Add new missioncontrol_jpd
resource
#13
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
on: | |
pull_request: | |
branches: | |
- main | |
types: [opened,synchronize] | |
paths: | |
- '**.go' | |
workflow_dispatch: | |
name: Terraform & OpenTofu Acceptance Tests | |
jobs: | |
acceptance-tests-matrix: | |
name: ${{ matrix.cli }} | |
runs-on: ubuntu-latest | |
continue-on-error: false | |
environment: development | |
strategy: | |
fail-fast: true | |
matrix: | |
cli: [terraform, tofu] | |
outputs: | |
tf_version: ${{ steps.get_terraform_cli_version.outputs.version }} | |
tofu_version: ${{ steps.get_opentofu_cli_version.outputs.version }} | |
artifactory_version: ${{ steps.run_artifactory_container.outputs.version }} | |
steps: | |
- name: Checkout | |
uses: actions/checkout@v4 | |
- name: Unshallow | |
run: git fetch --prune --unshallow | |
- name: Set up Go | |
uses: actions/setup-go@v5 | |
with: | |
go-version: 1.21 | |
- name: Install Helm | |
uses: azure/[email protected] | |
- name: Install Terraform CLI | |
uses: hashicorp/setup-terraform@v3 | |
if: ${{ matrix.cli == 'terraform' }} | |
- name: Get Terraform CLI version | |
id: get_terraform_cli_version | |
if: ${{ matrix.cli == 'terraform' }} | |
run: | | |
TF_VERSION=$(terraform -v -json | jq -r .terraform_version) | |
echo $TF_VERSION | |
echo "version=$TF_VERSION" >> "$GITHUB_OUTPUT" | |
- name: Install OpenTofu CLI | |
uses: opentofu/setup-opentofu@v1 | |
if: ${{ matrix.cli == 'tofu' }} | |
with: | |
tofu_wrapper: false | |
- name: Get OpenTofu CLI version | |
id: get_opentofu_cli_version | |
if: ${{ matrix.cli == 'tofu' }} | |
run: | | |
echo "TF_ACC_TERRAFORM_PATH=$(which tofu)" >> "$GITHUB_ENV" | |
echo "TF_ACC_PROVIDER_NAMESPACE=hashicorp" >> "$GITHUB_ENV" | |
echo "TF_ACC_PROVIDER_HOST=registry.opentofu.org" >> "$GITHUB_ENV" | |
TOFU_VERSION=$(tofu -v -json | jq -r .terraform_version) | |
echo $TOFU_VERSION | |
echo "version=$TOFU_VERSION" >> "$GITHUB_OUTPUT" | |
- name: Install GoReleaser | |
uses: goreleaser/goreleaser-action@v6 | |
with: | |
install-only: true | |
- name: Set Join Key in system.yaml | |
uses: mikefarah/yq@master | |
with: | |
cmd: | | |
yq -i '.shared += {"security": {"joinKey": "${{ secrets.ARTIFACTORY_JOIN_KEY }}"}}' ${{ github.workspace }}/scripts/system.yaml | |
- name: Create Artifactory data directories and copy data | |
env: | |
ARTIFACTORY_LICENSE: ${{ secrets.ARTIFACTORY_LICENSE }} | |
run: | | |
mkdir -p ${{ runner.temp }}/artifactory/extra_conf | |
mkdir -p ${{ runner.temp }}/artifactory/var/etc | |
echo $ARTIFACTORY_LICENSE > ${{ runner.temp }}/artifactory/extra_conf/artifactory.lic | |
cp ${{ github.workspace }}/scripts/system.yaml ${{ runner.temp }}/artifactory/var/etc/system.yaml | |
sudo chown -R 1030:1030 ${{ runner.temp }}/artifactory/var | |
mkdir -p ${{ runner.temp }}/artifactory-2/extra_conf | |
mkdir -p ${{ runner.temp }}/artifactory-2/var/etc | |
echo $ARTIFACTORY_LICENSE > ${{ runner.temp }}/artifactory-2/extra_conf/artifactory.lic | |
cp ${{ github.workspace }}/scripts/system.yaml ${{ runner.temp }}/artifactory-2/var/etc/system.yaml | |
sudo chown -R 1030:1030 ${{ runner.temp }}/artifactory-2/var | |
- name: Run Artifactory container | |
id: run_artifactory_container | |
run: | | |
echo "Get latest Artifactory image tag" | |
helm repo add artifactory https://charts.jfrog.io | |
helm repo update | |
ARTIFACTORY_VERSION=$(helm search repo | grep "artifactory " | awk '{$1=$1};1' | cut -f3 -d " ") | |
echo "version=$ARTIFACTORY_VERSION" >> "$GITHUB_OUTPUT" | |
echo "Start up Artifactory container" | |
docker run -i --name artifactory -d --rm \ | |
-v ${{ runner.temp }}/artifactory/extra_conf:/artifactory_extra_conf \ | |
-v ${{ runner.temp }}/artifactory/var:/var/opt/jfrog/artifactory \ | |
-p 8081:8081 -p 8082:8082 \ | |
releases-docker.jfrog.io/jfrog/artifactory-pro:${ARTIFACTORY_VERSION} | |
echo "Start up Artifactory 2 container" | |
docker run -i --name artifactory-2 -d --rm \ | |
-v ${{ runner.temp }}/artifactory-2/extra_conf:/artifactory_extra_conf \ | |
-v ${{ runner.temp }}/artifactory-2/var:/var/opt/jfrog/artifactory \ | |
-p 9081:8081 -p 9082:8082 \ | |
releases-docker.jfrog.io/jfrog/artifactory-pro:${ARTIFACTORY_VERSION} | |
echo "Set localhost to a container IP address, since we run docker inside of docker" | |
export LOCALHOST=$(docker inspect -f '{{range.NetworkSettings.Networks}}{{.Gateway}}{{end}}' artifactory) | |
export JFROG_URL="http://${LOCALHOST}:8082" | |
echo "JFROG_URL=$JFROG_URL" >> "$GITHUB_ENV" | |
echo "Waiting for Artifactory services to start at ${JFROG_URL}" | |
until $(curl -sf -o /dev/null -m 5 ${JFROG_URL}/artifactory/api/system/ping/); do | |
printf '.' | |
sleep 5 | |
done | |
export LOCALHOST_2=$(docker inspect -f '{{range.NetworkSettings.Networks}}{{.Gateway}}{{end}}' artifactory-2) | |
export JFROG_URL_2="http://${LOCALHOST-2}:9082" | |
echo "ARTIFACTORY_URL_2=$JFROG_URL_2" >> "$GITHUB_ENV" | |
echo "Waiting for Artifactory 2 services to start at ${JFROG_URL_2}" | |
until $(curl -sf -o /dev/null -m 5 ${JFROG_URL_2}/artifactory/api/system/ping/); do | |
printf '.' | |
sleep 5 | |
done | |
echo "Waiting for Artifactory UI to start" | |
until $(curl -sf -o /dev/null -m 5 ${JFROG_URL}/ui/login/); do | |
printf '.' | |
sleep 5 | |
done | |
export COOKIES=$(curl -s -c - "${JFROG_URL}/ui/api/v1/ui/auth/login?_spring_security_remember_me=false" \ | |
--header "accept: application/json, text/plain, */*" \ | |
--header "content-type: application/json;charset=UTF-8" \ | |
--header "x-requested-with: XMLHttpRequest" \ | |
-d '{"user":"admin","password":"'"${{ secrets.ARTIFACTORY_PASSWORD }}"'","type":"login"}' | grep FALSE) | |
export REFRESHTOKEN=$(echo $COOKIES | grep REFRESHTOKEN | awk '{print $7}') | |
export ACCESSTOKEN=$(echo $COOKIES | grep ACCESSTOKEN | awk '{print $14}') | |
export JFROG_ACCESS_TOKEN=$(curl -s -g --request GET "${JFROG_URL}/ui/api/v1/system/security/token?services[]=all" \ | |
--header "accept: application/json, text/plain, */*" \ | |
--header "x-requested-with: XMLHttpRequest" \ | |
--header "cookie: ACCESSTOKEN=${ACCESSTOKEN}; REFRESHTOKEN=${REFRESHTOKEN}") | |
echo "::add-mask::$JFROG_ACCESS_TOKEN" | |
echo "JFROG_ACCESS_TOKEN=$JFROG_ACCESS_TOKEN" >> "$GITHUB_ENV" | |
- name: Download license file | |
env: | |
JFROG_LICENSE_BUCKET_URL: ${{ secrets.JFROG_LICENSE_BUCKET_URL }} | |
run: | | |
curl -s -o ${{ runner.temp }}/encrypted_license.json $JFROG_LICENSE_BUCKET_URL | |
echo "JFROG_LICENSE_BUCKET_FILE=${{ runner.temp }}/encrypted_license.json" >> "$GITHUB_ENV" | |
- name: Execute acceptance tests | |
env: | |
JFROG_LICENSE_BUCKET_URL: ${{ secrets.JFROG_LICENSE_BUCKET_URL }} | |
JFROG_LICENSE_BUCKET_KEY: ${{ secrets.JFROG_LICENSE_BUCKET_KEY }} | |
ARTIFACTORY_JOIN_KEY: ${{ secrets.ARTIFACTORY_JOIN_KEY }} | |
run: make acceptance | |
- name: Install provider | |
run: | | |
export PROVIDER_VERSION=$(git describe --tags --abbrev=0 | sed -n 's/v\([0-9]*\).\([0-9]*\).\([0-9]*\)/\1.\2.\3/p') | |
cat sample.tf | sed -e "s/version =.*/version = \"${PROVIDER_VERSION}\"/g" > sample.tf.tmp | |
cp sample.tf.tmp sample.tf && rm sample.tf.tmp | |
TERRAFORM_CLI=${{ matrix.cli }} make install | |
- name: Clean up Docker container | |
if: always() && ${{ steps.run_artifactory_container.outcome == 'success' }} | |
run: docker stop artifactory | |
- name: Send workflow status to Slack | |
uses: slackapi/[email protected] | |
if: always() | |
with: | |
payload: | | |
{ | |
"text": "${{ github.workflow }} https://github.com/${{ github.repository }}/actions/runs/${{ github.run_id }}/job/${{ github.job }} ${{ matrix.cli }} GitHub Action result: ${{ job.status == 'success' && ':white_check_mark:' || ':x:' }}\n${{ github.event.pull_request.html_url || github.event.head_commit.url }}", | |
"blocks": [ | |
{ | |
"type": "section", | |
"text": { | |
"type": "mrkdwn", | |
"text": "${{ github.workflow }} <https://github.com/${{ github.repository }}/actions/runs/${{ github.run_id }}/job/${{ github.job }}|${{ matrix.cli }} GitHub Action result>: ${{ job.status == 'success' && ':white_check_mark:' || ':x:' }}\n${{ github.event.pull_request.html_url || github.event.head_commit.url }}" | |
} | |
} | |
] | |
} | |
env: | |
SLACK_WEBHOOK_URL: ${{ secrets.SLACK_PR_WEBHOOK }} | |
SLACK_WEBHOOK_TYPE: INCOMING_WEBHOOK | |
update-changelog: | |
runs-on: ubuntu-latest | |
needs: acceptance-tests-matrix | |
if: ${{ github.event_name == 'pull_request' }} && ${{ needs.acceptance-tests-matrix.result == 'success' }} | |
permissions: | |
contents: write | |
steps: | |
- uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
ref: ${{ github.event.pull_request.head.ref }} | |
- name: Update CHANGELOG and push commit | |
env: | |
ARTIFACTORY_VERSION: ${{ needs.acceptance-tests-matrix.outputs.artifactory_version }} | |
TERRAFORM_VERSION: ${{ needs.acceptance-tests-matrix.outputs.tf_version }} | |
OPENTOFU_VERSION: ${{ needs.acceptance-tests-matrix.outputs.tofu_version }} | |
run: | | |
echo "Adding Artifactory version to CHANGELOG.md" | |
sed -i -E "0,/(##\s.+\..+\..+\s\(.+\)).*/ s/(##\s.+\..+\..+\s\(.+\)).*/\1. Tested on Artifactory $ARTIFACTORY_VERSION with Terraform $TERRAFORM_VERSION and OpenTofu $OPENTOFU_VERSION/" CHANGELOG.md | |
head -10 CHANGELOG.md | |
git add CHANGELOG.md | |
export REGEX="Changes to be committed*" | |
export GIT_STATUS=$(git status) | |
if [[ ${GIT_STATUS} =~ ${REGEX} ]]; then | |
echo "Commiting changes" | |
git config --global user.name 'JFrog CI' | |
git config --global user.email '[email protected]' | |
git config --get user.name | |
git config --get user.email | |
git commit --author="JFrog CI <[email protected]>" -m "JFrog Pipelines - Add Artifactory version to CHANGELOG.md" | |
git push | |
else | |
echo "There is nothing to commit: Artifactory version hadn't changed." | |
fi | |
- name: Send workflow status to Slack | |
uses: slackapi/[email protected] | |
if: success() | |
with: | |
payload: | | |
{ | |
"text": "Terraform Provider Platform. A new PR was submitted by ${{ github.event.pull_request.user.login }} - ${{ github.event.pull_request.html_url }}, branch ${{ github.event.pull_request.base.ref }}. Changes tested successfully. <@U01H1SLSPA8> or <@UNDRUL1EU> please, review and merge.", | |
"blocks": [ | |
{ | |
"type": "section", | |
"text": { | |
"type": "mrkdwn", | |
"text": "<http://github.com/${{ github.repository }}|Terraform Provider Platform>. A new PR was submitted by *${{ github.event.pull_request.user.login }}* - <${{ github.event.pull_request.html_url }}|${{ github.event.pull_request.title }}>, branch *${{ github.event.pull_request.base.ref }}*. Changes tested successfully. <@U01H1SLSPA8> or <@UNDRUL1EU> please, review and merge." | |
} | |
} | |
] | |
} | |
env: | |
SLACK_WEBHOOK_URL: ${{ secrets.SLACK_PR_WEBHOOK }} | |
SLACK_WEBHOOK_TYPE: INCOMING_WEBHOOK |