Updates the image building workflow to improve reliability and readability.
Changes:
- Replaced the complex `moby/buildkit` container-in-container execution with standard Docker build and push steps.
- Added explicit checkout, login, and build steps to the job matrix.
- Improved the change detection logic:
- Added input sanitization (whitespace trimming) for manually triggered builds.
- Added comments explaining the directory diff logic.
- Updated job titles and comments to English for consistency (e.g., "Detect modified images" instead of "Détection des images modifiées").
- Added `fail-fast: false` to the matrix strategy so one failed build doesn't stop others.
119 lines
4.0 KiB
YAML
119 lines
4.0 KiB
YAML
name: Build and Push Docker Images
|
|
|
|
on:
|
|
push:
|
|
branches: [main]
|
|
paths:
|
|
- 'images/**'
|
|
workflow_dispatch:
|
|
inputs:
|
|
image:
|
|
description: 'Image to build (e.g., terraform-ci)'
|
|
required: false
|
|
|
|
env:
|
|
REGISTRY: gitea.arnodo.fr
|
|
|
|
jobs:
|
|
# ============================================================================
|
|
# Job 1 : Detect modified images
|
|
# ============================================================================
|
|
detect-changes:
|
|
runs-on: docker
|
|
container:
|
|
image: alpine:3.20
|
|
outputs:
|
|
matrix: ${{ steps.changes.outputs.matrix }}
|
|
has_changes: ${{ steps.changes.outputs.has_changes }}
|
|
steps:
|
|
- name: Install dependencies
|
|
run: apk add --no-cache git jq
|
|
|
|
- name: Checkout repository
|
|
run: |
|
|
git clone --depth 2 https://gitea.arnodo.fr/${{ gitea.repository }}.git .
|
|
git checkout ${{ gitea.sha }}
|
|
|
|
- name: Detect changed images
|
|
id: changes
|
|
run: |
|
|
if [ -n "${{ inputs.image }}" ]; then
|
|
# Clean input to remove potential whitespace
|
|
IMAGE=$(echo "${{ inputs.image }}" | xargs)
|
|
if [ -n "$IMAGE" ]; then
|
|
echo "matrix=[\"$IMAGE\"]" >> $GITHUB_OUTPUT
|
|
echo "has_changes=true" >> $GITHUB_OUTPUT
|
|
else
|
|
echo "has_changes=false" >> $GITHUB_OUTPUT
|
|
echo "matrix=[]" >> $GITHUB_OUTPUT
|
|
fi
|
|
else
|
|
# Find changed directories in images/
|
|
# We look for changes in images/ subdirectory between the previous commit and current commit
|
|
CHANGED=$(git diff --name-only HEAD~1 HEAD -- images/ 2>/dev/null | cut -d'/' -f2 | sort -u | grep -v '^$' || true)
|
|
|
|
if [ -z "$CHANGED" ]; then
|
|
echo "has_changes=false" >> $GITHUB_OUTPUT
|
|
echo "matrix=[]" >> $GITHUB_OUTPUT
|
|
else
|
|
# Convert to JSON array, filtering out empty strings
|
|
JSON=$(echo "$CHANGED" | jq -R -s -c 'split("\n") | map(select(length > 0))')
|
|
echo "matrix=$JSON" >> $GITHUB_OUTPUT
|
|
echo "has_changes=true" >> $GITHUB_OUTPUT
|
|
fi
|
|
fi
|
|
|
|
- name: Show detected changes
|
|
run: |
|
|
echo "Matrix: ${{ steps.changes.outputs.matrix }}"
|
|
echo "Has changes: ${{ steps.changes.outputs.has_changes }}"
|
|
|
|
# ============================================================================
|
|
# Job 2 : Build and Push (Standard Docker)
|
|
# ============================================================================
|
|
build:
|
|
needs: detect-changes
|
|
if: needs.detect-changes.outputs.has_changes == 'true'
|
|
runs-on: docker
|
|
container:
|
|
image: docker:cli
|
|
strategy:
|
|
matrix:
|
|
image: ${{ fromJson(needs.detect-changes.outputs.matrix) }}
|
|
fail-fast: false
|
|
steps:
|
|
- name: Install dependencies
|
|
run: apk add --no-cache git
|
|
|
|
- name: Checkout repository
|
|
run: |
|
|
git clone --depth 2 https://gitea.arnodo.fr/${{ gitea.repository }}.git .
|
|
git checkout ${{ gitea.sha }}
|
|
|
|
- name: Login to Registry
|
|
run: |
|
|
echo "${{ secrets.REGISTRY_TOKEN }}" | docker login ${{ env.REGISTRY }} -u ${{ gitea.actor }} --password-stdin
|
|
|
|
- name: Build and Push
|
|
env:
|
|
IMAGE_NAME: ${{ env.REGISTRY }}/damien/${{ matrix.image }}
|
|
IMAGE_PATH: images/${{ matrix.image }}
|
|
run: |
|
|
echo "Building $IMAGE_NAME:latest from $IMAGE_PATH ..."
|
|
|
|
if [ ! -d "$IMAGE_PATH" ]; then
|
|
echo "Error: Directory $IMAGE_PATH does not exist."
|
|
exit 1
|
|
fi
|
|
|
|
if [ ! -f "$IMAGE_PATH/Dockerfile" ]; then
|
|
echo "Error: Dockerfile not found in $IMAGE_PATH."
|
|
exit 1
|
|
fi
|
|
|
|
# Use standard docker build
|
|
docker build -t "$IMAGE_NAME:latest" "$IMAGE_PATH"
|
|
docker push "$IMAGE_NAME:latest"
|
|
|
|
echo "✅ Pushed $IMAGE_NAME:latest"
|