Improve workflow and generate CRDs
Some checks failed
Build and deploy / Build container and manifests (push) Failing after 5m24s

This commit is contained in:
Dreaded_X 2025-03-20 01:47:36 +01:00
parent 69588d2748
commit f49543e752
Signed by: Dreaded_X
GPG Key ID: FA5F485356B0D2D4
5 changed files with 48 additions and 42 deletions

4
.dockerignore Normal file
View File

@ -0,0 +1,4 @@
*
!queries
!src
!Cargo.*

View File

@ -9,24 +9,12 @@ on:
jobs: jobs:
build: build:
name: Build container name: Build container and manifests
runs-on: ubuntu-latest runs-on: ubuntu-latest
steps: steps:
- name: Checkout - name: Checkout
uses: actions/checkout@v4 uses: actions/checkout@v4
- name: Docker meta
id: meta
uses: docker/metadata-action@v5
with:
images: git.huizinga.dev/dreaded_x/${{ gitea.event.repository.name}}
tags: |
type=ref,event=branch
type=ref,event=pr
type=semver,pattern={{version}}
type=semver,pattern={{major}}.{{minor}}
type=sha
- name: Login to registry - name: Login to registry
uses: docker/login-action@v3 uses: docker/login-action@v3
with: with:
@ -34,20 +22,8 @@ jobs:
username: ${{ gitea.actor }} username: ${{ gitea.actor }}
password: ${{ secrets.REGISTRY_TOKEN }} password: ${{ secrets.REGISTRY_TOKEN }}
- name: Build and push Docker image - name: Set up Docker Buildx
uses: https://github.com/docker/build-push-action@v5 uses: docker/setup-buildx-action@v3
with:
context: .
push: true
tags: ${{ steps.meta.outputs.tags }}
labels: ${{ steps.meta.outputs.labels }}
manifests:
name: Publish manifests
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Install kustomize - name: Install kustomize
run: | run: |
@ -58,26 +34,50 @@ jobs:
with: with:
version: v2.5.0 version: v2.5.0
- name: Login to registry - name: Docker meta
uses: docker/login-action@v3 id: meta
uses: docker/metadata-action@v5
with: with:
registry: git.huizinga.dev images: git.huizinga.dev/dreaded_x/${{ gitea.event.repository.name}}
username: ${{ gitea.actor }} tags: |
password: ${{ secrets.REGISTRY_TOKEN }} type=edge
type=ref,event=branch
type=semver,pattern=v{{version}}
type=semver,pattern=v{{major}}.{{minor}}
type=semver,pattern=v{{major}}
# TODO: Generate and include crds - name: Build and export to docker
- name: Generate manifets id: build
uses: docker/build-push-action@v6
with:
context: .
load: true
labels: ${{ steps.meta.outputs.labels }}
- name: Generate CRDs
run: | run: |
./kustomize build ./manifests | sed "s/\${SHA_SHORT}/$(git rev-parse --short HEAD)/" > ./app.yaml docker run --rm ${{ steps.build.outputs.imageid }} crdgen > ./manifests/crds.yaml
- name: Push container
uses: docker/build-push-action@v6
id: push
with:
context: .
push: true
tags: ${{ steps.meta.outputs.tags }}
labels: ${{ steps.meta.outputs.labels }}
- name: Kustomize manifests
run: |
./kustomize build ./manifests | sed "s/\${DIGEST}/${{ steps.push.outputs.digest }}/" > ./manifests.yaml
- name: Push manifests - name: Push manifests
run: | run: |
flux push artifact oci://git.huizinga.dev/dreaded_x/${{ gitea.event.repository.name }}/manifests:sha-$(git rev-parse --short HEAD) \ flux push artifact oci://git.huizinga.dev/dreaded_x/${{ gitea.event.repository.name }}/manifests:latest \
--path="./app.yaml" \ --path="./manifests.yaml" \
--source="$(git config --get remote.origin.url)" \ --source="$(git config --get remote.origin.url)" \
--revision="$(git branch --show-current)@sha1:$(git rev-parse HEAD)" --revision="$(git branch --show-current)@sha1:$(git rev-parse HEAD)" \
$(echo "${{ steps.meta.outputs.labels }}" | sed -e 's/^/-a /')
- name: Tag manifests
run: |
flux tag artifact oci://git.huizinga.dev/dreaded_x/${{ gitea.event.repository.name }}/manifests:sha-$(git rev-parse --short HEAD) \ flux tag artifact oci://git.huizinga.dev/dreaded_x/${{ gitea.event.repository.name }}/manifests:sha-$(git rev-parse --short HEAD) \
--tag latest $(echo k${{ steps.meta.outputs.tags }}" | sed -e 's/^.*:/--tag /')

View File

@ -4,6 +4,7 @@ repos:
hooks: hooks:
- id: trailing-whitespace - id: trailing-whitespace
- id: end-of-file-fixer - id: end-of-file-fixer
- id: check-yaml
- id: check-toml - id: check-toml
- id: check-added-large-files - id: check-added-large-files
- id: check-merge-conflict - id: check-merge-conflict

View File

@ -21,7 +21,7 @@ spec:
securityContext: {} securityContext: {}
containers: containers:
- name: lldap-controller - name: lldap-controller
image: git.huizinga.dev/dreaded_x/lldap-controller:sha-${SHA_SHORT} image: git.huizinga.dev/dreaded_x/lldap-controller@${DIGEST}
imagePullPolicy: IfNotPresent imagePullPolicy: IfNotPresent
securityContext: {} securityContext: {}
resources: resources:

View File

@ -2,6 +2,7 @@ apiVersion: kustomize.config.k8s.io/v1beta1
kind: Kustomization kind: Kustomization
namespace: lldap namespace: lldap
resources: resources:
- ./crds.yaml
- ./service-account.yaml - ./service-account.yaml
- ./cluster-role.yaml - ./cluster-role.yaml
- ./cluster-role-binding.yaml - ./cluster-role-binding.yaml