-
Notifications
You must be signed in to change notification settings - Fork 14
108 lines (101 loc) · 3.96 KB
/
ci.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
name: Continuous Integration
on:
push:
schedule:
- cron: '0 17 * * *' # 3 AM AEST
jobs:
image:
env:
IMAGE_REPO: ${{ secrets.DOCKER_ORG }}/${{ secrets.DOCKER_REPO }}
IMAGE_TAG: sha-${{ github.sha }}-${{ matrix.arch }}
runs-on:
- linux
- self-hosted
- ${{ matrix.arch }}
steps:
- uses: docker/login-action@v1
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
- uses: docker/build-push-action@v2
with:
file: Dockerfile
no-cache: ${{ github.event_name == 'schedule' }}
push: true
tags: ${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}
- name: Push branch tag
run: |
docker tag ${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }} ${{ env.IMAGE_REPO }}:${GITHUB_REF#refs/heads/}
docker push ${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}
docker push ${{ env.IMAGE_REPO }}:${GITHUB_REF#refs/heads/}
- name: Push 'latest' tag
if: github.ref == 'refs/heads/master'
run: |
docker tag ${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }} ${{ env.IMAGE_REPO }}:latest
docker push ${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}
docker push ${{ env.IMAGE_REPO }}:latest
- name: Cleanup
if: always()
run: |
export COMPOSE_PROJECT_NAME=${COMPOSE_PROJECT_NAME//\//-}
docker-compose down --volumes
docker rmi -f \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }} \
${{ env.IMAGE_REPO }}:${GITHUB_REF#refs/heads/}
if [[ "$BRANCH" == master ]]; then
docker rmi -f ${{ env.IMAGE_REPO }}:latest
fi
strategy:
matrix:
arch:
- arm64
- x64
manifest:
env:
IMAGE_REPO: ${{ secrets.DOCKER_ORG }}/${{ secrets.DOCKER_REPO }}
IMAGE_TAG: sha-${{ github.sha }}
needs: image
runs-on:
- linux
- self-hosted
steps:
- uses: docker/login-action@v1
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
- name: Push branch manifest list
run: |
docker buildx imagetools create -t \
${{ env.IMAGE_REPO }}:${GITHUB_REF#refs/heads/} \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}-arm64 \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}-x64
- name: Push SHA manifest list
run: |
docker buildx imagetools create -t \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }} \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}-arm64 \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}-x64
- name: Push 'latest' manifest list
if: github.ref == 'refs/heads/master'
run: |
# Latest.
docker buildx imagetools create -t \
${{ env.IMAGE_REPO }}:latest \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}-arm64 \
${{ env.IMAGE_REPO }}:${{ env.IMAGE_TAG }}-x64
- name: Remove arch tags
run: |
TOKEN=$(curl -s -H "Content-Type: application/json" -X POST -d '{"username": "${{ secrets.DOCKER_USERNAME }}", "password": "${{ secrets.DOCKER_PASSWORD }}"}' "https://hub.docker.com/v2/users/login/" | jq -r '.token')
curl "https://hub.docker.com/v2/repositories/${{ secrets.DOCKER_ORG }}/${{ secrets.DOCKER_REPO }}/tags/${{ env.IMAGE_TAG }}-arm64/" -X DELETE -H "Authorization: JWT ${TOKEN}"
curl "https://hub.docker.com/v2/repositories/${{ secrets.DOCKER_ORG }}/${{ secrets.DOCKER_REPO }}/tags/${{ env.IMAGE_TAG }}-x64/" -X DELETE -H "Authorization: JWT ${TOKEN}"
readme:
needs: image
runs-on:
- self-hosted
steps:
- uses: actions/checkout@v2
- uses: peter-evans/dockerhub-description@v2
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
repository: ${{ secrets.DOCKER_ORG }}/${{ secrets.DOCKER_REPO }}