Compare commits

..

9 Commits

Author SHA1 Message Date
f3571105e8 chore: Test API call method
All checks were successful
build-image / Semantic Release (Dry-run) (push) Successful in 2m0s
build-image / Build image (push) Successful in 15m40s
2025-09-05 07:29:17 +10:00
4312ac55fe build: Rebase act-runner container image
All checks were successful
build-image / Semantic Release (Dry-run) (push) Successful in 50s
build-image / Build image (push) Successful in 26m13s
2025-08-20 10:05:01 +10:00
1d9e7c912a Update cloud-init/user-data.template
All checks were successful
build-image / Semantic Release (Dry-run) (push) Successful in 2m41s
build-image / Build image (push) Successful in 20m30s
2025-08-07 07:50:49 +00:00
f04226c147 build: Upload image artifact to repository/hypervisor
All checks were successful
build-image / Semantic Release (Dry-run) (push) Successful in 38s
build-image / Build image (push) Successful in 16m33s
2025-07-30 21:07:19 +10:00
c1dc3f3839 feat: Create RKE2 node template foruse on Harvester
All checks were successful
build-image / Semantic Release (Dry-run) (push) Successful in 30s
build-image / Build image (push) Successful in 9m5s
2025-07-29 15:46:30 +10:00
532ef878de build: Assert successful completion of cloud-init
All checks were successful
build-image / Build image (push) Successful in 9m20s
2025-07-29 13:20:41 +10:00
c2f4b83102 build: Add image size increase/decrease logic
All checks were successful
build-image / Build image (push) Successful in 8m10s
2025-07-28 21:52:12 +10:00
74483e57f8 build: Start virtual machine w/ cloud-init configuration
All checks were successful
build-image / Build image (push) Successful in 6m36s
2025-07-28 20:37:38 +10:00
2f3c6b3c9c build: Switch to envsubst for templating 2025-07-25 15:49:07 +10:00
2 changed files with 128 additions and 53 deletions

View File

@@ -2,72 +2,136 @@ name: build-image
on: [push]
jobs:
# semrel_dryrun:
# name: Semantic Release (Dry-run)
# runs-on: ubuntu-latest
# outputs:
# version: ${{ steps.sem_rel.outputs.version }}
# steps:
# - name: Check out repository code
# uses: actions/checkout@v3
# - name: Set up Node
# uses: actions/setup-node@v3
# with:
# node-version: 20
# - name: Install dependencies
# run: |
# npm install \
# semantic-release \
# @semantic-release/commit-analyzer \
# @semantic-release/exec
# - name: Semantic Release (dry-run)
# id: sem_rel
# run: |
# npx semantic-release \
# --package @semantic-release/exec \
# --package semantic-release \
# --branches ${{ gitea.refname }} \
# --tag-format 'v${version}' \
# --dry-run \
# --plugins @semantic-release/commit-analyzer,@semantic-release/exec \
# --analyzeCommits @semantic-release/commit-analyzer \
# --verifyRelease @semantic-release/exec \
# --verifyReleaseCmd 'echo "version=${nextRelease.version}" >> $GITHUB_OUTPUT'
# env:
# GIT_CREDENTIALS: ${{ secrets.GIT_USERNAME }}:${{ secrets.GIT_APIKEY }}
# - name: Assert semantic release output
# run: |
# [[ -z "${{ steps.sem_rel.outputs.version }}" ]] && {
# echo 'No release tag - exiting'; exit 1
# } || {
# echo 'Release tag set correctly: ${{ steps.sem_rel.outputs.version }}'; exit 0
# }
semrel_dryrun:
name: Semantic Release (Dry-run)
runs-on: ubuntu-latest
outputs:
version: ${{ steps.sem_rel.outputs.version }}
steps:
- name: Check out repository code
uses: actions/checkout@v3
- name: Install dependencies
run: |
npm install \
semantic-release \
@semantic-release/commit-analyzer \
@semantic-release/exec
- name: Semantic Release (dry-run)
id: sem_rel
run: |
npx semantic-release \
--package @semantic-release/exec \
--package semantic-release \
--branches ${{ gitea.refname }} \
--tag-format 'v${version}' \
--dry-run \
--plugins @semantic-release/commit-analyzer,@semantic-release/exec \
--analyzeCommits @semantic-release/commit-analyzer \
--verifyRelease @semantic-release/exec \
--verifyReleaseCmd 'echo "version=${nextRelease.version}" >> $GITHUB_OUTPUT'
- name: Assert semantic release output
run: |
[[ -z "${{ steps.sem_rel.outputs.version }}" ]] && {
echo 'No release tag - exiting'; exit 1
} || {
echo 'Release tag set correctly: ${{ steps.sem_rel.outputs.version }}'; exit 0
}
build_image:
name: Build image
container: code.spamasaurus.com/djpbessems/act-runner-extended:1.0.0-cth20250815
runs-on: ubuntu-latest
# needs: semrel_dryrun
needs: semrel_dryrun
steps:
- name: Check out repository code
uses: actions/checkout@v4
- name: Generate seed ISO
shell: bash
- name: Set up build container
run: |
apt-get update && \
apt-get install -y \
genisoimage
linux-image-generic \
linux-modules-extra-$(uname -r) \
linux-headers-generic
sed 's|__ROOT_HASHED_PASSWORD__|${{ secrets.ROOT_HASHED_PASSWORD }}|g' \
cloud-init/user-data.template > cloud-init/user-data
sed 's|__PUBLIC_SSHKEY__|${{ secrets.PUBLIC_SSHKEY }}|g' \
cloud-init/user-data.template > cloud-init/user-data
mkdir -p \
$PWD/ubuntu-vm \
/mnt/vmimage
- name: Retrieve source Ubuntu image
run: |
curl -L \
https://sn.itch.fyi/Repository/iso/Canonical/Ubuntu%20Server%2024.04/ubuntu-24.04-server-cloudimg-amd64.img \
-o ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img \
-u ${{ secrets.REPO_USERNAME }}:${{ secrets.REPO_PASSWORD }}
qemu-img resize ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img +5G
- name: Generate seed ISO
run: |
envsubst < cloud-init/user-data.template > cloud-init/user-data
genisoimage \
-output seed.iso \
-output ubuntu-vm/seed.iso \
-volid cidata \
-joliet \
-rock \
cloud-init/meta-data cloud-init/user-data
env:
ROOT_HASHED_PASSWORD: ${{ secrets.VM_ROOT_HASHED_PASSWORD }}
PUBLIC_SSHKEY: ${{ secrets.VM_PUBLIC_SSHKEY }}
- name: Provision template virtual machine
run: |
[ -e /dev/kvm ] && kvm_flag="-enable-kvm" || kvm_flag=""
qemu-system-x86_64 \
$kvm_flag \
-m 3072 \
-smp 2 \
-cpu host \
-drive file=ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img,if=virtio,format=qcow2 \
-drive file=ubuntu-vm/seed.iso,format=raw,media=cdrom \
-nographic \
-net nic \
-net user \
-device virtio-serial-pci,id=virtio-serial0 \
-chardev socket,path=qga.sock,server=on,wait=off,id=qga0 \
-device virtserialport,chardev=qga0,name=org.qemu.guest_agent.0
if ! guestfish --ro -a ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img -i stat /var/log/template-generation-success; then
echo "VM provisioning encountered errors - exiting"
exit 1
fi
- name: Compress image file
run: |
virt-sparsify --compress \
ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img \
ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}-compacted.img
- name: Upload image file
run: |
REPO_TOKEN=$(curl -fsSL -X POST \
http://filebrowser.filebrowser.svc.cluster.local:80/api/login \
-H "Content-Type: application/json" \
-d '{"username": "admin", "password": "${{ secrets.REPO_PASSWORD }}"}' \
)
curl -fsSL -X POST \
http://filebrowser.filebrowser.svc.cluster.local:80/api/resources/rel/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img?override=true \
--header "X-Auth: $REPO_TOKEN" \
--upload-file "ubuntu-vm/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}-compacted.img"
curl -ksS -X PUT "https://lab-hv-vip.bessems.lan/v1/harvesterhci.io.virtualmachineimages" \
-H "Authorization: Bearer ${{ secrets.HV_TOKEN }}" \
-H "Content-Type: application/json" \
-d @- <<EOF
{
"type": "harvesterhci.io.virtualmachineimage",
"metadata": {
"namespace": "default"
},
"spec": {
"displayName": "ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}",
"sourceType": "download",
"url": "https://${{ secrets.REPO_USERNAME }}:${{ secrets.REPO_PASSWORD }}@sn.itch.fyi/Repository/rel/ubuntu-24.04.2-rke2-v${{ needs.semrel_dryrun.outputs.version }}.img"
}
}
EOF
# semrel:
# name: Semantic Release

View File

@@ -12,17 +12,28 @@ packages:
runcmd:
- apt-get install -y linux-modules-extra-$(uname -r)
- sed -i '/"${distro_id}:${distro_codename}-updates"/s|^//||' /etc/apt/apt.conf.d/50unattended-upgrades
- sysctl -w net.ipv6.conf.all.disable_ipv6=1
- systemctl enable --now qemu-guest-agent.service
- cloud-init clean --logs
- truncate -s 0 /etc/hostname /etc/machine-id
- rm -f /etc/ssh/ssh_host_* /var/lib/dbus/machine-id
- ln -s /etc/machine-id /var/lib/dbus/machine-id
- echo "TEMPLATE_GENERATION_SUCCESS" | tee /var/log/template-generation-success
- sync
disable_root: false
users:
- name: root
hashed_passwd: __ROOT_HASHED_PASSWORD__
hashed_passwd: ${ROOT_HASHED_PASSWORD}
lock_passwd: false
shell: /bin/bash
ssh_authorized_keys:
- __PUBLIC_SSHKEY__
- ${PUBLIC_SSHKEY}
ssh_authorized_keys:
- >
__PUBLIC_SSHKEY__
- ${PUBLIC_SSHKEY}
power_state:
delay: now
mode: poweroff
condition: true