-
Notifications
You must be signed in to change notification settings - Fork 3
/
Jenkinsfile
148 lines (123 loc) · 6.1 KB
/
Jenkinsfile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
#!groovy
@Library(['github.com/cloudogu/ces-build-lib@2.4.0', 'github.com/cloudogu/dogu-build-lib@v2.5.0'])
import com.cloudogu.ces.cesbuildlib.*
import com.cloudogu.ces.dogubuildlib.*
node('vagrant') {
String productionReleaseBranch = "main"
String doguName = "jenkins"
Git git = new Git(this, "cesmarvin")
git.committerName = 'cesmarvin'
git.committerEmail = 'cesmarvin@cloudogu.com'
GitFlow gitflow = new GitFlow(this, git)
GitHub github = new GitHub(this, git)
Changelog changelog = new Changelog(this)
timestamps {
properties([
// Keep only the last x builds to preserve space
buildDiscarder(logRotator(numToKeepStr: '10')),
// Don't run concurrent builds for a branch, because they use the same workspace directory
disableConcurrentBuilds(),
// Parameter to activate dogu upgrade test on demand
parameters([
booleanParam(defaultValue: false, description: 'Test dogu upgrade from latest release or optionally from defined version below', name: 'TestDoguUpgrade'),
string(defaultValue: '', description: 'Old Dogu version for the upgrade test (optional; e.g. 2.222.1-1)', name: 'OldDoguVersionForUpgradeTest'),
booleanParam(defaultValue: false, description: 'Enables the video recording during the test execution', name: 'EnableVideoRecording'),
booleanParam(defaultValue: false, description: 'Enables the screenshot recording during the test execution', name: 'EnableScreenshotRecording'),
choice(name: 'TrivyScanLevels', choices: [TrivyScanLevel.CRITICAL, TrivyScanLevel.HIGH, TrivyScanLevel.MEDIUM, TrivyScanLevel.ALL], description: 'The levels to scan with trivy'),
choice(name: 'TrivyStrategy', choices: [TrivyScanStrategy.UNSTABLE, TrivyScanStrategy.FAIL, TrivyScanStrategy.IGNORE], description: 'Define whether the build should be unstable, fail or whether the error should be ignored if any vulnerability was found.'),
])
])
EcoSystem ecoSystem = new EcoSystem(this, "gcloud-ces-operations-internal-packer", "jenkins-gcloud-ces-operations-internal")
Trivy trivy = new Trivy(this, ecoSystem)
stage('Checkout') {
checkout scm
}
stage('Lint') {
lintDockerfile()
shellCheck("resources/startup.sh resources/upgrade-notification.sh resources/pre-upgrade.sh")
if (env.CHANGE_TARGET) {
echo 'This is a pull request; checking changelog...'
String newChanges = changelog.changesForVersion('Unreleased')
if (!newChanges || newChanges.allWhitespace) {
unstable('CHANGELOG.md should contain new change entries in the `[Unreleased]` section but none were found.')
}
}
}
stage('Check Markdown Links') {
Markdown markdown = new Markdown(this)
markdown.check()
}
try {
stage('Bats Tests') {
Bats bats = new Bats(this, docker)
bats.checkAndExecuteTests()
}
stage('Provision') {
ecoSystem.provision("/dogu")
}
stage('Setup') {
ecoSystem.loginBackend('cesmarvin-setup')
ecoSystem.setup()
}
stage('Wait for dependencies') {
timeout(15) {
ecoSystem.waitForDogu("cas")
ecoSystem.waitForDogu("usermgt")
}
}
stage('Build') {
ecoSystem.build("/dogu")
}
stage('Trivy scan') {
trivy.scanDogu("/dogu", TrivyScanFormat.HTML, params.TrivyScanLevels, params.TrivyStrategy)
trivy.scanDogu("/dogu", TrivyScanFormat.JSON, params.TrivyScanLevels, params.TrivyStrategy)
trivy.scanDogu("/dogu", TrivyScanFormat.PLAIN, params.TrivyScanLevels, params.TrivyStrategy)
}
stage('Verify') {
ecoSystem.verify("/dogu")
}
stage('Integration tests') {
runIntegrationTests(ecoSystem, params.EnableVideoRecording, params.EnableScreenshotRecording)
}
stage('Test: Change Global Admin Group') {
ecoSystem.changeGlobalAdminGroup("newAdminGroup")
// this waits until the dogu is up and running
ecoSystem.restartDogu("jenkins")
ecoSystem.waitForDogu("jenkins")
runIntegrationTests(ecoSystem, params.EnableVideoRecording, params.EnableScreenshotRecording)
}
if (params.TestDoguUpgrade != null && params.TestDoguUpgrade){
stage('Upgrade dogu'){
ecoSystem.upgradeFromPreviousRelease(params.OldDoguVersionForUpgradeTest, doguName)
}
stage('Integration Tests - After Upgrade'){
// Run integration tests again to verify that the upgrade was successful
runIntegrationTests(ecoSystem, params.EnableVideoRecording, params.EnableScreenshotRecording)
}
}
if (gitflow.isReleaseBranch()) {
String releaseVersion = git.getSimpleBranchName()
stage('Finish Release') {
gitflow.finishRelease(releaseVersion, productionReleaseBranch)
}
stage('Push Dogu to registry') {
ecoSystem.push("/dogu")
}
stage ('Add Github-Release'){
github.createReleaseWithChangelog(releaseVersion, changelog, productionReleaseBranch)
}
}
} finally {
stage('Clean') {
ecoSystem.destroy()
}
}
}
}
def runIntegrationTests(EcoSystem ecoSystem, boolean videoRecording, boolean screenshotRecording) {
ecoSystem.runCypressIntegrationTests([
cypressImage : "cypress/included:12.16.0",
enableVideo : videoRecording,
enableScreenshots: screenshotRecording
])
}