create release #29
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
name: create release | |
on: | |
workflow_dispatch: | |
inputs: | |
name: | |
description: 'Release name ( e.g. "2.1.3" )' | |
default: "" | |
required: true | |
latest_release: | |
description: 'Latest release' | |
type: boolean | |
default: false | |
permissions: # used by build images steps | |
id-token: write # This is required for requesting the JWT token | |
contents: write # This is required for actions/checkout | |
jobs: | |
verify-head-status: | |
name: Verify HEAD | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout code | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
- name: Verify github actions | |
run: ./.github/scripts/verify-actions-status.sh ${{ github.ref_name }} | |
upgrade-images: | |
name: Upgrade main images | |
needs: verify-head-status | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout code | |
uses: actions/checkout@v4 | |
with: | |
token: ${{ secrets.BOT_TOKEN }} | |
fetch-depth: 0 | |
- name: Bump version | |
run: ./hack/replace_docker_registry_version.sh | |
env: | |
IMG_VERSION: ${{ github.event.inputs.name }} | |
PROJECT_ROOT: "." | |
- name: Bump sec-scanners-config.yaml based on values.yaml | |
run: ./.github/scripts/upgrade-sec-scanners-config.sh | |
env: | |
IMG_VERSION: ${{ github.event.inputs.name }} | |
- name: Commit&Push | |
run: | | |
git config --local user.email "[email protected]" | |
git config --local user.name "ottersbot" | |
git add . | |
git commit --allow-empty -m "upgrade dependencies" | |
git push origin ${{ github.ref_name }} | |
create-tag: | |
name: Create tag | |
needs: upgrade-images | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout code | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
ref: ${{ github.ref_name }} # Checkout to latest branch changes | |
- name: Create tag | |
run: | | |
git tag ${{ github.event.inputs.name }} | |
git push origin ${{ github.event.inputs.name }} | |
builds: | |
needs: create-tag | |
uses: ./.github/workflows/_build.yaml | |
with: | |
tag: "${{ github.event.inputs.name }}" | |
create-draft: | |
name: Create draft release | |
needs: [builds] | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout code | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
ref: ${{ github.ref_name }} # checkout to latest branch changes ( by default this action checkouts to the SHA that triggers action ) | |
- name: Create changelog | |
env: | |
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
PULL_BASE_REF: ${{ github.event.inputs.name }} | |
run: ./.github/scripts/create-changelog.sh ${{ github.event.inputs.name }} | |
- name: Create draft release | |
id: create-draft | |
env: | |
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
run: | | |
RELEASE_ID=$(./.github/scripts/create-draft-release.sh ${{ github.event.inputs.name }}) | |
echo "release_id=$RELEASE_ID" >> $GITHUB_OUTPUT | |
- name: Create release assets | |
id: create-assets | |
env: | |
IMG: "europe-docker.pkg.dev/kyma-project/prod/dockerregistry-operator:${{ github.event.inputs.name }}" | |
PULL_BASE_REF: ${{ github.event.inputs.name }} | |
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
RELEASE_ID: ${{ steps.create-draft.outputs.release_id }} | |
run: ./.github/scripts/release.sh | |
outputs: | |
release_id: ${{ steps.create-draft.outputs.release_id }} | |
integrations: | |
needs: create-draft | |
secrets: inherit | |
uses: ./.github/workflows/_integration-tests.yaml | |
with: | |
image: europe-docker.pkg.dev/kyma-project/prod/dockerregistry-operator:${{ github.event.inputs.name }} | |
trigger_btp: true | |
publish-release: | |
name: Publish release | |
needs: [integrations, create-draft] | |
runs-on: ubuntu-latest | |
steps: | |
- name: Checkout code | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
ref: ${{ github.event.inputs.name }} # checkout to latest branch changes ( by default this action checkouts to the SHA that triggers action ) | |
- name: Publish release | |
env: | |
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
run: ./.github/scripts/publish-release.sh ${{ needs.create-draft.outputs.release_id }} ${{ github.event.inputs.latest_release }} |