-
Notifications
You must be signed in to change notification settings - Fork 14
139 lines (128 loc) · 3.22 KB
/
ci.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
---
name: CI
on:
pull_request:
types: [opened, reopened, synchronize]
permissions:
contents: read
jobs:
ci:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Setup Go
uses: actions/setup-go@v5
with:
go-version: "1.22"
- name: Unit Tests
run: make test
cli:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Setup Go
uses: actions/setup-go@v5
with:
go-version: "1.22"
- name: Check CLI
run: make tnctl
binaries:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Setup Go
uses: actions/setup-go@v5
with:
go-version: "1.22"
- name: Check Binaries
run: |
make preload
make source
make step
make tnctl
dependencies:
runs-on: ubuntu-latest
if: github.event_name == 'pull_request'
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Dependency Review
uses: actions/dependency-review-action@v4
linting:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Setup Go
uses: actions/setup-go@v5
with:
go-version: "1.22"
- name: Linting
run: |
make golangci-lint
formating:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Setup Go
uses: actions/setup-go@v5
with:
go-version: "1.22"
- name: Format
run: |
make gofmt
make shfmt
helm:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
with:
fetch-depth: 0
- name: Set up Helm
uses: azure/setup-helm@v4
with:
version: v3.8.1
- uses: actions/setup-python@v5
with:
python-version: 3.7
- name: Set up chart-testing
uses: helm/[email protected]
- name: Run chart-testing (lint)
if: github.ref == 'refs/heads/master'
run: ct lint
- name: Run chart-testing (lint)
if: github.ref != 'refs/heads/master'
run: ct lint --check-version-increment=false
controller-image:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Build Image
run: VERSION=${{ github.sha }} make controller-image
- name: Verify Image
uses: aquasecurity/trivy-action@master
with:
image-ref: ghcr.io/appvia/terranetes-controller:${{ github.sha }}
ignore-unfixed: true
severity: "CRITICAL"
exit-code: 1
executor-image:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Build Image
run: VERSION=${{ github.sha }} make executor-image
- name: Verify Image
uses: aquasecurity/trivy-action@master
with:
image-ref: ghcr.io/appvia/terranetes-executor:${{ github.sha }}
ignore-unfixed: true
severity: "CRITICAL"
exit-code: 1