|
Packit |
63bb0d |
#!/bin/bash
|
|
Packit |
63bb0d |
set -euo pipefail
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
source /etc/os-release
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Fedora 31's composer-cli doesn't support doing image uploads.
|
|
Packit |
63bb0d |
if [[ $ID == fedora ]] && [[ $VERSION_ID == 31 ]]; then
|
|
Packit |
63bb0d |
echo "Fedora 31 does not support image uploads with composer-cli."
|
|
Packit |
63bb0d |
exit 0
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Colorful output.
|
|
Packit |
63bb0d |
function greenprint {
|
|
Packit |
63bb0d |
echo -e "\033[1;32m${1}\033[0m"
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Apply lorax patch to work around pytoml issues in RHEL 8.x.
|
|
Packit |
63bb0d |
# See BZ 1843704 or https://github.com/weldr/lorax/pull/1030 for more details.
|
|
Packit |
63bb0d |
if [[ $ID == rhel ]]; then
|
|
Packit |
63bb0d |
sudo sed -r -i 's#toml.load\(args\[3\]\)#toml.load(open(args[3]))#' \
|
|
Packit |
63bb0d |
/usr/lib/python3.6/site-packages/composer/cli/compose.py
|
|
Packit |
63bb0d |
sudo rm -f /usr/lib/python3.6/site-packages/composer/cli/compose.pyc
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# We need jq for parsing composer-cli output.
|
|
Packit |
63bb0d |
if ! hash jq; then
|
|
Packit |
63bb0d |
greenprint "Installing jq"
|
|
Packit |
63bb0d |
sudo dnf -qy install jq
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# We need awscli to talk to AWS.
|
|
Packit |
63bb0d |
if ! hash aws; then
|
|
Packit |
63bb0d |
greenprint "Installing awscli"
|
|
Packit |
63bb0d |
sudo dnf -y install unzip
|
|
Packit |
63bb0d |
pushd /tmp
|
|
Packit |
63bb0d |
curl -Ls --retry 5 --output awscliv2.zip \
|
|
Packit |
63bb0d |
https://awscli.amazonaws.com/awscli-exe-linux-x86_64.zip
|
|
Packit |
63bb0d |
unzip awscliv2.zip > /dev/null
|
|
Packit |
63bb0d |
sudo ./aws/install > /dev/null
|
|
Packit |
63bb0d |
aws --version
|
|
Packit |
63bb0d |
popd
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
TEST_UUID=$(uuidgen)
|
|
Packit |
63bb0d |
IMAGE_KEY=osbuild-composer-aws-test-${TEST_UUID}
|
|
Packit |
63bb0d |
AWS_CMD="aws --region $AWS_REGION --output json --color on"
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Jenkins sets WORKSPACE to the job workspace, but if this script runs
|
|
Packit |
63bb0d |
# outside of Jenkins, we can set up a temporary directory instead.
|
|
Packit |
63bb0d |
if [[ ${WORKSPACE:-empty} == empty ]]; then
|
|
Packit |
63bb0d |
WORKSPACE=$(mktemp -d)
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Set up temporary files.
|
|
Packit |
63bb0d |
TEMPDIR=$(mktemp -d)
|
|
Packit |
63bb0d |
AWS_CONFIG=${TEMPDIR}/aws.toml
|
|
Packit |
63bb0d |
BLUEPRINT_FILE=${TEMPDIR}/blueprint.toml
|
|
Packit |
63bb0d |
AWS_INSTANCE_JSON=${TEMPDIR}/aws-instance.json
|
|
Packit |
63bb0d |
COMPOSE_START=${TEMPDIR}/compose-start-${IMAGE_KEY}.json
|
|
Packit |
63bb0d |
COMPOSE_INFO=${TEMPDIR}/compose-info-${IMAGE_KEY}.json
|
|
Packit |
63bb0d |
AMI_DATA=${TEMPDIR}/ami-data-${IMAGE_KEY}.json
|
|
Packit |
63bb0d |
INSTANCE_DATA=${TEMPDIR}/instance-data-${IMAGE_KEY}.json
|
|
Packit |
63bb0d |
INSTANCE_CONSOLE=${TEMPDIR}/instance-console-${IMAGE_KEY}.json
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Check for the smoke test file on the AWS instance that we start.
|
|
Packit |
63bb0d |
smoke_test_check () {
|
|
Packit |
63bb0d |
# Ensure the ssh key has restricted permissions.
|
|
Packit |
63bb0d |
SSH_KEY=${WORKSPACE}/test/keyring/id_rsa
|
|
Packit |
63bb0d |
chmod 0600 $SSH_KEY
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
SMOKE_TEST=$(ssh -i ${SSH_KEY} redhat@${1} 'cat /etc/smoke-test.txt')
|
|
Packit |
63bb0d |
if [[ $SMOKE_TEST == smoke-test ]]; then
|
|
Packit |
63bb0d |
echo 1
|
|
Packit |
63bb0d |
else
|
|
Packit |
63bb0d |
echo 0
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Get the compose log.
|
|
Packit |
63bb0d |
get_compose_log () {
|
|
Packit |
63bb0d |
COMPOSE_ID=$1
|
|
Packit |
63bb0d |
LOG_FILE=${WORKSPACE}/osbuild-${ID}-${VERSION_ID}-aws.log
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Download the logs.
|
|
Packit |
63bb0d |
sudo composer-cli compose log $COMPOSE_ID | tee $LOG_FILE > /dev/null
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Get the compose metadata.
|
|
Packit |
63bb0d |
get_compose_metadata () {
|
|
Packit |
63bb0d |
COMPOSE_ID=$1
|
|
Packit |
63bb0d |
METADATA_FILE=${WORKSPACE}/osbuild-${ID}-${VERSION_ID}-aws.json
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Download the metadata.
|
|
Packit |
63bb0d |
sudo composer-cli compose metadata $COMPOSE_ID > /dev/null
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Find the tarball and extract it.
|
|
Packit |
63bb0d |
TARBALL=$(basename $(find . -maxdepth 1 -type f -name "*-metadata.tar"))
|
|
Packit |
63bb0d |
tar -xf $TARBALL
|
|
Packit |
63bb0d |
rm -f $TARBALL
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Move the JSON file into place.
|
|
Packit |
63bb0d |
cat ${COMPOSE_ID}.json | jq -M '.' | tee $METADATA_FILE > /dev/null
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Get the console screenshot from the AWS instance.
|
|
Packit |
63bb0d |
store_instance_screenshot () {
|
|
Packit |
63bb0d |
INSTANCE_ID=${1}
|
|
Packit |
63bb0d |
LOOP_COUNTER=${2}
|
|
Packit |
63bb0d |
SCREENSHOT_FILE=${WORKSPACE}/console-screenshot-${ID}-${VERSION_ID}-${LOOP_COUNTER}.jpg
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
$AWS_CMD ec2 get-console-screenshot --instance-id ${1} > $INSTANCE_CONSOLE
|
|
Packit |
63bb0d |
jq -r '.ImageData' $INSTANCE_CONSOLE | base64 -d - > $SCREENSHOT_FILE
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Write an AWS TOML file
|
|
Packit |
63bb0d |
tee $AWS_CONFIG > /dev/null << EOF
|
|
Packit |
63bb0d |
provider = "aws"
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
[settings]
|
|
Packit |
63bb0d |
accessKeyID = "${AWS_ACCESS_KEY_ID}"
|
|
Packit |
63bb0d |
secretAccessKey = "${AWS_SECRET_ACCESS_KEY}"
|
|
Packit |
63bb0d |
bucket = "${AWS_BUCKET}"
|
|
Packit |
63bb0d |
region = "${AWS_REGION}"
|
|
Packit |
63bb0d |
key = "${IMAGE_KEY}"
|
|
Packit |
63bb0d |
EOF
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Write a basic blueprint for our image.
|
|
Packit |
63bb0d |
tee $BLUEPRINT_FILE > /dev/null << EOF
|
|
Packit |
63bb0d |
name = "bash"
|
|
Packit |
63bb0d |
description = "A base system with bash"
|
|
Packit |
63bb0d |
version = "0.0.1"
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
[[packages]]
|
|
Packit |
63bb0d |
name = "bash"
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
[customizations.services]
|
|
Packit |
63bb0d |
enabled = ["sshd", "cloud-init", "cloud-init-local", "cloud-config", "cloud-final"]
|
|
Packit |
63bb0d |
EOF
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Prepare the blueprint for the compose.
|
|
Packit |
63bb0d |
greenprint "๐ Preparing blueprint"
|
|
Packit |
63bb0d |
sudo composer-cli blueprints push $BLUEPRINT_FILE
|
|
Packit |
63bb0d |
sudo composer-cli blueprints depsolve bash
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Get worker unit file so we can watch the journal.
|
|
Packit |
63bb0d |
WORKER_UNIT=$(sudo systemctl list-units | egrep -o "osbuild.*worker.*\.service")
|
|
Packit |
63bb0d |
sudo journalctl -af -n 1 -u ${WORKER_UNIT} &
|
|
Packit |
63bb0d |
WORKER_JOURNAL_PID=$!
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Start the compose and upload to AWS.
|
|
Packit |
63bb0d |
greenprint "๐ Starting compose"
|
|
Packit |
63bb0d |
sudo composer-cli --json compose start bash ami $IMAGE_KEY $AWS_CONFIG | tee $COMPOSE_START
|
|
Packit |
63bb0d |
COMPOSE_ID=$(jq -r '.build_id' $COMPOSE_START)
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Wait for the compose to finish.
|
|
Packit |
63bb0d |
greenprint "โฑ Waiting for compose to finish: ${COMPOSE_ID}"
|
|
Packit |
63bb0d |
while true; do
|
|
Packit |
63bb0d |
sudo composer-cli --json compose info ${COMPOSE_ID} | tee $COMPOSE_INFO > /dev/null
|
|
Packit |
63bb0d |
COMPOSE_STATUS=$(jq -r '.queue_status' $COMPOSE_INFO)
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Is the compose finished?
|
|
Packit |
63bb0d |
if [[ $COMPOSE_STATUS != RUNNING ]] && [[ $COMPOSE_STATUS != WAITING ]]; then
|
|
Packit |
63bb0d |
break
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Wait 30 seconds and try again.
|
|
Packit |
63bb0d |
sleep 30
|
|
Packit |
63bb0d |
done
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Capture the compose logs from osbuild.
|
|
Packit |
63bb0d |
greenprint "๐ฌ Getting compose log and metadata"
|
|
Packit |
63bb0d |
get_compose_log $COMPOSE_ID
|
|
Packit |
63bb0d |
get_compose_metadata $COMPOSE_ID
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Did the compose finish with success?
|
|
Packit |
63bb0d |
if [[ $COMPOSE_STATUS != FINISHED ]]; then
|
|
Packit |
63bb0d |
echo "Something went wrong with the compose. ๐ข"
|
|
Packit |
63bb0d |
exit 1
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Find the image that we made in AWS.
|
|
Packit |
63bb0d |
greenprint "๐ Search for created AMI"
|
|
Packit |
63bb0d |
$AWS_CMD ec2 describe-images \
|
|
Packit |
63bb0d |
--owners self \
|
|
Packit |
63bb0d |
--filters Name=name,Values=${IMAGE_KEY} \
|
|
Packit |
63bb0d |
| tee $AMI_DATA > /dev/null
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
AMI_IMAGE_ID=$(jq -r '.Images[].ImageId' $AMI_DATA)
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Stop watching the worker journal.
|
|
Packit |
63bb0d |
sudo kill ${WORKER_JOURNAL_PID}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# NOTE(mhayden): Getting TagSpecifications to play along with bash's
|
|
Packit |
63bb0d |
# parsing of curly braces and square brackets is nuts, so we just write some
|
|
Packit |
63bb0d |
# json and pass it to the aws command.
|
|
Packit |
63bb0d |
tee $AWS_INSTANCE_JSON > /dev/null << EOF
|
|
Packit |
63bb0d |
{
|
|
Packit |
63bb0d |
"TagSpecifications": [
|
|
Packit |
63bb0d |
{
|
|
Packit |
63bb0d |
"ResourceType": "instance",
|
|
Packit |
63bb0d |
"Tags": [
|
|
Packit |
63bb0d |
{
|
|
Packit |
63bb0d |
"Key": "Name",
|
|
Packit |
63bb0d |
"Value": "${IMAGE_KEY}"
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
]
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
]
|
|
Packit |
63bb0d |
}
|
|
Packit |
63bb0d |
EOF
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Build instance in AWS with our image.
|
|
Packit |
63bb0d |
greenprint "๐ท๐ป Building instance in AWS"
|
|
Packit |
63bb0d |
$AWS_CMD ec2 run-instances \
|
|
Packit |
63bb0d |
--associate-public-ip-address \
|
|
Packit |
63bb0d |
--key-name personal_servers \
|
|
Packit |
63bb0d |
--image-id ${AMI_IMAGE_ID} \
|
|
Packit |
63bb0d |
--instance-type t3a.micro \
|
|
Packit |
63bb0d |
--user-data file://${WORKSPACE}/test/cloud-init/user-data \
|
|
Packit |
63bb0d |
--cli-input-json file://${AWS_INSTANCE_JSON} > /dev/null
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Wait for the instance to finish building.
|
|
Packit |
63bb0d |
greenprint "โฑ Waiting for AWS instance to be marked as running"
|
|
Packit |
63bb0d |
while true; do
|
|
Packit |
63bb0d |
$AWS_CMD ec2 describe-instances \
|
|
Packit |
63bb0d |
--filters Name=image-id,Values=${AMI_IMAGE_ID} \
|
|
Packit |
63bb0d |
| tee $INSTANCE_DATA > /dev/null
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
INSTANCE_STATUS=$(jq -r '.Reservations[].Instances[].State.Name' $INSTANCE_DATA)
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Break the loop if our instance is running.
|
|
Packit |
63bb0d |
if [[ $INSTANCE_STATUS == running ]]; then
|
|
Packit |
63bb0d |
break
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Sleep for 10 seconds and try again.
|
|
Packit |
63bb0d |
sleep 10
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
done
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Get data about the instance we built.
|
|
Packit |
63bb0d |
INSTANCE_ID=$(jq -r '.Reservations[].Instances[].InstanceId' $INSTANCE_DATA)
|
|
Packit |
63bb0d |
PUBLIC_IP=$(jq -r '.Reservations[].Instances[].PublicIpAddress' $INSTANCE_DATA)
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Wait for the node to come online.
|
|
Packit |
63bb0d |
greenprint "โฑ Waiting for AWS instance to respond to ssh"
|
|
Packit |
63bb0d |
for LOOP_COUNTER in {0..30}; do
|
|
Packit |
63bb0d |
if ssh-keyscan $PUBLIC_IP 2>&1 > /dev/null; then
|
|
Packit |
63bb0d |
echo "SSH is up!"
|
|
Packit |
63bb0d |
ssh-keyscan $PUBLIC_IP >> ~/.ssh/known_hosts
|
|
Packit |
63bb0d |
break
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Get a screenshot of the instance console.
|
|
Packit |
63bb0d |
echo "Getting instance screenshot..."
|
|
Packit |
63bb0d |
store_instance_screenshot $INSTANCE_ID $LOOP_COUNTER || true
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# ssh-keyscan has a 5 second timeout by default, so the pause per loop
|
|
Packit |
63bb0d |
# is 10 seconds when you include the following `sleep`.
|
|
Packit |
63bb0d |
echo "Retrying in 5 seconds..."
|
|
Packit |
63bb0d |
sleep 5
|
|
Packit |
63bb0d |
done
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Check for our smoke test file.
|
|
Packit |
63bb0d |
greenprint "๐ Checking for smoke test file"
|
|
Packit |
63bb0d |
for LOOP_COUNTER in {0..10}; do
|
|
Packit |
63bb0d |
RESULTS="$(smoke_test_check $PUBLIC_IP)"
|
|
Packit |
63bb0d |
if [[ $RESULTS == 1 ]]; then
|
|
Packit |
63bb0d |
echo "Smoke test passed! ๐ฅณ"
|
|
Packit |
63bb0d |
break
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
sleep 5
|
|
Packit |
63bb0d |
done
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Clean up our mess.
|
|
Packit |
63bb0d |
greenprint "๐งผ Cleaning up"
|
|
Packit |
63bb0d |
SNAPSHOT_ID=$(jq -r '.Images[].BlockDeviceMappings[].Ebs.SnapshotId' $AMI_DATA)
|
|
Packit |
63bb0d |
$AWS_CMD ec2 terminate-instances --instance-id ${INSTANCE_ID}
|
|
Packit |
63bb0d |
$AWS_CMD ec2 deregister-image --image-id ${AMI_IMAGE_ID}
|
|
Packit |
63bb0d |
$AWS_CMD ec2 delete-snapshot --snapshot-id ${SNAPSHOT_ID}
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
# Use the return code of the smoke test to determine if we passed or failed.
|
|
Packit |
63bb0d |
if [[ $RESULTS == 1 ]]; then
|
|
Packit |
63bb0d |
greenprint "๐ Success"
|
|
Packit |
63bb0d |
else
|
|
Packit |
63bb0d |
greenprint "โ Failed"
|
|
Packit |
63bb0d |
exit 1
|
|
Packit |
63bb0d |
fi
|
|
Packit |
63bb0d |
|
|
Packit |
63bb0d |
exit 0
|