Jenkinsfile 7.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188
  1. pipeline {
  2. agent {
  3. label "swarm"
  4. }
  5. options {
  6. ansiColor('xterm')
  7. }
  8. /*AnsiColor
  9. “\u001B[31m” = RED
  10. “\u001B[30m” = BLACK
  11. “\u001B[32m” = GREEN
  12. “\u001B[33m” = YELLOW
  13. “\u001B[34m” = BLUE
  14. “\u001B[35m” = PURPLE
  15. “\u001B[36m” = CYAN
  16. “\u001B[37m” = WHITE
  17. “\u001B[0m” is for RESET
  18. */
  19. /*Unicode icons
  20. “\u2776” = ❶
  21. “\u27A1” = ➡
  22. “\u2756” = ❖
  23. “\u273F” = ✿
  24. “\u2795” = ➕
  25. “\u2713” = ✓
  26. “\u2705” = ✅
  27. “\u274E” = ❎
  28. “\u2717” = ✗
  29. “\u274C” = ❌
  30. “\u2600” = ☀
  31. “\u2601” = ☁
  32. “\u2622” = ☢
  33. “\u2623” = ☣
  34. “\u2639” = ☹
  35. “\u263A” = ☺
  36. */
  37. environment {
  38. CLUSTER_NAME='dev-iru-swarm.infoclinica.lan'
  39. DOCKER_REGISTRY='dev-registry.infoclinica.ru:5000'
  40. DOCKER_IMAGE='bind'
  41. SERVICE_NAME='bind'
  42. SWARM_GIT_URL='ssh://git@git.sdsys.ru:8022/iru/stack-deploy.git'
  43. SWARM_GIT_NAME='stack-deploy'
  44. OVPN_GIT_URL='ssh://git@git.sdsys.ru:8022/iru/openvpn.git'
  45. OVPN_GIT_NAME='openvpn'
  46. BIND_GIT_URL='ssh://git@git.sdsys.ru:8022/sdsys/bind.git'
  47. JENKINS_MAIL='jenkins.dev@sdsys.ru'
  48. SMTP_SERVER='mail.sdsys.ru'
  49. }
  50. stages {
  51. stage ("PULL REPOs") {
  52. steps {
  53. echo "\u001B[32m \u2600 \u001B[32m Pull repo ${SWARM_GIT_NAME} \u001B[0m"
  54. withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
  55. sh '''GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  56. git clone ${SWARM_GIT_URL}'''
  57. }
  58. echo "\u001B[32m \u2600 Pull repo ${OVPN_GIT_NAME} \u001B[0m"
  59. withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
  60. sh '''GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  61. git clone ${OVPN_GIT_URL}'''
  62. }
  63. }
  64. }
  65. stage("Generate zone-files") {
  66. steps {
  67. echo "\u001B[32m \u2600 Generate ptr-zones \u001B[0m"
  68. sh '''set +x
  69. serial=$(cat ${WORKSPACE}/${SWARM_GIT_NAME}/tags/bind.version)
  70. serial=$((serial+1))
  71. ${WORKSPACE}/generate_ptr.sh 201 ${serial}
  72. ${WORKSPACE}/generate_ptr.sh 204 ${serial}
  73. ${WORKSPACE}/generate_ptr.sh 205 ${serial}
  74. '''
  75. echo "\u001B[32m \u2600 Generate infoclinica-zone \u001B[0m"
  76. sh '''set +x
  77. serial=$(cat ${WORKSPACE}/${SWARM_GIT_NAME}/tags/bind.version)
  78. serial=$((serial+1))
  79. ${WORKSPACE}/generate_zone.sh ${serial}
  80. '''
  81. }
  82. }
  83. stage("Create BIND Docker Image") {
  84. steps {
  85. echo "\u001B[32m \u2600 Create image \u001B[35m ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} \u001B[0m"
  86. sh '''docker build --no-cache -t ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} .
  87. if [ $? != 0 ]; then exit 1; fi
  88. '''
  89. }
  90. }
  91. stage("Staging") {
  92. steps {
  93. echo "\u001B[32m \u2600 Testing Bind \u001B[0m"
  94. sh '''set +x
  95. container_id_server=`docker run -d --rm ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}`
  96. docker exec -t ${container_id_server} nslookup iru-swarm.infoclinica.lan
  97. if [ $? != 0 ]; then exit 1; else echo "\u001B[32m \u2600 DNS is working!!! \u001B[0m"; fi
  98. docker stop ${container_id_server}
  99. '''
  100. }
  101. }
  102. stage("Publishing") {
  103. steps {
  104. echo "\u001B[32m \u2600 Publishing \u001B[35m ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}. \u001B[0m"
  105. sh "docker push ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}"
  106. }
  107. }
  108. stage("Prod-like") {
  109. steps {
  110. echo "\u001B[32m \u2600 Check Prod-like cluster status \u001B[0m"
  111. sh '''ping -c 2 ${CLUSTER_NAME}
  112. if [ $? -eq 0 ]; then
  113. export DOCKER_CERT_PATH=/run/secrets/swarm
  114. export DOCKER_HOST=tcp://${CLUSTER_NAME}:2376 DOCKER_TLS_VERIFY=1
  115. docker node ls --format "{{.Hostname}} {{.TLSStatus}}" | while read host status
  116. do
  117. if [ $status != Ready ]; then echo "\u001B[31m \u2600 Cluster ${CLUSTER_NAME} state is inconsistent \u001B[0m"; exit 1
  118. else echo "\u001B[34m \u2600 HOST: $host STATUS: $status \u001B[0m"
  119. fi
  120. done
  121. else echo "\u001B[31m \u2600 Host not Found \u001B[0m"; exit 1
  122. fi
  123. '''
  124. echo "\u001B[32m \u2600 Run containers in Prod-like \u001B[0m"
  125. sh '''export DOCKER_CERT_PATH=/run/secrets/swarm
  126. export DOCKER_HOST=tcp://${CLUSTER_NAME}:2376 DOCKER_TLS_VERIFY=1
  127. export DOCKER_HOST=tcp://$(docker info -f '{{.Name}}'):2376 DOCKER_TLS_VERIFY=1
  128. if [ -z $(docker service ps -q ${DOCKER_IMAGE}) ];then
  129. docker service create --replicas 1 \
  130. --name ${SERVICE_NAME} -p 53:53/tcp -p 53:53/udp \
  131. ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}
  132. else
  133. docker service update ${SERVICE_NAME} \
  134. --image ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}
  135. if [ $? != 0 ]; then docker service rollback ${SERVICE_NAME}; fi
  136. fi
  137. rm -rf ${WORKSPACE}/${SWARM_GIT_NAME}
  138. '''
  139. }
  140. }
  141. stage("Tagging") {
  142. steps {
  143. echo "\u001B[32m \u2600 Tagging \u001B[35m ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} \u001B[32m to \u001B[35m ${DOCKER_REGISTRY}/iru/${DOCKER_IMAGE}:latest \u001B[0m"
  144. sh '''docker tag ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} \
  145. ${DOCKER_REGISTRY}/iru/${DOCKER_IMAGE}:latest
  146. docker push ${DOCKER_REGISTRY}/iru/${DOCKER_IMAGE}:latest
  147. '''
  148. echo "\u001B[32m \u2600 Updating tag info in ${SWARM_GIT_NAME} repository \u001B[0m"
  149. withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
  150. sh '''GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  151. git clone ${SWARM_GIT_URL}
  152. cd ${SWARM_GIT_NAME}
  153. echo -n ${BUILD_NUMBER} > tags/${DOCKER_IMAGE}.version
  154. git add -A
  155. git config --global user.email "${JENKINS_MAIL}"
  156. git config --global user.name "Jenkins"
  157. git commit -m 'Version update'
  158. GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  159. git push origin master
  160. '''
  161. }
  162. }
  163. }
  164. }
  165. post {
  166. always {
  167. echo "\u001B[32m \u2600 CleaningUp work directory \u001B[0m"
  168. deleteDir()
  169. }
  170. failure {
  171. mail charset: 'UTF-8',
  172. subject: "Jenkins build ERROR",
  173. mimeType: 'text/html',
  174. to: "${mailto}",
  175. body: "<b>ATTENTION!!!</b> <b><br> Jenkins job failed.\n\n <b><br>Project Name:</b> ${env.JOB_NAME} <b><br>\nBuild Number:</b> ${env.BUILD_NUMBER} <b><br>\nURL Build:</b> ${RUN_DISPLAY_URL}"
  176. }
  177. aborted {
  178. mail charset: 'UTF-8',
  179. subject: "Jenkins build ERROR",
  180. mimeType: 'text/html',
  181. to: "${client_mail}",
  182. body: "<b>ATTENTION!!!</b> <b><br> Jenkins job aborted.\n\n <b><br> The CNAME ${key_name} is already exists!\n\n <b><br>Project Name:</b> ${env.JOB_NAME} <b><br>\nBuild Number:</b> ${env.BUILD_NUMBER} <b><br>\nURL Build:</b> ${RUN_DISPLAY_URL}"
  183. }
  184. }
  185. }