forked from getsentry/snuba
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathcloudbuild.yaml
87 lines (87 loc) · 2.91 KB
/
cloudbuild.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
steps:
- name: 'gcr.io/cloud-builders/docker'
entrypoint: 'bash'
args: [
'-c',
'docker pull us.gcr.io/$PROJECT_ID/$REPO_NAME:latest || true',
]
- name: 'gcr.io/cloud-builders/docker'
args: [
'build',
'-t', 'us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA',
'--build-arg', 'SNUBA_VERSION_SHA=$COMMIT_SHA',
'--cache-from', 'us.gcr.io/$PROJECT_ID/$REPO_NAME:latest',
'.'
]
# Snuba tests
- name: 'gcr.io/$PROJECT_ID/docker-compose'
env:
- 'SNUBA_IMAGE=us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA'
args:
- '-f'
- 'docker-compose.gcb.yml'
- run
- '--rm'
- snuba-test
# Clean up after tests
- name: 'gcr.io/$PROJECT_ID/docker-compose'
env:
- 'SNUBA_IMAGE=us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA'
args:
- '-f'
- 'docker-compose.gcb.yml'
- down
- '--rmi'
- 'local'
- '-v'
- '--remove-orphans'
# On-premise Integration tests
- name: 'gcr.io/$PROJECT_ID/docker-compose'
entrypoint: 'bash'
env:
- 'SNUBA_IMAGE=us.gcr.io/$PROJECT_ID/snuba:$COMMIT_SHA'
- 'SENTRY_TEST_HOST=http://nginx'
- 'CI=1'
args:
- '-e'
- '-c'
- |
mkdir onpremise && cd onpremise
curl -L "https://github.com/getsentry/onpremise/archive/master.tar.gz" | tar xzf - --strip-components=1
# The following trick is from https://stackoverflow.com/a/52400857/90297 with great gratuity
echo '{"version": "3.4", "networks":{"default":{"external":{"name":"cloudbuild"}}}}' > docker-compose.override.yml
./install.sh
./test.sh || docker-compose logs nginx web relay
timeout: 300s
- name: 'gcr.io/cloud-builders/docker'
secretEnv: ['DOCKER_PASSWORD']
entrypoint: 'bash'
args:
- '-e'
- '-c'
- |
# Only tag :latest and push to Docker Hub from master
[ "$BRANCH_NAME" != "master" ] && exit 0
docker tag us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA us.gcr.io/$PROJECT_ID/$REPO_NAME:latest
docker push us.gcr.io/$PROJECT_ID/$REPO_NAME:latest
echo "$$DOCKER_PASSWORD" | docker login --username=sentrybuilder --password-stdin
docker tag us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA getsentry/snuba:$COMMIT_SHA
docker push getsentry/snuba:$COMMIT_SHA
docker tag us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA getsentry/snuba:latest
docker push getsentry/snuba:latest
images: [
'us.gcr.io/$PROJECT_ID/$REPO_NAME:$COMMIT_SHA',
]
timeout: 3600s
options:
# Bigger machines do everything quite faster (especially on-prem integration tests)
machineType: 'N1_HIGHCPU_8'
secrets:
- kmsKeyName: projects/sentryio/locations/global/keyRings/service-credentials/cryptoKeys/cloudbuild
secretEnv:
# This is a personal access token for the sentrybuilder account, encrypted using the
# short guide at http://bit.ly/2Pg6uw9
DOCKER_PASSWORD: |
CiQAE8gN7y3OMxn+a1kofmK4Bi8jQZtdRFj2lYYwaZHVeIIBUzMSTQA9tvn8XCv2vqj6u8CHoeSP
TVW9pLvSCorKoeNtOp0eb+6V1yNJW/+JC07DNO1KLbTbodbuza6jKJHU5xeAJ4kGQI78UY5Vu1Gp
QcMK