Improve CI workflow #231
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
name: CI | |
on: | |
push: | |
branches: [master, develop] | |
pull_request: | |
branches: [master] | |
concurrency: | |
group: ${{ github.workflow }}-${{ github.ref }} | |
cancel-in-progress: true | |
jobs: | |
Perfecto: | |
name: Perfecto | |
runs-on: ubuntu-latest | |
steps: | |
- name: Code checkout | |
uses: actions/checkout@v4 | |
- name: Login to DockerHub | |
uses: docker/login-action@v3 | |
with: | |
registry: ghcr.io | |
username: ${{ github.actor }} | |
password: ${{ secrets.GITHUB_TOKEN }} | |
- name: Check specs with Perfecto | |
uses: essentialkaos/perfecto-action@v2 | |
with: | |
files: webkaos.spec | |
Shellcheck: | |
name: Shellcheck | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout | |
uses: actions/checkout@v4 | |
- name: Check scripts with Shellcheck | |
uses: essentialkaos/shellcheck-action@v1 | |
with: | |
files: .docker/entrypoint.sh | |
Hadolint: | |
name: Hadolint | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout | |
uses: actions/checkout@v4 | |
- name: Check dockerfiles with Hadolint | |
uses: essentialkaos/hadolint-action@v1 | |
with: | |
files: .docker/*.docker | |
Bibop: | |
name: Bibop | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout source code | |
uses: actions/checkout@v4 | |
- name: Test recipes with Bibop | |
uses: essentialkaos/bibop-action@v1 | |
with: | |
recipe: .bibop/webkaos.recipe .bibop/webkaos-docker.recipe | |
dry-run: true | |
DockerEntrypointUnit: | |
name: Docker Entrypoint Unit Test | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout source code | |
uses: actions/checkout@v4 | |
- name: Run entrypoint unit tests | |
run: | | |
pushd .docker | |
./entrypoint_test.sh --verbose | |
popd | |
DockerVersionCheck: | |
name: Docker versions check | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout source code | |
uses: actions/checkout@v4 | |
- name: Run entrypoint unit tests | |
run: .docker/version_check.sh | |
DockerBuild: | |
name: Docker Build Check | |
runs-on: ubuntu-latest | |
needs: [Hadolint, Shellcheck, DockerEntrypointUnit, DockerVersionCheck] | |
env: | |
REGISTRY: ghcr.io | |
strategy: | |
matrix: | |
image: [ 'centos7', 'centos7-unprivileged', 'ol7', 'ol7-unprivileged', 'ol8', 'ol8-unprivileged', 'ol9', 'ol9-unprivileged' ] | |
steps: | |
- name: Check event type | |
run: | | |
if [[ "${{github.event_name}}" != "pull_request" ]] ; then | |
echo "::notice::Event type is not 'pull_request', all job actions will be skipped" | |
fi | |
# This step is a hack for needs+if issue with actions | |
# More info about issue: https://github.com/actions/runner/issues/491 | |
- name: Checkout | |
uses: actions/checkout@v4 | |
if: ${{ github.event_name == 'pull_request' }} | |
- name: Check versions in Dockerfiles | |
if: ${{ github.event_name == 'pull_request' }} | |
run: ./.docker/version_check.sh | |
- name: Login to DockerHub | |
uses: docker/login-action@v3 | |
env: | |
DOCKERHUB_USERNAME: ${{ secrets.DOCKERHUB_USERNAME }} | |
if: ${{ github.event_name == 'pull_request' && env.DOCKERHUB_USERNAME != '' }} | |
with: | |
username: ${{ secrets.DOCKERHUB_USERNAME }} | |
password: ${{ secrets.DOCKERHUB_TOKEN }} | |
- name: Login to GitHub Container Registry | |
uses: docker/login-action@v3 | |
if: ${{ github.event_name == 'pull_request' }} | |
with: | |
registry: ghcr.io | |
username: ${{ github.actor }} | |
password: ${{ secrets.GITHUB_TOKEN }} | |
- name: Build Docker image | |
if: ${{ github.event_name == 'pull_request' }} | |
run: | | |
docker build --build-arg REGISTRY=${REGISTRY} --build-arg REPOSITORY=kaos-testing -f .docker/${{matrix.image}}.docker -t ${{matrix.image}} . | |
- name: Show info about built Docker image | |
uses: essentialkaos/docker-info-action@v1 | |
if: ${{ github.event_name == 'pull_request' }} | |
with: | |
image: ${{matrix.image}} | |
show-labels: true |