pipeline {
agent {
label "swarm"
}
options {
disableConcurrentBuilds()
timeout(time: 20, unit: 'MINUTES')
}
environment {
DOCKER_IMAGE='lab/node-lab'
SWARM_GIT_URL='ssh://git@git.sdsys.ru:8022/labportal/stack-deploy.git'
SWARM_GIT_NAME='stack-deploy'
JENKINS_MAIL='jenkins@sdsys.ru'
PACKAGE_NAME='web-laboratory'
DOCKER_CERT_PATH='/run/secrets/swarm'
DHOST='tcp://dev-iru-swarm.infoclinica.lan:2376 DOCKER_TLS_VERIFY=1'
DOCKER_REGISTRY='dev-registry.infoclinica.ru:5000'
BASE_REGISTRY='images.sdsys.ru'
NEWTAG=''
}
parameters {
string(
name: "repo",
defaultValue: "prod",
description: "Repository to build and/or deploy from."
)
string(
name: "version",
defaultValue: "16.1",
description: "Witch version to build and/or deploy."
)
string(
name: "service_update",
defaultValue: "lab_node-lab",
description: "Services to update."
)
string(
name: "mailto",
defaultValue: "admin@sdsys.ru",
description: "Email which has to be notified."
)
}
stages {
stage("Build") {
steps {
script {
withCredentials([usernamePassword(credentialsId: 'registry', usernameVariable: 'USERNAME', passwordVariable: 'PASSWORD')]) {
echo "Building ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER}."
sh "docker login -u ${USERNAME} -p ${PASSWORD} ${BASE_REGISTRY}"
sh "docker build --build-arg repo=${repo} --build-arg version=${version} --no-cache -t ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER} ."
}
NEWTAG = sh script: "docker run --rm --entrypoint=\"\" ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER} rpm -q --qf %{VERSION}-%{RELEASE} ${PACKAGE_NAME} 2> /dev/null", returnStdout: true
NEWTAG = repo + "-" + NEWTAG + "_" + BUILD_NUMBER
echo "NEWTAG is $NEWTAG"
}
sh "docker tag ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER} ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}"
}
}
stage("Publish") {
steps {
echo "Publishing ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}"
sh "docker push ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}"
}
}
stage("Update") {
when { expression { service_update != "" } }
steps {
script {
for (String item : service_update.split()) {
echo "Updating ${item}"
try{
sh "DOCKER_HOST=${DHOST} docker service update ${item} --image ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}"
}
catch(err){
echo "Recovering service $item"
sh "DOCKER_HOST=${DHOST} docker service rollback ${item}"
throw err
}
}
}
}
}
stage("Tagging"){
steps{
echo "Setting latest tag"
sh """docker tag ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG} ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:latest
docker push ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:latest"""
echo "Updating tag info in ${SWARM_GIT_NAME} repository"
withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
sh """GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
git clone ${SWARM_GIT_URL}
cd ${SWARM_GIT_NAME}
echo -n ${NEWTAG} > tags/${DOCKER_IMAGE}.dev-version
git add -A
git config --global user.email "${JENKINS_MAIL}"
git config --global user.name "Jenkins"
git commit -m 'Version update'
GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
git push origin master
ls"""
}
}
}
}
post {
always {
echo "CleaningUp work diretory"
deleteDir()
sh "docker image rm -f `docker image ls -q ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER}`"
}
failure {
mail charset: 'UTF-8',
subject: "Jenkins build ERROR",
mimeType: 'text/html',
to: "${mailto}",
body: "ATTENTION!!!
Jenkins job failed.\n\n
Project Name: ${env.JOB_NAME}
\nBuild Number: ${env.BUILD_NUMBER}
\nURL Build: ${RUN_DISPLAY_URL}"
}
success {
mail charset: 'UTF-8',
subject: "Jenkins build SUSCCESS",
mimeType: 'text/html',
to: "${mailto}",
body: "Congradulations!!!
Jenkins job succefully finished.\n\n
Project Name: ${env.JOB_NAME}
\nBuild Number: ${env.BUILD_NUMBER}
\nURL Build: ${RUN_DISPLAY_URL}"
}
}
}