pipeline { agent { label "swarm" } options { disableConcurrentBuilds() timeout(time: 20, unit: 'MINUTES') } environment { DOCKER_IMAGE='lab/node-lab' SWARM_GIT_URL='ssh://git@git.sdsys.ru:8022/labportal/stack-deploy.git' SWARM_GIT_NAME='stack-deploy' JENKINS_MAIL='jenkins@sdsys.ru' PACKAGE_NAME='web-laboratory' DOCKER_CERT_PATH='/run/secrets/swarm' DHOST='tcp://dev-iru-swarm.infoclinica.lan:2376 DOCKER_TLS_VERIFY=1' DOCKER_REGISTRY='dev-registry.infoclinica.ru:5000' BASE_REGISTRY='images.sdsys.ru' NEWTAG='' } parameters { string( name: "repo", defaultValue: "prod", description: "Repository to build and/or deploy from." ) string( name: "version", defaultValue: "16.1", description: "Witch version to build and/or deploy." ) string( name: "service_update", defaultValue: "lab_node-lab", description: "Services to update." ) string( name: "mailto", defaultValue: "admin@sdsys.ru", description: "Email which has to be notified." ) } stages { stage("Build") { steps { script { withCredentials([usernamePassword(credentialsId: 'registry', usernameVariable: 'USERNAME', passwordVariable: 'PASSWORD')]) { echo "Building ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER}." sh "docker login -u ${USERNAME} -p ${PASSWORD} ${BASE_REGISTRY}" sh "docker build --build-arg repo=${repo} --build-arg version=${version} --no-cache -t ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER} ." } NEWTAG = sh script: "docker run --rm --entrypoint=\"\" ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER} rpm -q --qf %{VERSION}-%{RELEASE} ${PACKAGE_NAME} 2> /dev/null", returnStdout: true NEWTAG = repo + "-" + NEWTAG + "_" + BUILD_NUMBER echo "NEWTAG is $NEWTAG" } sh "docker tag ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER} ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}" } } stage("Publish") { steps { echo "Publishing ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}" sh "docker push ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}" } } stage("Update") { when { expression { service_update != "" } } steps { script { for (String item : service_update.split()) { echo "Updating ${item}" try{ sh "DOCKER_HOST=${DHOST} docker service update ${item} --image ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG}" } catch(err){ echo "Recovering service $item" sh "DOCKER_HOST=${DHOST} docker service rollback ${item}" throw err } } } } } stage("Tagging"){ steps{ echo "Setting latest tag" sh """docker tag ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${NEWTAG} ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:latest docker push ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:latest""" echo "Updating tag info in ${SWARM_GIT_NAME} repository" withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) { sh """GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \ git clone ${SWARM_GIT_URL} cd ${SWARM_GIT_NAME} echo -n ${NEWTAG} > tags/${DOCKER_IMAGE}.dev-version git add -A git config --global user.email "${JENKINS_MAIL}" git config --global user.name "Jenkins" git commit -m 'Version update' GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \ git push origin master ls""" } } } } post { always { echo "CleaningUp work diretory" deleteDir() sh "docker image rm -f `docker image ls -q ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${repo}-${BUILD_NUMBER}`" } failure { mail charset: 'UTF-8', subject: "Jenkins build ERROR", mimeType: 'text/html', to: "${mailto}", body: "ATTENTION!!!
Jenkins job failed.\n\n
Project Name:
${env.JOB_NAME}
\nBuild Number:
${env.BUILD_NUMBER}
\nURL Build:
${RUN_DISPLAY_URL}" } success { mail charset: 'UTF-8', subject: "Jenkins build SUSCCESS", mimeType: 'text/html', to: "${mailto}", body: "Congradulations!!!
Jenkins job succefully finished.\n\n
Project Name:
${env.JOB_NAME}
\nBuild Number:
${env.BUILD_NUMBER}
\nURL Build:
${RUN_DISPLAY_URL}" } } }