Skip to content
Snippets Groups Projects
Jenkinsfile 28 KiB
Newer Older
  • Learn to ignore specific revisions
  • OZGCloud's avatar
    OZGCloud committed
    pipeline {
    
    OZGCloud's avatar
    OZGCloud committed
        agent {
            node {
    
    OZGCloud's avatar
    OZGCloud committed
                label 'jenkins-build-agent-nodejs-16'
    
    OZGCloud's avatar
    OZGCloud committed
            }
    
    OZGCloud's avatar
    OZGCloud committed
        }
    
    
        environment {
    
            BLUE_OCEAN_URL = "https://jenkins.ozg-sh.de/job/goofy/job/${env.BRANCH_NAME}/${env.BUILD_NUMBER}/"
    
            RELEASE_REGEX = /\d+.\d+.\d+/
            SNAPSHOT_REGEX = /\d+.\d+.\d+-SNAPSHOT/
    
            BUNDESLAND = "by"
    
    OZGCloud's avatar
    OZGCloud committed
            SSO_URL = "sso.dev.by.kop-sys.de"
            CLUSTER_BASE_URL = "dev.by.kop-cloud.de"
    
    OZGCloud's avatar
    OZGCloud committed
            FAILED_STAGE = ""
            IMAGE_TAG = ""
            VERSION = ""
            E2E_FAILED = ""
    
    OZGCloud's avatar
    OZGCloud committed
            HELM_CHART_VERSION = ""
    
    OZGCloud's avatar
    OZGCloud committed
        options {
            timeout(time: 1, unit: 'HOURS')
            disableConcurrentBuilds()
    
    OZGCloud's avatar
    OZGCloud committed
            buildDiscarder(logRotator(numToKeepStr: '5'))
    
    OZGCloud's avatar
    OZGCloud committed
        }
    
        stages {
    
    OZGCloud's avatar
    OZGCloud committed
            stage('Check Version') {
                steps {
                    script {
                        FAILED_STAGE = env.STAGE_NAME
                        def rootPom = readMavenPom file: 'pom.xml'
                        VERSION = rootPom.version
    
                        def serverPom = readMavenPom file: 'goofy-server/pom.xml'
                        def serverVersion = serverPom.parent.version
    
                        def clientPom = readMavenPom file: 'goofy-client/pom.xml'
                        def clientVersion = clientPom.parent.version
    
                        if(env.BRANCH_NAME == 'release'){
                            if ( !(VERSION ==~ RELEASE_REGEX) || !(serverVersion ==~ RELEASE_REGEX) || !(clientVersion ==~ RELEASE_REGEX)) {
                                error("Keine Release Version für Branch ${env.BRANCH_NAME}.")
                            }
                        } else {
                            if ( !(VERSION ==~ SNAPSHOT_REGEX) || !(serverVersion ==~ SNAPSHOT_REGEX) || !(clientVersion ==~ SNAPSHOT_REGEX)) {
                                error("Keine Snapshot Version für Branch ${env.BRANCH_NAME}.")
                            }
                        }
    
    OZGCloud's avatar
    OZGCloud committed
                        if( !(VERSION == serverVersion && VERSION == clientVersion)){
    
                            error("Versionen sind nicht identisch")
    
    OZGCloud's avatar
    OZGCloud committed
                        }
                    }
                }
            }
            stage('Client') {
                steps {
    
    OZGCloud's avatar
    OZGCloud committed
                    script {
                        FAILED_STAGE=env.STAGE_NAME
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
                        sh 'npm --version'
                        dir('goofy-client') {
                            sh 'echo "registry=https://nexus.ozg-sh.de/repository/npm-proxy" >> ~/.npmrc'
    
    OZGCloud's avatar
    OZGCloud committed
                            sh 'echo "//nexus.ozg-sh.de/:_auth=amVua2luczpQaihzX0ZNNFU5ZC8=" >> ~/.npmrc'
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
    						sh 'npm cache verify'
                            sh 'npm install --legacy-peer-deps'
    
    OZGCloud's avatar
    OZGCloud committed
                            if (env.BRANCH_NAME == 'release') {
                                sh 'npm run ci-prodBuild'
                            }
                            else {
                                sh 'npm run ci-build'
                            }
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
                            sh 'npm run ci-test'
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
        					try {
    	                        if (env.BRANCH_NAME == 'master') {
    	                            withSonarQubeEnv('sonarqube-ozg-sh'){
    	                                sh 'npm run ci-sonar'
    
    OZGCloud's avatar
    OZGCloud committed
    	                            }
    
    OZGCloud's avatar
    OZGCloud committed
    	                        }
                            } catch (Exception e) {
                                unstable("SonarQube failed")
    
    OZGCloud's avatar
    OZGCloud committed
                            }
                        }
                    }
                }
    //            post {
    //                always{
    //                    junit testResults: 'goofy-client/test-report.xml', skipPublishingChecks: true
    //                }
    //            }
            }
            stage('Server') {
                steps {
                    script {
                        FAILED_STAGE=env.STAGE_NAME
    
                        IMAGE_TAG = generateImageTag()
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
                        configFileProvider([configFile(fileId: 'maven-settings', variable: 'MAVEN_SETTINGS')]) {
                            sh 'mvn --version'
                            sh "mvn -s $MAVEN_SETTINGS -pl -goofy-client clean install spring-boot:build-image -Dspring-boot.build-image.imageName=docker.ozg-sh.de/goofy:${IMAGE_TAG} -Dspring-boot.build-image.publish -Dmaven.wagon.http.retryHandler.count=3"
    
                           	try {
                                if (env.BRANCH_NAME == 'master') {
            	                    dir('goofy-server'){
                                        withSonarQubeEnv('sonarqube-ozg-sh'){
                                            sh 'mvn -s $MAVEN_SETTINGS sonar:sonar'
    
    OZGCloud's avatar
    OZGCloud committed
                                        }
    
    OZGCloud's avatar
    OZGCloud committed
                                    }
    	                        }
                            } catch (Exception e) {
                                unstable("SonarQube failed")
    
                post {
                    always{
                        junit testResults: '**/target/surefire-reports/*.xml', skipPublishingChecks: true
                    }
                }
    
    OZGCloud's avatar
    OZGCloud committed
            }
    
    OZGCloud's avatar
    OZGCloud committed
            stage('Init k8s') {
    
    OZGCloud's avatar
    OZGCloud committed
                        FAILED_STAGE = env.STAGE_NAME
    
    OZGCloud's avatar
    OZGCloud committed
                        E2E_FAILED = ""
    
                        configFileProvider([configFile(fileId: 'kubeconfig-dev-cluster', variable: 'KUBE_CONFIG')]) {
    
    OZGCloud's avatar
    OZGCloud committed
                            sh 'mkdir ~/.kube'
                            sh 'cp ${KUBE_CONFIG} ~/.kube/config'
                        }
    
    OZGCloud's avatar
    OZGCloud committed
                        sh 'helm version'
                    }
                }
            }
    
    OZGCloud's avatar
    OZGCloud committed
            stage('Deploy Maven Artifacts to Nexus') {
                when {
                    anyOf {
                        branch 'master'
                        branch 'release'
                    }
                }
                steps {
                    script {
                        FAILED_STAGE = env.STAGE_NAME
                    }
    
    OZGCloud's avatar
    OZGCloud committed
    
                    configFileProvider([configFile(fileId: 'maven-settings', variable: 'MAVEN_SETTINGS')]) {
                        sh 'mvn -s $MAVEN_SETTINGS -pl -goofy-client -DskipTests deploy'
    
            stage('Tag and Push Docker Image') {
    
    OZGCloud's avatar
    OZGCloud committed
                when {
                    anyOf {
                        branch 'master'
                        branch 'release'
                    }
                }
    
    OZGCloud's avatar
    OZGCloud committed
                steps {
                    script {
                        FAILED_STAGE = env.STAGE_NAME
    
    
                        if (env.BRANCH_NAME == 'master') {
                            tagAndPushDockerImage('snapshot-latest')
    
    OZGCloud's avatar
    OZGCloud committed
                        }
    
                        else if (env.BRANCH_NAME == 'release') {
                            tagAndPushDockerImage('latest')
    
            stage('Test, build and deploy Helm Chart') {
                steps {
    
    OZGCloud's avatar
    OZGCloud committed
                    script {
                        FAILED_GOOFY_STAGE=env.STAGE_NAME
                        HELM_CHART_VERSION = generateHelmChartVersion()
    
    OZGCloud's avatar
    OZGCloud committed
                        dir('src/main/helm') {
                            sh "helm lint -f test-values.yaml"
    
                            sh "helm unittest -f '../../test/helm/*.yaml' -v '../../test/unit-values.yaml' ."
    
    OZGCloud's avatar
    OZGCloud committed
                            sh "helm package --version=${HELM_CHART_VERSION} ."
    
    OZGCloud's avatar
    OZGCloud committed
                            deployHelmChart(HELM_CHART_VERSION)
    
    OZGCloud's avatar
    OZGCloud committed
                        }
    
            stage('Trigger Dev rollout') {
    
    OZGCloud's avatar
    OZGCloud committed
                when {
    
    OZGCloud's avatar
    OZGCloud committed
                }
                steps {
                    script {
    
                   	 	if(currentBuild.changeSets.size() > 0) {
    						FAILED_STAGE = env.STAGE_NAME
    
    	                    checkoutProvisioningRepo()
    
    	                    setNewGoofyProvisioningVersion('dev')
    
    	                    pushNewProvisioningVersion('dev')
    					}
    					else {
    					     sh 'echo "no code changes found"'
    					}
    
    OZGCloud's avatar
    OZGCloud committed
                stages {
    
    OZGCloud's avatar
    OZGCloud committed
                    stage('Install cypress') {
    
    OZGCloud's avatar
    OZGCloud committed
                                FAILED_STAGE = env.STAGE_NAME
                                dir('goofy-client') {
    
    OZGCloud's avatar
    OZGCloud committed
                                    sh "npm run cypress:install"
    
    OZGCloud's avatar
    OZGCloud committed
                                }
                            }
                        }
                    }
                    stage('Run E2E-Tests') {
                        failFast false
    
    OZGCloud's avatar
    OZGCloud committed
                        parallel {
                            stage('E2E-EA') {
                                steps {
                                    script {
                                        def stageName = env.STAGE_NAME
                                        def bezeichner = generateBezeichner(stageName)
                                        def dbPort = 27018
    
                                        startEnvironment(bezeichner, stageName, IMAGE_TAG, true, HELM_CHART_VERSION, dbPort)
    
                                        def testResult = runTests(stageName, bezeichner, 'einheitlicher-ansprechpartner', dbPort)
    
    OZGCloud's avatar
    OZGCloud committed
    
            							if (env.BRANCH_NAME != 'master') {
                                        	deleteKopStack(bezeichner, stageName)
                                        }
    
    OZGCloud's avatar
    OZGCloud committed
                                        if(!testResult) {
                                            E2E_FAILED += "${stageName}, "
                                            error("Fehler in Stage ${stageName}")
                                        }
                                    }
    
    OZGCloud's avatar
    OZGCloud committed
                                }
    
    OZGCloud's avatar
    OZGCloud committed
                                post {
                                    always {
                                        script {
                                            publishE2ETestResult("einheitlicher-ansprechpartner", "Goofy E2E-Tests EA")
                                        }
                                    }
    
    OZGCloud's avatar
    OZGCloud committed
                            stage('E2E-main') {
                                steps {
                                    script {
                                        def stageName = env.STAGE_NAME
                                        def bezeichner = generateBezeichner(stageName)
                                        def dbPort = 27019
    
                                        startEnvironment(bezeichner, stageName, IMAGE_TAG, false, HELM_CHART_VERSION, dbPort)
    
                                        def testResult = runTests(stageName, bezeichner, 'main-tests', dbPort)
    
    OZGCloud's avatar
    OZGCloud committed
                                        if (env.BRANCH_NAME != 'master') {
                                        	deleteKopStack(bezeichner, stageName)
                                        }
    
    OZGCloud's avatar
    OZGCloud committed
                                        if(!testResult) {
                                            E2E_FAILED += "${stageName}, "
                                            error("Fehler in Stage ${stageName}")
                                        }
                                    }
    
    OZGCloud's avatar
    OZGCloud committed
                                }
    
    OZGCloud's avatar
    OZGCloud committed
                                post {
                                    always {
                                        script {
                                            publishE2ETestResult("main-tests", "Goofy E2E-Tests main")
                                        }
                                    }
    
                                }
                            }
                        }
                    }
                }
    			post {
            		always {
    					script {
    						if (E2E_FAILED) {
    							FAILED_STAGE = "E2E (${E2E_FAILED.substring(0, E2E_FAILED.length() - 2)})"
                                error("Fehler in E2E-Tests")
    						}
    					}
                	}
    			}
            }
    
            stage('Trigger Test | Stage rollout') {
                when {
                    branch 'release'
                }
    
                steps {
                    script {
                        FAILED_STAGE = env.STAGE_NAME
    
                        checkoutProvisioningRepo()
    
                        setNewGoofyProvisioningVersion('test')
                        setNewGoofyProvisioningVersion('stage')
    
                        pushNewProvisioningVersion('test stage')
                    }
                }
            }
    
    OZGCloud's avatar
    OZGCloud committed
        }
        post {
            failure {
                script {
    
                    if (env.BRANCH_NAME == 'master' || env.BRANCH_NAME == 'release') {
                        sendFailureMessage()
    
    OZGCloud's avatar
    OZGCloud committed
        }
    }
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    Void deployHelmChart(String helmChartVersion) {       
    
        withCredentials([usernamePassword(credentialsId: 'jenkins-nexus-login', usernameVariable: 'USERNAME', passwordVariable: 'PASSWORD')]){
            if (env.BRANCH_NAME == 'release') {
    
    OZGCloud's avatar
    OZGCloud committed
                result = sh script: '''curl -u $USERNAME:$PASSWORD https://nexus.ozg-sh.de/service/rest/v1/components?repository=ozg-base-apps -F file=@goofy-'''+helmChartVersion+'''.tgz''', returnStdout: true
    
    OZGCloud's avatar
    OZGCloud committed
                result = sh script: '''curl -u $USERNAME:$PASSWORD https://nexus.ozg-sh.de/service/rest/v1/components?repository=ozg-base-apps-snapshot -F file=@goofy-'''+helmChartVersion+'''.tgz''', returnStdout: true
    
    OZGCloud's avatar
    OZGCloud committed
    String generateHelmChartVersion() {
        def chartVersion = "${VERSION}"
    
    OZGCloud's avatar
    OZGCloud committed
        if (env.BRANCH_NAME == 'master') {
            chartVersion += "-${env.GIT_COMMIT.take(7)}"
        }
        else if (env.BRANCH_NAME != 'release') {
            chartVersion += "-${env.BRANCH_NAME}"
        }
    
        return chartVersion.replaceAll("_", "-")
    
    Void tagAndPushDockerImage(String newTag){
    
    OZGCloud's avatar
    OZGCloud committed
        withCredentials([usernamePassword(credentialsId: 'jenkins-nexus-login', usernameVariable: 'USER', passwordVariable: 'PASSWORD')]) {
    
    OZGCloud's avatar
    OZGCloud committed
            sh 'docker login docker.ozg-sh.de -u ${USER} -p ${PASSWORD}'
    
    OZGCloud's avatar
    OZGCloud committed
            sh "docker tag docker.ozg-sh.de/goofy:${IMAGE_TAG} docker.ozg-sh.de/goofy:${newTag}"
            sh "docker push docker.ozg-sh.de/goofy:${newTag}"
    
        }
    }
    
    String generateImageTag() {
        def imageTag = "${env.BRANCH_NAME}-${VERSION}"
    
        if (env.BRANCH_NAME == 'master') {
            imageTag += "-${env.GIT_COMMIT.take(7)}"
        }
    
        return imageTag
    }
    
    
    Void startEnvironment(String bezeichner, String stage, String imageTag, Boolean isEa, String chartVersion, Integer dbPort) {
    
    OZGCloud's avatar
    OZGCloud committed
        setupAnsible(imageTag, stage, isEa, chartVersion)
    
    OZGCloud's avatar
    OZGCloud committed
        try {
            deleteKopStack(bezeichner, stage)
        } catch (Exception e) {
            echo "deleteKopStack Exception"
        }
    
    OZGCloud's avatar
    OZGCloud committed
        rolloutKopStack(bezeichner, stage)
    
        addKeycloakGroups(bezeichner, stage)
        addKeycloakUser(bezeichner, stage)
        exposeDatenbank("${env.BUNDESLAND}-${bezeichner}-dev", dbPort)
    
    OZGCloud's avatar
    OZGCloud committed
        exposeElasticSearch()
    
    OZGCloud's avatar
    OZGCloud committed
    Void setupAnsible(String imageTag, String stage, Boolean isEa, String chartVersion) {
    
    OZGCloud's avatar
    OZGCloud committed
        checkoutProvisioningRepo(stage)
    
        if (env.BRANCH_NAME == 'release') {
            copyTestEnvironmentToDev(stage)
        }
    
    
    OZGCloud's avatar
    OZGCloud committed
        editProvisioningBundesland(stage)
    
    OZGCloud's avatar
    OZGCloud committed
        editEnvironemntVersion(stage, imageTag, isEa, chartVersion)
    
    OZGCloud's avatar
    OZGCloud committed
    
        if (isEa) {
            setupEaEnvironment(stage)
        }
    
        setPlutoDatabasePassword(stage)
    }
    
    OZGCloud's avatar
    OZGCloud committed
    Void setAnsibleKubeConfig() {
    
        configFileProvider([configFile(fileId: 'kubeconfig-dev-cluster', variable: 'KUBE_CONFIG')]) {
    
    OZGCloud's avatar
    OZGCloud committed
            sh 'mkdir ~/.kube'
            sh 'cp ${KUBE_CONFIG} ~/.kube/config'
    
    OZGCloud's avatar
    OZGCloud committed
        }
    
    Void checkoutProvisioningRepo(String stage="") {
    
        withCredentials([usernamePassword(credentialsId: 'jenkins-gitea-access-token', passwordVariable: 'TOKEN', usernameVariable: 'USER')]) {
    
    OZGCloud's avatar
    OZGCloud committed
            dir(stage) {
    
    OZGCloud's avatar
    OZGCloud committed
                sh 'git clone https://${USER}:${TOKEN}@git.ozg-sh.de/mgm/provisioning.git'
    
    OZGCloud's avatar
    OZGCloud committed
                if (env.BRANCH_NAME == 'release') {
                    dir('provisioning') {
                        sh 'git checkout release'
                    }
    
    OZGCloud's avatar
    OZGCloud committed
                }
    
    OZGCloud's avatar
    OZGCloud committed
            }
    
    OZGCloud's avatar
    OZGCloud committed
    Void copyTestEnvironmentToDev(stage) {
        dir("${stage}/provisioning") {
    
    OZGCloud's avatar
    OZGCloud committed
            def devEnvFile = "inventories/group_vars/dev/versions"
    
            def testEnvFile = "inventories/group_vars/test/versions"
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
            def devVersions = readYaml file: devEnvFile
            def testVersions = readYaml file: testEnvFile
    
    OZGCloud's avatar
    OZGCloud committed
            devVersions.charts = testVersions.charts
            devVersions.versions = testVersions.versions
    
    OZGCloud's avatar
    OZGCloud committed
            writeYaml file: devEnvFile, data: devVersions, overwrite: true
    
    OZGCloud's avatar
    OZGCloud committed
    Void editEnvironemntVersion(String stage, String imageTag, Boolean isEa, String chartVersion) {
    
    OZGCloud's avatar
    OZGCloud committed
        dir("${stage}/provisioning") {
    
    OZGCloud's avatar
    OZGCloud committed
            def editFile = "inventories/group_vars/dev/versions"
    
    OZGCloud's avatar
    OZGCloud committed
            def devVersions = readYaml file: editFile
    
            overrideSpringProfiles = getSpringProfile(isEa)
    
            devVersions.values.goofy.put('env', ['overrideSpringProfiles': overrideSpringProfiles])
            devVersions.values.pluto.put('env', ['overrideSpringProfiles': overrideSpringProfiles])
    
            devVersions.values.goofy.put('ingress', ['use_staging_cert': true])
    
    OZGCloud's avatar
    OZGCloud committed
    
            devVersions.versions.goofy.image.tag = imageTag
    
            devVersions.charts.goofy.version = chartVersion
    
    OZGCloud's avatar
    OZGCloud committed
    
            writeYaml file: editFile, data: devVersions, overwrite: true
        }
    }
    
    
    OZGCloud's avatar
    OZGCloud committed
    Void editProvisioningBundesland(String stage) {
        dir("${stage}/provisioning") {
            def editEnvFile = "inventories/group_vars/all/env"
            def envVersions = readYaml file: editEnvFile
    
            envVersions.kop_bundesland = env.BUNDESLAND
    
            writeYaml file: editEnvFile, data: envVersions, overwrite: true
        }
    }
    
    
    OZGCloud's avatar
    OZGCloud committed
    String getSpringProfile(Boolean isEa) {
        if (isEa) {
            return "oc,ea,e2e,dev"
        }
    
        return "oc,e2e,dev"
    }
    
    Void setupEaEnvironment(String stage) {
        dir("${stage}/provisioning") {
    
    OZGCloud's avatar
    OZGCloud committed
            def editFile = "inventories/group_vars/all/env"
    
    
    OZGCloud's avatar
    OZGCloud committed
            def groupVars = readYaml file: editFile
    
            groupVars.kop_einheitlicher_ansprechpartner = true
    
            writeYaml file: editFile, data: groupVars, overwrite: true
        }
    }
    
    Void setPlutoDatabasePassword(String stage) {
        dir("${stage}/provisioning") {
    
    OZGCloud's avatar
    OZGCloud committed
            def editFile = "inventories/group_vars/dev/versions"
    
    OZGCloud's avatar
    OZGCloud committed
            def devVars = readYaml file: editFile
    
            devVars.values.pluto.database.password = "XnHhfznNWg65NNd"
    
            writeYaml file: editFile, data: devVars, overwrite: true
        }
    }
    
    Void rolloutKopStack(String bezeichner, String stage) {
    
    OZGCloud's avatar
    OZGCloud committed
        dir("${stage}/provisioning") {
            def ansibleVars = """{"k8s_context":"ozg-dev", \
                "kop_env":"dev", \
                "kop_bezeichner":${bezeichner}, \
                "kop_displayname":${bezeichner}, \
                "kop_postfach_api_key":"", \
                "install_afm_adapter":false, \
                "install_fs_adapter":false, \
                "external_db_enabled":false, \
                "disable_update":true}"""
    
    OZGCloud's avatar
    OZGCloud committed
            if (env.BRANCH_NAME == 'release') {
                sh "ansible-playbook playbook/rollout.yml --extra-vars '${ansibleVars}'"
            }
            else {
                sh "ansible-playbook playbooks/rollout.yml --extra-vars '${ansibleVars}'"
    
    OZGCloud's avatar
    OZGCloud committed
            }
    
    Void addKeycloakGroups(String bezeichner, String stage) {
    
    OZGCloud's avatar
    OZGCloud committed
        def groupFiles = sh (script: 'ls goofy-client/apps/goofy-e2e/src/fixtures/group', returnStdout: true)
    
    OZGCloud's avatar
    OZGCloud committed
        groupFiles.split("\\n").each { group ->
            def groupJson = sh (script: "cat goofy-client/apps/goofy-e2e/src/fixtures/group/${group}", returnStdout: true)
    
    OZGCloud's avatar
    OZGCloud committed
            def ansibleVars = """{"k8s_context":"ozg-dev", \
                "kop_env":"dev", \
    
                "keycloak_realm":"${env.BUNDESLAND}-${bezeichner}-dev", \
    
    OZGCloud's avatar
    OZGCloud committed
                "group":${groupJson}
    
    OZGCloud's avatar
    OZGCloud committed
            dir("${stage}/provisioning") {
                if (env.BRANCH_NAME == 'release') {
                    sh "ansible-playbook playbook/add-keycloak-group.yml --extra-vars '${ansibleVars}'"
    
    OZGCloud's avatar
    OZGCloud committed
                }
    
    OZGCloud's avatar
    OZGCloud committed
                else {
                    sh "ansible-playbook playbooks/add-keycloak-group.yml --extra-vars '${ansibleVars}'"
                }
            }
    	}
    
    Void addKeycloakUser(String bezeichner, String stage) {
    
    OZGCloud's avatar
    OZGCloud committed
        def userFiles = sh (script: 'ls goofy-client/apps/goofy-e2e/src/fixtures/user', returnStdout: true)
    
    OZGCloud's avatar
    OZGCloud committed
        userFiles.split("\\n").each { user ->
            def userJson = sh (script: "cat goofy-client/apps/goofy-e2e/src/fixtures/user/${user}", returnStdout: true)
    
    OZGCloud's avatar
    OZGCloud committed
            def ansibleVars = """{"k8s_context":"ozg-dev", \
                "kop_env":"dev", \
    
                "keycloak_realm":"${env.BUNDESLAND}-${bezeichner}-dev", \
    
    OZGCloud's avatar
    OZGCloud committed
                "user":${userJson}
            }"""
    
    OZGCloud's avatar
    OZGCloud committed
            dir("${stage}/provisioning") {
                if (env.BRANCH_NAME == 'release') {
                    sh "ansible-playbook playbook/add-keycloak-user.yml --extra-vars '${ansibleVars}'"
                }
                else {
                    sh "ansible-playbook playbooks/add-keycloak-user.yml --extra-vars '${ansibleVars}'"
    
    OZGCloud's avatar
    OZGCloud committed
    Void deleteKopStack(String bezeichner, String stage) {
    
    OZGCloud's avatar
    OZGCloud committed
        dir("${stage}/provisioning") {
            def ansibleVars = """{"k8s_context":"ozg-dev", \
                "kop_env":"dev", \
                "kop_bezeichner":${bezeichner}}"""
    
    OZGCloud's avatar
    OZGCloud committed
            if (env.BRANCH_NAME == 'release') {
                sh "ansible-playbook playbook/delete-commune.yml --extra-vars '${ansibleVars}'"
            }
            else {
                sh "ansible-playbook playbooks/delete-commune.yml --extra-vars '${ansibleVars}'"
    
    OZGCloud's avatar
    OZGCloud committed
            }
    
    OZGCloud's avatar
    OZGCloud committed
    }
    
    Void publishE2ETestResult(String reportFolder, String reportName) {
        publishHTML (
            target: [
                allowMissing: false,
                alwaysLinkToLastBuild: false,
                keepAll: true,
                reportDir: "goofy-client/apps/goofy-e2e/reports/${reportFolder}",
                reportFiles: 'report.html',
                reportName: reportName
            ]
        )
    }
    
    
    String runTests(String stageName, String bezeichner, String reportFolder, Integer dbPort) {
    
    OZGCloud's avatar
    OZGCloud committed
        def configFile = generateCypressConfig(stageName, bezeichner, reportFolder, dbPort)
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
        try {
            dir("goofy-client") {
          	    sh "npm run cypress:version"
                sh "npm run cypress:ci-run --CONFIG_FILE=${configFile} --REPORT_FOLDER=${reportFolder}"
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
                return true
    
    OZGCloud's avatar
    OZGCloud committed
            }
    
    OZGCloud's avatar
    OZGCloud committed
        } catch (Exception e) {
            sh "ls -l /root/.npm/_logs/*-debug.log"
            sh "cat /root/.npm/_logs/*-debug.log"
            return false
    
    OZGCloud's avatar
    OZGCloud committed
        }
    }
    
    String makeUrlConform(String input) {
        return input.replaceAll(/[^a-zA-Z0-9]+/, "").toLowerCase()
    
    OZGCloud's avatar
    OZGCloud committed
    }
    
    
    OZGCloud's avatar
    OZGCloud committed
    String generateBezeichner(String stage) {
    
    OZGCloud's avatar
    OZGCloud committed
        def branchName = makeUrlConform(env.BRANCH_NAME)
        def stageName = makeUrlConform(stage)
    
    OZGCloud's avatar
    OZGCloud committed
        return "${cutBranchNameForKeycloakRealm(branchName, stageName)}${stageName}"
    }
    
    String cutBranchNameForKeycloakRealm(String branchName, String stageName) {
        def maxKeycloakRealmLength = 30
        def postPrefixLength = 8
        def cutBranchNamePosition = maxKeycloakRealmLength - (branchName.length() + stageName.length() + postPrefixLength)
    
    OZGCloud's avatar
    OZGCloud committed
    
        if(cutBranchNamePosition < 0) {
            branchName = branchName[0..cutBranchNamePosition]
        }
    
    
    OZGCloud's avatar
    OZGCloud committed
        return branchName
    
    OZGCloud's avatar
    OZGCloud committed
    }
    
    
    String generateCypressConfig(String stage, String bezeichner, String testFolder, Integer dbPort) {
        def namespace = "${env.BUNDESLAND}-${bezeichner}-dev"
    
    OZGCloud's avatar
    OZGCloud committed
        def configName = "cypress-ci-"+testFolder+".json"
    
    OZGCloud's avatar
    OZGCloud committed
        dir('goofy-client/apps/goofy-e2e/'){
            def config = readJSON file: 'cypress-ci.json'
    
    OZGCloud's avatar
    OZGCloud committed
            def elasticsearchEnv = getElasticsearchEnv(namespace)
    
    OZGCloud's avatar
    OZGCloud committed
    
    
            config.baseUrl = "https://${bezeichner}.${env.CLUSTER_BASE_URL}" as String
    
    OZGCloud's avatar
    OZGCloud committed
            config.env.dbUrl = "mongodb://pluto-database-user:XnHhfznNWg65NNd@localhost:${dbPort}/admin?ssl=false&directConnection=true" as String
    
    OZGCloud's avatar
    OZGCloud committed
            config.env.keycloakUrl = "https://${env.SSO_URL}/" as String
    
    OZGCloud's avatar
    OZGCloud committed
            config.env.keycloakRealm = namespace as String
            config.env.keycloakClient = namespace + "-goofy" as String
    
    OZGCloud's avatar
    OZGCloud committed
    		config.env.sabineUuid = getKeycloakUuid(namespace, "sabine") as String
    
    OZGCloud's avatar
    OZGCloud committed
            config.integrationFolder = "./src/integration/${testFolder}" as String
            config.videosFolder = "./reports/${testFolder}/videos" as String
    	    config.screenshotsFolder = "./reports/${testFolder}/screenshots" as String
            config.reporterOptions.reportDir = "./reports/${testFolder}/mochawesome-report" as String
    
    
    OZGCloud's avatar
    OZGCloud committed
            environment = config.env
    
            environment.put("search", elasticsearchEnv)
    
    OZGCloud's avatar
    OZGCloud committed
            environment.put("userManager", getUserManagerEnv(namespace, dbPort));
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
            writeJSON file: configName, json: config
    
    OZGCloud's avatar
    OZGCloud committed
    
            sh "cat ${configName}"
    
    OZGCloud's avatar
    OZGCloud committed
        }
    
    OZGCloud's avatar
    OZGCloud committed
    
        return configName
    }
    
    
    OZGCloud's avatar
    OZGCloud committed
    String getUserManagerEnv(namespace, dbPort){
    
    	def secret = getSecrect(namespace, 'pluto-database-admin-user-manager-database-user');
    	def secretPassword = decodeString(secret.password);
    	return readJSON(text: """{
    
    OZGCloud's avatar
    OZGCloud committed
            "dbUrl":"mongodb://user-manager-database-user:${secretPassword}@localhost:${dbPort}/admin?ssl=false&directConnection=true", \
    
            "database":"user-manager-database"}""");
    }
    
    def getSecrect(namespace, secretName){
    
    OZGCloud's avatar
    OZGCloud committed
        script {
            return readJSON ( text: sh (script: "kubectl get secret ${secretName} -n ${namespace} -o jsonpath={.data}", returnStdout: true))
    
    OZGCloud's avatar
    OZGCloud committed
    String getKeycloakUuid(realm, userName) {
    
    OZGCloud's avatar
    OZGCloud committed
        def shScript = """curl -H 'Content-Type: application/json' \
                            -H 'Authorization: bearer ${getKeycloakAccessToken()}' \
    
    OZGCloud's avatar
    OZGCloud committed
                            'https://${env.SSO_URL}/admin/realms/${realm}/users'
    
    OZGCloud's avatar
    OZGCloud committed
                        """
    
    	def users = readJSON text: sh(script: shScript, returnStdout: true)
    
    	for(user in users) {
    
    OZGCloud's avatar
    OZGCloud committed
    		if (user.username == userName) {
    
    OZGCloud's avatar
    OZGCloud committed
                return user.id
    
    OZGCloud's avatar
    OZGCloud committed
    		}
    	}
    }
    
    String getKeycloakAccessToken() {
    
    	withCredentials([usernamePassword(credentialsId: 'keycloak-dev-cluster', usernameVariable: 'USER', passwordVariable: 'PASSWORD')]) {
    
    OZGCloud's avatar
    OZGCloud committed
    		def token = readJSON text: sh (script: 'curl -d "client_id=admin-cli" -d "username=$USER" -d "password=$PASSWORD" -d "grant_type=password" https://$SSO_URL/realms/master/protocol/openid-connect/token', returnStdout: true)
    
    OZGCloud's avatar
    OZGCloud committed
    
    		return token.access_token
    
    OZGCloud's avatar
    OZGCloud committed
    	}
    
    Void sendFailureMessage() {
        def room = ''
        def data = """{"msgtype":"m.text", \
                        "body":"Goofy: Build Failed. Stage: ${FAILED_STAGE} Build-ID: ${env.BUILD_NUMBER} Link: ${BLUE_OCEAN_URL}", \
                        "format": "org.matrix.custom.html", \
                        "formatted_body":"Goofy: Build Failed. Stage: ${FAILED_STAGE} Build-ID: <a href='${BLUE_OCEAN_URL}'>${env.BUILD_NUMBER}</a>"}"""
    
        if (env.BRANCH_NAME == 'master') {
            room = "!iQPAvQIiRwRpNOszjw:matrix.ozg-sh.de"
        }
        else if (env.BRANCH_NAME == 'release') {
            room = "!oWZpUGTFsxkJIYNfYg:matrix.ozg-sh.de"
        }
    
        sh "curl -XPOST -H 'authorization: Bearer ${getElementAccessToken()}' -d '${data}' https://matrix.ozg-sh.de/_matrix/client/v3/rooms/$room/send/m.room.message"
    }
    
    String getElementAccessToken() {
        withCredentials([string(credentialsId: 'element-login-json', variable: 'LOGIN_JSON')]) {
            return readJSON ( text: sh (script: '''curl -XPOST -d \"$LOGIN_JSON\" https://matrix.ozg-sh.de/_matrix/client/v3/login''', returnStdout: true)).access_token
        }
    
    OZGCloud's avatar
    OZGCloud committed
    def getElasticsearchSecret(namespace) {
    
    OZGCloud's avatar
    OZGCloud committed
        script {
            def elasticsearch = readJSON ( text: sh (script: "kubectl get secret elasticsearch-credentials -n ${namespace} -o jsonpath={.data}", returnStdout: true))
    
    OZGCloud's avatar
    OZGCloud committed
    
    
    OZGCloud's avatar
    OZGCloud committed
            return elasticsearch
    
    OZGCloud's avatar
    OZGCloud committed
        }
    }
    
    String getElasticsearchEnv(namespace) {
        def elasticsearchSecret = getElasticsearchSecret(namespace)
    
    OZGCloud's avatar
    OZGCloud committed
        def env = """{
            "user":"${decodeString(elasticsearchSecret.username)}", \
            "password":"${decodeString(elasticsearchSecret.password)}", \
            "index":"${decodeString(elasticsearchSecret.index)}", \
    
            "url":"https://localhost:9200"}"""
    
    OZGCloud's avatar
    OZGCloud committed
        return readJSON ( text: env)
    }
    
    String decodeString(encoded) {
        return sh (script: "echo -n ${encoded} | base64 --decode", returnStdout: true)
    
    Void setNewGoofyProvisioningVersion(String environment) {
    
    OZGCloud's avatar
    OZGCloud committed
        dir("provisioning") {
    
    OZGCloud's avatar
    OZGCloud committed
            def envFile = "inventories/group_vars/${environment}/versions"
    
    
    OZGCloud's avatar
    OZGCloud committed
            def envVersions = readYaml file: envFile
    
    
            envVersions.versions.goofy.image.tag = IMAGE_TAG
    
            envVersions.charts.goofy.version = HELM_CHART_VERSION
    
    OZGCloud's avatar
    OZGCloud committed
    
            writeYaml file: envFile, data: envVersions, overwrite: true
        }
    }
    
    
    Void pushNewProvisioningVersion(String environment) {
    
        dir('provisioning') {
            if (sh (script: "git status | grep 'inventories/group_vars/.*/versions'", returnStatus: true) == 1) {
                return
            }
    
            withCredentials([usernamePassword(credentialsId: 'jenkins-gitea-access-token', passwordVariable: 'TOKEN', usernameVariable: 'USER')]) {
                sh 'git add inventories/group_vars/*/versions'
    
    
                sh 'git config user.email "jenkins@ozg.de"'
                sh 'git config user.name "jenkins"'
                sh "git commit -m 'jenkins rollout ${environment} goofy version ${IMAGE_TAG}'"
                sh 'git push https://${USER}:${TOKEN}@git.ozg-sh.de/mgm/provisioning.git'
            }
    
    OZGCloud's avatar
    OZGCloud committed
        }
    
    OZGCloud's avatar
    OZGCloud committed
    
    Void exposeElasticSearch() {
        portStatus = sh (script: "lsof -i -P -n | grep LISTEN | grep :9200", returnStatus: true) as Integer
        if(portStatus == 1) {
            sh "kubectl port-forward ozg-search-cluster-es-ozg-search-0 9200:9200 -n elastic-system &"
        }
    }
    
    Void exposeDatenbank(String namespace, port) {
        sh "kubectl port-forward pluto-database-0 ${port}:27017 -n ${namespace} &"
    }