NUMBER}''',
  263. returnStdout: true).trim()
  264. }
  265. }
  266. }
  267. // Exit the build if the Templated files were just updated
  268. stage('Template-exit') {
  269. when {
  270. branch "master"
  271. environment name: 'CHANGE_ID', value: ''
  272. environment name: 'FILES_UPDATED', value: 'true'
  273. expression {
  274. env.CONTAINER_NAME != null
  275. }
  276. }
  277. steps {
  278. script{
  279. env.EXIT_STATUS = 'ABORTED'
  280. }
  281. }
  282. }
  283. /* #######################
  284. GitLab Mirroring
  285. ####################### */
  286. // Ping into Gitlab to mirror this repo and have a registry endpoint
  287. stage("GitLab Mirror"){
  288. when {
  289. environment name: 'EXIT_STATUS', value: ''
  290. }
  291. steps{
  292. sh '''curl -H "Content-Type: application/json" -H "Private-Token: ${GITLAB_TOKEN}" -X POST https://gitlab.com/api/v4/projects \
  293. -d '{"namespace_id":'${GITLAB_NAMESPACE}',\
  294. "name":"'${LS_REPO}'",
  295. "mirror":true,\
  296. "import_url":"https://github.com/linuxserver/'${LS_REPO}'.git",\
  297. "issues_access_level":"disabled",\
  298. "merge_requests_access_level":"disabled",\
  299. "repository_access_level":"enabled",\
  300. "visibility":"public"}' '''
  301. }
  302. }
  303. /* ###############
  304. Build Container
  305. ############### */
  306. // Build Docker container for push to LS Repo
  307. stage('Build-Single') {
  308. when {
  309. environment name: 'MULTIARCH', value: 'false'
  310. environment name: 'EXIT_STATUS', value: ''
  311. }
  312. steps {
  313. sh "docker build --no-cache --pull -t ${IMAGE}:${META_TAG} \
  314. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  315. }
  316. }
  317. // Build MultiArch Docker containers for push to LS Repo
  318. stage('Build-Multi') {
  319. when {
  320. environment name: 'MULTIARCH', value: 'true'
  321. environment name: 'EXIT_STATUS', value: ''
  322. }
  323. parallel {
  324. stage('Build X86') {
  325. steps {
  326. sh "docker build --no-cache --pull -t ${IMAGE}:amd64-${META_TAG} \
  327. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  328. }
  329. }
  330. stage('Build ARMHF') {
  331. agent {
  332. label 'ARMHF'
  333. }
  334. steps {
  335. withCredentials([
  336. [
  337. $class: 'UsernamePasswordMultiBinding',
  338. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  339. usernameVariable: 'DOCKERUSER',
  340. passwordVariable: 'DOCKERPASS'
  341. ]
  342. ]) {
  343. echo 'Logging into DockerHub'
  344. sh '''#! /bin/bash
  345. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  346. '''
  347. sh "docker build --no-cache --pull -f Dockerfile.armhf -t ${IMAGE}:arm32v7-${META_TAG} \
  348. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  349. sh "docker tag ${IMAGE}:arm32v7-${META_TAG} lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  350. retry(5) {
  351. sh "docker push lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}"
  352. }
  353. sh '''docker rmi \
  354. ${IMAGE}:arm32v7-${META_TAG} \
  355. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  356. }
  357. }
  358. }
  359. stage('Build ARM64') {
  360. agent {
  361. label 'ARM64'
  362. }
  363. steps {
  364. withCredentials([
  365. [
  366. $class: 'UsernamePasswordMultiBinding',
  367. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  368. usernameVariable: 'DOCKERUSER',
  369. passwordVariable: 'DOCKERPASS'
  370. ]
  371. ]) {
  372. echo 'Logging into DockerHub'
  373. sh '''#! /bin/bash
  374. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  375. '''
  376. sh "docker build --no-cache --pull -f Dockerfile.aarch64 -t ${IMAGE}:arm64v8-${META_TAG} \
  377. --build-arg ${BUILD_VERSION_ARG}=${EXT_RELEASE} --build-arg VERSION=\"${META_TAG}\" --build-arg BUILD_DATE=${GITHUB_DATE} ."
  378. sh "docker tag ${IMAGE}:arm64v8-${META_TAG} lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  379. retry(5) {
  380. sh "docker push lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}"
  381. }
  382. sh '''docker rmi \
  383. ${IMAGE}:arm64v8-${META_TAG} \
  384. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :'''
  385. }
  386. }
  387. }
  388. }
  389. }
  390. // Take the image we just built and dump package versions for comparison
  391. stage('Update-packages') {
  392. when {
  393. branch "master"
  394. environment name: 'CHANGE_ID', value: ''
  395. environment name: 'EXIT_STATUS', value: ''
  396. }
  397. steps {
  398. sh '''#! /bin/bash
  399. set -e
  400. TEMPDIR=$(mktemp -d)
  401. if [ "${MULTIARCH}" == "true" ]; then
  402. LOCAL_CONTAINER=${IMAGE}:amd64-${META_TAG}
  403. else
  404. LOCAL_CONTAINER=${IMAGE}:${META_TAG}
  405. fi
  406. if [ "${DIST_IMAGE}" == "alpine" ]; then
  407. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  408. apk info -v > /tmp/package_versions.txt && \
  409. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  410. chmod 777 /tmp/package_versions.txt'
  411. elif [ "${DIST_IMAGE}" == "ubuntu" ]; then
  412. docker run --rm --entrypoint '/bin/sh' -v ${TEMPDIR}:/tmp ${LOCAL_CONTAINER} -c '\
  413. apt list -qq --installed | sed "s#/.*now ##g" | cut -d" " -f1 > /tmp/package_versions.txt && \
  414. sort -o /tmp/package_versions.txt /tmp/package_versions.txt && \
  415. chmod 777 /tmp/package_versions.txt'
  416. fi
  417. NEW_PACKAGE_TAG=$(md5sum ${TEMPDIR}/package_versions.txt | cut -c1-8 )
  418. echo "Package tag sha from current packages in buit container is ${NEW_PACKAGE_TAG} comparing to old ${PACKAGE_TAG} from github"
  419. if [ "${NEW_PACKAGE_TAG}" != "${PACKAGE_TAG}" ]; then
  420. git clone https://github.com/${LS_USER}/${LS_REPO}.git ${TEMPDIR}/${LS_REPO}
  421. git --git-dir ${TEMPDIR}/${LS_REPO}/.git checkout -f master
  422. cp ${TEMPDIR}/package_versions.txt ${TEMPDIR}/${LS_REPO}/
  423. cd ${TEMPDIR}/${LS_REPO}/
  424. wait
  425. git add package_versions.txt
  426. git commit -m 'Bot Updating Package Versions'
  427. git push https://LinuxServer-CI:${GITHUB_TOKEN}@github.com/${LS_USER}/${LS_REPO}.git --all
  428. echo "true" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  429. echo "Package tag updated, stopping build process"
  430. else
  431. echo "false" > /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}
  432. echo "Package tag is same as previous continue with build process"
  433. fi
  434. rm -Rf ${TEMPDIR}'''
  435. script{
  436. env.PACKAGE_UPDATED = sh(
  437. script: '''cat /tmp/packages-${COMMIT_SHA}-${BUILD_NUMBER}''',
  438. returnStdout: true).trim()
  439. }
  440. }
  441. }
  442. // Exit the build if the package file was just updated
  443. stage('PACKAGE-exit') {
  444. when {
  445. branch "master"
  446. environment name: 'CHANGE_ID', value: ''
  447. environment name: 'PACKAGE_UPDATED', value: 'true'
  448. environment name: 'EXIT_STATUS', value: ''
  449. }
  450. steps {
  451. script{
  452. env.EXIT_STATUS = 'ABORTED'
  453. }
  454. }
  455. }
  456. // Exit the build if this is just a package check and there are no changes to push
  457. stage('PACKAGECHECK-exit') {
  458. when {
  459. branch "master"
  460. environment name: 'CHANGE_ID', value: ''
  461. environment name: 'PACKAGE_UPDATED', value: 'false'
  462. environment name: 'EXIT_STATUS', value: ''
  463. expression {
  464. params.PACKAGE_CHECK == 'true'
  465. }
  466. }
  467. steps {
  468. script{
  469. env.EXIT_STATUS = 'ABORTED'
  470. }
  471. }
  472. }
  473. /* #######
  474. Testing
  475. ####### */
  476. // Run Container tests
  477. stage('Test') {
  478. when {
  479. environment name: 'CI', value: 'true'
  480. environment name: 'EXIT_STATUS', value: ''
  481. }
  482. steps {
  483. withCredentials([
  484. string(credentialsId: 'spaces-key', variable: 'DO_KEY'),
  485. string(credentialsId: 'spaces-secret', variable: 'DO_SECRET')
  486. ]) {
  487. script{
  488. env.CI_URL = 'https://lsio-ci.ams3.digitaloceanspaces.com/' + env.IMAGE + '/' + env.META_TAG + '/index.html'
  489. }
  490. sh '''#! /bin/bash
  491. set -e
  492. docker pull lsiodev/ci:latest
  493. if [ "${MULTIARCH}" == "true" ]; then
  494. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  495. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  496. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  497. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  498. fi
  499. docker run --rm \
  500. --shm-size=1gb \
  501. -v /var/run/docker.sock:/var/run/docker.sock \
  502. -e IMAGE=\"${IMAGE}\" \
  503. -e DELAY_START=\"${CI_DELAY}\" \
  504. -e TAGS=\"${CI_TAGS}\" \
  505. -e META_TAG=\"${META_TAG}\" \
  506. -e PORT=\"${CI_PORT}\" \
  507. -e SSL=\"${CI_SSL}\" \
  508. -e BASE=\"${DIST_IMAGE}\" \
  509. -e SECRET_KEY=\"${DO_SECRET}\" \
  510. -e ACCESS_KEY=\"${DO_KEY}\" \
  511. -e DOCKER_ENV=\"${CI_DOCKERENV}\" \
  512. -e WEB_SCREENSHOT=\"${CI_WEB}\" \
  513. -e WEB_AUTH=\"${CI_AUTH}\" \
  514. -e WEB_PATH=\"${CI_WEBPATH}\" \
  515. -e DO_REGION="ams3" \
  516. -e DO_BUCKET="lsio-ci" \
  517. -t lsiodev/ci:latest \
  518. python /ci/ci.py'''
  519. }
  520. }
  521. }
  522. /* ##################
  523. Release Logic
  524. ################## */
  525. // If this is an amd64 only image only push a single image
  526. stage('Docker-Push-Single') {
  527. when {
  528. environment name: 'MULTIARCH', value: 'false'
  529. environment name: 'EXIT_STATUS', value: ''
  530. }
  531. steps {
  532. withCredentials([
  533. [
  534. $class: 'UsernamePasswordMultiBinding',
  535. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  536. usernameVariable: 'DOCKERUSER',
  537. passwordVariable: 'DOCKERPASS'
  538. ]
  539. ]) {
  540. retry(5) {
  541. sh '''#! /bin/bash
  542. set -e
  543. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  544. echo $GITHUB_TOKEN | docker login docker.pkg.github.com -u LinuxServer-CI --password-stdin
  545. echo $GITLAB_TOKEN | docker login registry.gitlab.com -u LinuxServer.io --password-stdin
  546. for PUSHIMAGE in "${GITHUBIMAGE}" "${GITLABIMAGE}" "${IMAGE}"; do
  547. docker tag ${IMAGE}:${META_TAG} ${PUSHIMAGE}:${META_TAG}
  548. docker tag ${PUSHIMAGE}:${META_TAG} ${PUSHIMAGE}:latest
  549. docker tag ${PUSHIMAGE}:${META_TAG} ${PUSHIMAGE}:${EXT_RELEASE_TAG}
  550. docker push ${PUSHIMAGE}:latest
  551. docker push ${PUSHIMAGE}:${META_TAG}
  552. docker push ${PUSHIMAGE}:${EXT_RELEASE_TAG}
  553. done
  554. '''
  555. }
  556. sh '''#! /bin/bash
  557. for DELETEIMAGE in "${GITHUBIMAGE}" "{GITLABIMAGE}" "${IMAGE}"; do
  558. docker rmi \
  559. ${DELETEIMAGE}:${META_TAG} \
  560. ${DELETEIMAGE}:${EXT_RELEASE_TAG} \
  561. ${DELETEIMAGE}:latest || :
  562. done
  563. '''
  564. }
  565. }
  566. }
  567. // If this is a multi arch release push all images and define the manifest
  568. stage('Docker-Push-Multi') {
  569. when {
  570. environment name: 'MULTIARCH', value: 'true'
  571. environment name: 'EXIT_STATUS', value: ''
  572. }
  573. steps {
  574. withCredentials([
  575. [
  576. $class: 'UsernamePasswordMultiBinding',
  577. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  578. usernameVariable: 'DOCKERUSER',
  579. passwordVariable: 'DOCKERPASS'
  580. ]
  581. ]) {
  582. retry(5) {
  583. sh '''#! /bin/bash
  584. set -e
  585. echo $DOCKERPASS | docker login -u $DOCKERUSER --password-stdin
  586. echo $GITHUB_TOKEN | docker login docker.pkg.github.com -u LinuxServer-CI --password-stdin
  587. echo $GITLAB_TOKEN | docker login registry.gitlab.com -u LinuxServer.io --password-stdin
  588. if [ "${CI}" == "false" ]; then
  589. docker pull lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER}
  590. docker pull lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER}
  591. docker tag lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm32v7-${META_TAG}
  592. docker tag lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} ${IMAGE}:arm64v8-${META_TAG}
  593. fi
  594. for MANIFESTIMAGE in "${IMAGE}" "${GITLABIMAGE}"; do
  595. docker tag ${IMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-${META_TAG}
  596. docker tag ${IMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG}
  597. docker tag ${IMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  598. docker tag ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-latest
  599. docker tag ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-latest
  600. docker tag ${MANIFESTIMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-latest
  601. docker tag ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:amd64-${EXT_RELEASE_TAG}
  602. docker tag ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${EXT_RELEASE_TAG}
  603. docker tag ${MANIFESTIMAGE}:arm64v8-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${EXT_RELEASE_TAG}
  604. docker push ${MANIFESTIMAGE}:amd64-${META_TAG}
  605. docker push ${MANIFESTIMAGE}:arm32v7-${META_TAG}
  606. docker push ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  607. docker push ${MANIFESTIMAGE}:amd64-latest
  608. docker push ${MANIFESTIMAGE}:arm32v7-latest
  609. docker push ${MANIFESTIMAGE}:arm64v8-latest
  610. docker push ${MANIFESTIMAGE}:amd64-${EXT_RELEASE_TAG}
  611. docker push ${MANIFESTIMAGE}:arm32v7-${EXT_RELEASE_TAG}
  612. docker push ${MANIFESTIMAGE}:arm64v8-${EXT_RELEASE_TAG}
  613. docker manifest push --purge ${MANIFESTIMAGE}:latest || :
  614. docker manifest create ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:amd64-latest ${MANIFESTIMAGE}:arm32v7-latest ${MANIFESTIMAGE}:arm64v8-latest
  615. docker manifest annotate ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:arm32v7-latest --os linux --arch arm
  616. docker manifest annotate ${MANIFESTIMAGE}:latest ${MANIFESTIMAGE}:arm64v8-latest --os linux --arch arm64 --variant v8
  617. docker manifest push --purge ${MANIFESTIMAGE}:${META_TAG} || :
  618. docker manifest create ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:amd64-${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG}
  619. docker manifest annotate ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:arm32v7-${META_TAG} --os linux --arch arm
  620. docker manifest annotate ${MANIFESTIMAGE}:${META_TAG} ${MANIFESTIMAGE}:arm64v8-${META_TAG} --os linux --arch arm64 --variant v8
  621. docker manifest create ${MANIFESTIMAGE}:${EXT_RELEASE_TAG} ${MANIFESTIMAGE}:amd64-${EXT_RELEASE_TAG} ${MANIFESTIMAGE}:arm32v7-${EXT_RELEASE_TAG} ${MANIFESTIMAGE}:arm64v8-${EXT_RELEASE_TAG}
  622. docker manifest annotate ${MANIFESTIMAGE}:${EXT_RELEASE_TAG} ${MANIFESTIMAGE}:arm32v7-${EXT_RELEASE_TAG} --os linux --arch arm
  623. docker manifest annotate ${MANIFESTIMAGE}:${EXT_RELEASE_TAG} ${MANIFESTIMAGE}:arm64v8-${EXT_RELEASE_TAG} --os linux --arch arm64 --variant v8
  624. docker manifest push --purge ${MANIFESTIMAGE}:latest
  625. docker manifest push --purge ${MANIFESTIMAGE}:${META_TAG}
  626. docker manifest push --purge ${MANIFESTIMAGE}:${EXT_RELEASE_TAG}
  627. done
  628. docker tag ${IMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:amd64-${META_TAG}
  629. docker tag ${IMAGE}:arm32v7-${META_TAG} ${GITHUBIMAGE}:arm32v7-${META_TAG}
  630. docker tag ${IMAGE}:arm64v8-${META_TAG} ${GITHUBIMAGE}:arm64v8-${META_TAG}
  631. docker tag ${GITHUBIMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:latest
  632. docker tag ${GITHUBIMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:${META_TAG}
  633. docker tag ${GITHUBIMAGE}:arm32v7-${META_TAG} ${GITHUBIMAGE}:arm32v7-latest
  634. docker tag ${GITHUBIMAGE}:arm64v8-${META_TAG} ${GITHUBIMAGE}:arm64v8-latest
  635. docker tag ${GITHUBIMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:amd64-${EXT_RELEASE_TAG}
  636. docker tag ${GITHUBIMAGE}:amd64-${META_TAG} ${GITHUBIMAGE}:${EXT_RELEASE_TAG}
  637. docker tag ${GITHUBIMAGE}:arm32v7-${META_TAG} ${GITHUBIMAGE}:arm32v7-${EXT_RELEASE_TAG}
  638. docker tag ${GITHUBIMAGE}:arm64v8-${META_TAG} ${GITHUBIMAGE}:arm64v8-${EXT_RELEASE_TAG}
  639. docker push ${GITHUBIMAGE}:amd64-${META_TAG}
  640. docker push ${GITHUBIMAGE}:arm32v7-${META_TAG}
  641. docker push ${GITHUBIMAGE}:arm64v8-${META_TAG}
  642. docker push ${GITHUBIMAGE}:latest
  643. docker push ${GITHUBIMAGE}:${META_TAG}
  644. docker push ${GITHUBIMAGE}:arm32v7-latest
  645. docker push ${GITHUBIMAGE}:arm64v8-latest
  646. docker push ${GITHUBIMAGE}:${EXT_RELEASE_TAG}
  647. docker push ${GITHUBIMAGE}:amd64-${EXT_RELEASE_TAG}
  648. docker push ${GITHUBIMAGE}:arm32v7-${EXT_RELEASE_TAG}
  649. docker push ${GITHUBIMAGE}:arm64v8-${EXT_RELEASE_TAG}
  650. '''
  651. }
  652. sh '''#! /bin/bash
  653. for DELETEIMAGE in "${GITHUBIMAGE}" "${GITLABIMAGE}" "${IMAGE}"; do
  654. docker rmi \
  655. ${DELETEIMAGE}:amd64-${META_TAG} \
  656. ${DELETEIMAGE}:amd64-latest \
  657. ${DELETEIMAGE}:arm32v7-${META_TAG} \
  658. ${DELETEIMAGE}:arm32v7-latest \
  659. ${DELETEIMAGE}:arm64v8-${META_TAG} \
  660. ${DELETEIMAGE}:arm64v8-latest || :
  661. done
  662. docker rmi \
  663. lsiodev/buildcache:arm32v7-${COMMIT_SHA}-${BUILD_NUMBER} \
  664. lsiodev/buildcache:arm64v8-${COMMIT_SHA}-${BUILD_NUMBER} || :
  665. '''
  666. }
  667. }
  668. }
  669. // If this is a public release tag it in the LS Github
  670. stage('Github-Tag-Push-Release') {
  671. when {
  672. branch "master"
  673. expression {
  674. env.LS_RELEASE != env.EXT_RELEASE_CLEAN + '-ls' + env.LS_TAG_NUMBER
  675. }
  676. environment name: 'CHANGE_ID', value: ''
  677. environment name: 'EXIT_STATUS', value: ''
  678. }
  679. steps {
  680. echo "Pushing New tag for current commit ${EXT_RELEASE_CLEAN}-ls${LS_TAG_NUMBER}"
  681. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/git/tags \
  682. -d '{"tag":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  683. "object": "'${COMMIT_SHA}'",\
  684. "message": "Tagging Release '${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}' to master",\
  685. "type": "commit",\
  686. "tagger": {"name": "LinuxServer Jenkins","email": "jenkins@linuxserver.io","date": "'${GITHUB_DATE}'"}}' '''
  687. echo "Pushing New release for Tag"
  688. sh '''#! /bin/bash
  689. echo "Updating to ${EXT_RELEASE_CLEAN}" > releasebody.json
  690. echo '{"tag_name":"'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  691. "target_commitish": "master",\
  692. "name": "'${EXT_RELEASE_CLEAN}'-ls'${LS_TAG_NUMBER}'",\
  693. "body": "**LinuxServer Changes:**\\n\\n'${LS_RELEASE_NOTES}'\\n**Remote Changes:**\\n\\n' > start
  694. printf '","draft": false,"prerelease": false}' >> releasebody.json
  695. paste -d'\\0' start releasebody.json > releasebody.json.done
  696. curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/releases -d @releasebody.json.done'''
  697. }
  698. }
  699. // Use helper container to sync the current README on master to the dockerhub endpoint
  700. stage('Sync-README') {
  701. when {
  702. environment name: 'CHANGE_ID', value: ''
  703. environment name: 'EXIT_STATUS', value: ''
  704. }
  705. steps {
  706. withCredentials([
  707. [
  708. $class: 'UsernamePasswordMultiBinding',
  709. credentialsId: '3f9ba4d5-100d-45b0-a3c4-633fd6061207',
  710. usernameVariable: 'DOCKERUSER',
  711. passwordVariable: 'DOCKERPASS'
  712. ]
  713. ]) {
  714. sh '''#! /bin/bash
  715. set -e
  716. TEMPDIR=$(mktemp -d)
  717. docker pull linuxserver/jenkins-builder:latest
  718. docker run --rm -e CONTAINER_NAME=${CONTAINER_NAME} -e GITHUB_BRANCH="${BRANCH_NAME}" -v ${TEMPDIR}:/ansible/jenkins linuxserver/jenkins-builder:latest
  719. docker pull lsiodev/readme-sync
  720. docker run --rm=true \
  721. -e DOCKERHUB_USERNAME=$DOCKERUSER \
  722. -e DOCKERHUB_PASSWORD=$DOCKERPASS \
  723. -e GIT_REPOSITORY=${LS_USER}/${LS_REPO} \
  724. -e DOCKER_REPOSITORY=${IMAGE} \
  725. -e GIT_BRANCH=master \
  726. -v ${TEMPDIR}/docker-${CONTAINER_NAME}:/mnt \
  727. lsiodev/readme-sync bash -c 'node sync'
  728. rm -Rf ${TEMPDIR} '''
  729. }
  730. }
  731. }
  732. // If this is a Pull request send the CI link as a comment on it
  733. stage('Pull Request Comment') {
  734. when {
  735. not {environment name: 'CHANGE_ID', value: ''}
  736. environment name: 'CI', value: 'true'
  737. environment name: 'EXIT_STATUS', value: ''
  738. }
  739. steps {
  740. sh '''curl -H "Authorization: token ${GITHUB_TOKEN}" -X POST https://api.github.com/repos/${LS_USER}/${LS_REPO}/issues/${PULL_REQUEST}/comments \
  741. -d '{"body": "I am a bot, here are the test results for this PR: \\n'${CI_URL}' \\n'${SHELLCHECK_URL}'"}' '''
  742. }
  743. }
  744. }
  745. /* ######################
  746. Send status to Discord
  747. ###################### */
  748. post {
  749. always {
  750. script{
  751. if (env.EXIT_STATUS == "ABORTED"){
  752. sh 'echo "build aborted"'
  753. }
  754. else if (currentBuild.currentResult == "SUCCESS"){
  755. sh ''' curl -X POST -H "Content-Type: application/json" --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 1681177,\
  756. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** Success\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  757. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  758. }
  759. else {
  760. sh ''' curl -X POST -H "Content-Type: application/json" --data '{"avatar_url": "https://wiki.jenkins-ci.org/download/attachments/2916393/headshot.png","embeds": [{"color": 16711680,\
  761. "description": "**Build:** '${BUILD_NUMBER}'\\n**CI Results:** '${CI_URL}'\\n**ShellCheck Results:** '${SHELLCHECK_URL}'\\n**Status:** failure\\n**Job:** '${RUN_DISPLAY_URL}'\\n**Change:** '${CODE_URL}'\\n**External Release:**: '${RELEASE_LINK}'\\n**DockerHub:** '${DOCKERHUB_LINK}'\\n"}],\
  762. "username": "Jenkins"}' ${BUILDS_DISCORD} '''
  763. }
  764. }
  765. }
  766. cleanup {
  767. cleanWs()
  768. }
  769. }
  770. }