Jenkinsfile 6.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154
  1. pipeline {
  2. agent {
  3. label "swarm"
  4. }
  5. environment {
  6. CLUSTER_NAME='dev-iru-swarm.infoclinica.lan'
  7. DOCKER_REGISTRY='dev-registry.infoclinica.ru:5000'
  8. DOCKER_IMAGE='bind'
  9. SERVICE_NAME='bind'
  10. SWARM_GIT_URL='ssh://git@git.sdsys.ru:8022/iru/stack-deploy.git'
  11. SWARM_GIT_NAME='stack-deploy'
  12. OVPN_GIT_URL='ssh://git@git.sdsys.ru:8022/iru/openvpn.git'
  13. OVPN_GIT_NAME='openvpn'
  14. BIND_GIT_URL='ssh://git@git.sdsys.ru:8022/sdsys/bind.git'
  15. JENKINS_MAIL='jenkins.dev@sdsys.ru'
  16. SMTP_SERVER='mail.sdsys.ru'
  17. }
  18. stages {
  19. stage("PULL REPOs") {
  20. steps {
  21. echo "\u2600 Pull repo ${SWARM_GIT_NAME}"
  22. withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
  23. sh '''GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  24. git clone ${SWARM_GIT_URL}'''
  25. }
  26. echo "\u2600 Pull repo ${OVPN_GIT_NAME}"
  27. withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
  28. sh '''GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  29. git clone ${OVPN_GIT_URL}'''
  30. }
  31. }
  32. }
  33. stage("Generate zone-files") {
  34. steps {
  35. echo "\u2600 Generate ptr-zones"
  36. sh '''set +x
  37. serial=$(cat ${WORKSPACE}/${SWARM_GIT_NAME}/tags/bind.version)
  38. serial=$((serial+1))
  39. ${WORKSPACE}/generate_ptr.sh 201 ${serial}
  40. ${WORKSPACE}/generate_ptr.sh 204 ${serial}
  41. ${WORKSPACE}/generate_ptr.sh 205 ${serial}
  42. '''
  43. echo "\u2600 Generate infoclinica-zone"
  44. sh '''set +x
  45. serial=$(cat ${WORKSPACE}/${SWARM_GIT_NAME}/tags/bind.version)
  46. serial=$((serial+1))
  47. ${WORKSPACE}/generate_zone.sh ${serial}
  48. '''
  49. }
  50. }
  51. stage("Create BIND Docker Image") {
  52. steps {
  53. echo "\u2600 Create image ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}"
  54. sh '''docker build --no-cache -t ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} .
  55. if [ $? != 0 ]; then exit 1; fi
  56. '''
  57. }
  58. }
  59. stage("Staging") {
  60. steps {
  61. echo "\u2600 Testing Bind"
  62. sh '''set +x
  63. container_id_server=`docker run -d --rm ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}`
  64. docker exec -t ${container_id_server} nslookup iru-swarm.infoclinica.lan
  65. if [ $? != 0 ]; then exit 1; else echo "\u2600 DNS is working!!!"; fi
  66. docker stop ${container_id_server}
  67. '''
  68. }
  69. }
  70. stage("Publishing") {
  71. steps {
  72. echo "\u2600 Publishing ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}."
  73. sh "docker push ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}"
  74. }
  75. }
  76. stage("Prod-like") {
  77. steps {
  78. echo "\u2600 Check Prod-like cluster status"
  79. sh '''ping -c 2 ${CLUSTER_NAME}
  80. if [ $? -eq 0 ]; then
  81. export DOCKER_CERT_PATH=/run/secrets/swarm
  82. export DOCKER_HOST=tcp://${CLUSTER_NAME}:2376 DOCKER_TLS_VERIFY=1
  83. docker node ls --format "{{.Hostname}} {{.TLSStatus}}" | while read host status
  84. do
  85. if [ $status != Ready ]; then echo "\u2600 Cluster ${CLUSTER_NAME} state is inconsistent"; exit 1
  86. else echo "\u2600 HOST: $host STATUS: $status"
  87. fi
  88. done
  89. else echo "\u2600 Host not Found"; exit 1
  90. fi
  91. '''
  92. echo "\u2600 Run containers in Prod-like"
  93. sh '''export DOCKER_CERT_PATH=/run/secrets/swarm
  94. export DOCKER_HOST=tcp://${CLUSTER_NAME}:2376 DOCKER_TLS_VERIFY=1
  95. export DOCKER_HOST=tcp://$(docker info -f '{{.Name}}'):2376 DOCKER_TLS_VERIFY=1
  96. if [ -z $(docker service ps -q ${DOCKER_IMAGE}) ];then
  97. docker service create --replicas 1 \
  98. --name ${SERVICE_NAME} -p 53:53/tcp -p 53:53/udp \
  99. ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}
  100. else
  101. docker service update ${SERVICE_NAME} \
  102. --image ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER}
  103. if [ $? != 0 ]; then docker service rollback ${SERVICE_NAME}; fi
  104. fi
  105. rm -rf ${WORKSPACE}/${SWARM_GIT_NAME}
  106. '''
  107. }
  108. }
  109. stage("Tagging") {
  110. steps {
  111. echo "\u2600 Tagging ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} to ${DOCKER_REGISTRY}/iru/${DOCKER_IMAGE}:latest"
  112. sh '''docker tag ${DOCKER_REGISTRY}/${DOCKER_IMAGE}:${BUILD_NUMBER} \
  113. ${DOCKER_REGISTRY}/iru/${DOCKER_IMAGE}:latest
  114. docker push ${DOCKER_REGISTRY}/iru/${DOCKER_IMAGE}:latest
  115. '''
  116. echo "\u2600 Updating tag info in ${SWARM_GIT_NAME} repository"
  117. withCredentials([sshUserPrivateKey(credentialsId: 'provision', keyFileVariable: 'GIT_SSH_KEY', passphraseVariable: '', usernameVariable: 'GIT_SSH_USERNAME')]) {
  118. sh '''GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  119. git clone ${SWARM_GIT_URL}
  120. cd ${SWARM_GIT_NAME}
  121. echo -n ${BUILD_NUMBER} > tags/${DOCKER_IMAGE}.version
  122. git add -A
  123. git config --global user.email "${JENKINS_MAIL}"
  124. git config --global user.name "Jenkins"
  125. git commit -m 'Version update'
  126. GIT_SSH_COMMAND='ssh -i ${GIT_SSH_KEY} -o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no' \
  127. git push origin master
  128. '''
  129. }
  130. }
  131. }
  132. }
  133. post {
  134. always {
  135. echo "\u2600 CleaningUp work directory"
  136. deleteDir()
  137. }
  138. failure {
  139. mail charset: 'UTF-8',
  140. subject: "Jenkins build ERROR",
  141. mimeType: 'text/html',
  142. to: "${mailto}",
  143. body: "<b>ATTENTION!!!</b> <b><br> Jenkins job failed.\n\n <b><br>Project Name:</b> ${env.JOB_NAME} <b><br>\nBuild Number:</b> ${env.BUILD_NUMBER} <b><br>\nURL Build:</b> ${RUN_DISPLAY_URL}"
  144. }
  145. aborted {
  146. mail charset: 'UTF-8',
  147. subject: "Jenkins build ERROR",
  148. mimeType: 'text/html',
  149. to: "${client_mail}",
  150. body: "<b>ATTENTION!!!</b> <b><br> Jenkins job aborted.\n\n <b><br> The CNAME ${key_name} is already exists!\n\n <b><br>Project Name:</b> ${env.JOB_NAME} <b><br>\nBuild Number:</b> ${env.BUILD_NUMBER} <b><br>\nURL Build:</b> ${RUN_DISPLAY_URL}"
  151. }
  152. }
  153. }