Some checks failed
eCommerce-backend/pipeline/head There was a failure building this commit
83 lines
3.6 KiB
Groovy
83 lines
3.6 KiB
Groovy
pipeline {
|
|
agent any
|
|
|
|
environment {
|
|
REGISTRY = "192.168.108.200:80"
|
|
APP_NAME = "ecommerce-app"
|
|
IMAGE_NAME = "ecommerce-backend"
|
|
IMAGE_TAG = "${REGISTRY}/library/${IMAGE_NAME}:${env.BRANCH_NAME}-${env.BUILD_NUMBER}"
|
|
NAMESPACE = "ecommerce"
|
|
CONTAINERD_ADDR = "/run/containerd-pod/containerd.sock"
|
|
}
|
|
|
|
stages {
|
|
stage('Initialize Agent Tools') {
|
|
steps {
|
|
script {
|
|
sh """
|
|
# 1. Install BuildKit if missing
|
|
if ! command -v buildkitd >/dev/null; then
|
|
curl -L https://github.com/moby/buildkit/releases/download/v0.12.5/buildkit-v0.12.5.linux-amd64.tar.gz | tar -xz -C /usr/local/bin/ --strip-components=1
|
|
ln -sf /usr/local/bin/buildctl /usr/bin/buildctl
|
|
fi
|
|
|
|
# 2. Install kubectl if missing (The cause of error 127)
|
|
if ! command -v kubectl >/dev/null; then
|
|
echo "Installing kubectl..."
|
|
curl -LO "https://dl.k8s.io/release/\$(curl -L -s https://dl.k8s.io/release/stable.txt)/bin/linux/amd64/kubectl"
|
|
chmod +x kubectl
|
|
mv kubectl /usr/local/bin/
|
|
fi
|
|
|
|
# 3. Start BuildKit
|
|
mkdir -p /run/buildkit /run/buildkit-default
|
|
export JENKINS_NODE_COOKIE=dontKillMe
|
|
if ! pgrep buildkitd > /dev/null; then
|
|
nohup buildkitd --addr unix:///run/buildkit/buildkitd.sock --addr unix:///run/buildkit-default/buildkitd.sock > /tmp/buildkitd.log 2>&1 &
|
|
sleep 10
|
|
fi
|
|
"""
|
|
}
|
|
}
|
|
}
|
|
|
|
stage('Build & Push') {
|
|
steps {
|
|
script {
|
|
sh """
|
|
export BUILDKIT_HOST=unix:///run/buildkit/buildkitd.sock
|
|
nerdctl --address ${CONTAINERD_ADDR} build --insecure-registry -t ${IMAGE_TAG} .
|
|
"""
|
|
|
|
withCredentials([usernamePassword(credentialsId: 'harbor-creds', passwordVariable: 'PASS', usernameVariable: 'USER')]) {
|
|
sh "echo '${PASS}' | nerdctl --address ${CONTAINERD_ADDR} login ${REGISTRY} -u ${USER} --password-stdin --insecure-registry"
|
|
sh "nerdctl --address ${CONTAINERD_ADDR} push ${IMAGE_TAG} --insecure-registry"
|
|
}
|
|
}
|
|
}
|
|
}
|
|
|
|
stage('Deploy to K8s') {
|
|
steps {
|
|
script {
|
|
withCredentials([file(credentialsId: 'k8s-config', variable: 'KUBECONFIG')]) {
|
|
// 1. Change imagePullPolicy to 'Always'
|
|
// 2. Ensure imagePullSecrets is added so K8s can login to Harbor
|
|
sh """
|
|
kubectl --kubeconfig=${KUBECONFIG} patch deployment ${APP_NAME} -n ${NAMESPACE} --patch \
|
|
'{"spec": {"template": {"spec": {
|
|
"imagePullSecrets": [{"name": "harbor-pull-secret"}],
|
|
"containers": [{
|
|
"name": "${APP_NAME}",
|
|
"image": "${IMAGE_TAG}",
|
|
"imagePullPolicy": "Always"
|
|
}]
|
|
}}}}'
|
|
"""
|
|
sh "kubectl --kubeconfig=${KUBECONFIG} rollout status deployment/${APP_NAME} -n ${NAMESPACE}"
|
|
}
|
|
}
|
|
}
|
|
}
|
|
}
|
|
} |