110 lines
4.3 KiB
Plaintext
110 lines
4.3 KiB
Plaintext
pipeline {
|
||
agent none
|
||
|
||
options {
|
||
disableConcurrentBuilds()
|
||
timestamps()
|
||
}
|
||
|
||
parameters {
|
||
string(name: 'SOURCE_NODE_NAME', defaultValue: '', description: '上游构建节点名')
|
||
string(name: 'SOURCE_WORKSPACE_ROOT', defaultValue: '', description: '上游源码根目录')
|
||
string(name: 'BUILD_VERSION', defaultValue: '', description: '待部署版本号')
|
||
string(name: 'DEPLOY_DIRECTORY', defaultValue: '/var/lib/jenkins/deploy/Genarrative', description: '固定部署目录')
|
||
booleanParam(name: 'CLEAR_DATABASE', defaultValue: false, description: '部署时是否清空 SpacetimeDB 数据后再发布 wasm')
|
||
booleanParam(name: 'RUN_DEPLOY_HOOKS_WITH_SUDO', defaultValue: true, description: 'start.sh / stop.sh 是否通过 sudo -n 执行')
|
||
string(name: 'EXPECTED_UPSTREAM_JOB', defaultValue: '', description: '允许触发本作业的上游作业名')
|
||
}
|
||
|
||
stages {
|
||
stage('校验触发来源') {
|
||
agent {
|
||
label 'built-in'
|
||
}
|
||
|
||
steps {
|
||
script {
|
||
// 部署流水线允许手动启动;如存在上游触发原因,则继续执行上游作业名门禁。
|
||
// Pipeline 的 build 步骤通常会把下游触发原因记录成 BuildUpstreamCause,
|
||
// 直接只查经典 UpstreamCause 会把真实的上游触发误判成“人工执行”。
|
||
def pipelineUpstreamCauses = currentBuild.getBuildCauses('org.jenkinsci.plugins.workflow.support.steps.build.BuildUpstreamCause')
|
||
def classicUpstreamCauses = currentBuild.getBuildCauses('hudson.model.Cause$UpstreamCause')
|
||
def upstreamCause = null
|
||
|
||
if (pipelineUpstreamCauses && !pipelineUpstreamCauses.isEmpty()) {
|
||
upstreamCause = pipelineUpstreamCauses[0]
|
||
} else if (classicUpstreamCauses && !classicUpstreamCauses.isEmpty()) {
|
||
upstreamCause = classicUpstreamCauses[0]
|
||
}
|
||
|
||
def actualUpstreamJob = upstreamCause?.upstreamProject ?: ''
|
||
def expectedUpstreamJob = params.EXPECTED_UPSTREAM_JOB?.trim()
|
||
def allowedUpstreamJob = env.GENARRATIVE_ALLOWED_UPSTREAM_JOB?.trim()
|
||
|
||
if (!params.BUILD_VERSION?.trim()) {
|
||
error('BUILD_VERSION 不能为空。')
|
||
}
|
||
|
||
if (!params.SOURCE_WORKSPACE_ROOT?.trim()) {
|
||
error('SOURCE_WORKSPACE_ROOT 不能为空。')
|
||
}
|
||
|
||
if (!params.SOURCE_NODE_NAME?.trim()) {
|
||
error('SOURCE_NODE_NAME 不能为空。')
|
||
}
|
||
|
||
if (upstreamCause && !actualUpstreamJob?.trim()) {
|
||
error('无法从上游触发原因中解析作业名,请检查 Jenkins Pipeline Build Step 插件版本与触发链。')
|
||
}
|
||
|
||
if (actualUpstreamJob && expectedUpstreamJob && actualUpstreamJob != expectedUpstreamJob) {
|
||
error("上游作业校验失败,期望 ${expectedUpstreamJob},实际 ${actualUpstreamJob}")
|
||
}
|
||
|
||
if (actualUpstreamJob && allowedUpstreamJob && actualUpstreamJob != allowedUpstreamJob) {
|
||
error("环境门禁校验失败,仅允许 ${allowedUpstreamJob} 触发,实际 ${actualUpstreamJob}")
|
||
}
|
||
|
||
env.UPSTREAM_JOB_NAME = actualUpstreamJob ?: 'MANUAL'
|
||
}
|
||
}
|
||
}
|
||
|
||
stage('部署指定版本') {
|
||
agent {
|
||
label "${params.SOURCE_NODE_NAME}"
|
||
}
|
||
|
||
steps {
|
||
dir("${params.SOURCE_WORKSPACE_ROOT}") {
|
||
sh """
|
||
bash -lc '
|
||
set -euo pipefail
|
||
test -d "build/${params.BUILD_VERSION}"
|
||
chmod +x scripts/jenkins-deploy-release.sh
|
||
deploy_args=(
|
||
--source-dir "build/${params.BUILD_VERSION}"
|
||
--deploy-dir "${params.DEPLOY_DIRECTORY}"
|
||
)
|
||
if [[ "${params.CLEAR_DATABASE}" == "true" ]]; then
|
||
deploy_args+=(--clear-database)
|
||
fi
|
||
if [[ "${params.RUN_DEPLOY_HOOKS_WITH_SUDO}" == "true" ]]; then
|
||
deploy_args+=(--hook-with-sudo)
|
||
fi
|
||
# 只部署上游已构建好的版本目录,避免部署阶段再次构建产生漂移。
|
||
./scripts/jenkins-deploy-release.sh "\${deploy_args[@]}"
|
||
'
|
||
"""
|
||
}
|
||
}
|
||
}
|
||
}
|
||
|
||
post {
|
||
success {
|
||
echo "部署完成,版本号: ${params.BUILD_VERSION},上游作业: ${env.UPSTREAM_JOB_NAME}"
|
||
}
|
||
}
|
||
}
|