-
Notifications
You must be signed in to change notification settings - Fork 12
/
Jenkinsfile
88 lines (75 loc) · 1.76 KB
/
Jenkinsfile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
#!/usr/bin/env groovy
pipeline {
agent { label 'executor-v2' }
options {
timestamps()
buildDiscarder(logRotator(numToKeepStr: '30'))
}
triggers {
cron(getDailyCronString())
}
stages {
stage('Validate') {
parallel {
stage('Changelog') {
steps { sh 'docker run --rm --volume "${PWD}/CHANGELOG.md":/CHANGELOG.md cyberark/parse-a-changelog' }
}
}
}
stage('Image Build') {
steps {
sh './bin/build'
}
}
stage('Test Sidecar Injector'){
steps {
sh 'summon -f ./tests/secrets.yml ./run-tests'
}
}
stage('Scan Image') {
parallel {
stage("Scan image for fixable issues") {
steps {
scanAndReport("sidecar-injector:latest", "HIGH", false)
}
}
stage("Scan image for all issues") {
steps {
scanAndReport("sidecar-injector:latest", "NONE", true)
}
}
}
}
stage('Publish Edge Sidecar Injector Images') {
when {
branch 'main'
}
steps {
sh './bin/publish edge'
}
}
stage('Release') {
// Only run this stage when triggered by a tag
when { tag "v*" }
parallel {
stage('Publish Tagged Sidecar Injector Images') {
steps {
// The tag trigger sets TAG_NAME as an environment variable
sh './bin/publish'
}
}
stage('Create draft release') {
steps {
sh "summon --yaml 'GITHUB_TOKEN: !var github/users/conjur-jenkins/api-token' ./bin/build_release"
archiveArtifacts 'dist/goreleaser/'
}
}
}
}
}
post {
always {
cleanupAndNotify(currentBuild.currentResult)
}
}
}