Undo bug bash changes and Sync with the main branch (#1193)
* Added Cloudrail according to instructions and existing examples * Adding Cloudrail according to documentation and examples * Oops * Add original Fortify on Demand workflow * Update Fortify on Demand workflow * Update Fortify on Demand supported languages * Add 3rd-party GitHub Actions disclaimer * Sysdig Secure Inline Scan with SARIF report to starter workflows * Added some extra comments, Github Actions V2 and changed env vars * Reviews from PR #1110 * Adding 'Dockerfile' to category list * Update according to PR review comments * File renames as requested in PR comments * Revert "Azure Data Factory CI starter workflow (#1111)" (#1146) This reverts commit7f30309cce. * use env variables for user-set values (#1117) Co-authored-by: Josh Gross <[email protected]> * Apply suggestions from nickfyson's code review Co-authored-by: Nick Fyson <[email protected]> * removing "deployment" templates from sync-ghes (#1127) * Update code-scanning/properties/sysdig-scan.properties.json Co-authored-by: Nick Fyson <[email protected]> * Update code-scanning/properties/sysdig-scan.properties.json Co-authored-by: Nick Fyson <[email protected]> * Changed svg logo * Rename sysdig.svg to sysdig-scan.svg * Switched svg logo (again) for a better fit * Rename fortify.json to fortify.properties.json * Correct character-case of "c" in Cloudrail * AWS template also used Docker * trigger on push instead of release (#1157) Co-authored-by: Josh Gross <[email protected]> * Added new templates for 3 clouds. * Revert "Added new templates for 3 clouds." This reverts commitc765d6316f. * Add workflow for Microsoft C++ Code Analysis * Updated action to meet guidelines * correct typo in msvc.properties.json * Removed the dummy templates used in bug_bash. Co-authored-by: Yoni Leitersdorf <[email protected]> Co-authored-by: Ruud Senden <[email protected]> Co-authored-by: Ruud Senden <[email protected]> Co-authored-by: Manuel Boira Cuevas <[email protected]> Co-authored-by: manuelbcd <[email protected]> Co-authored-by: Nick Fyson <[email protected]> Co-authored-by: Sarah Edwards <[email protected]> Co-authored-by: Josh Gross <[email protected]> Co-authored-by: Aparna Ravindra <[email protected]> Co-authored-by: manuelbcd <[email protected]> Co-authored-by: Daniel Winsor <[email protected]>
This commit is contained in:
co-authored by
Josh Gross
Nick Fyson
Yoni Leitersdorf
Ruud Senden
Ruud Senden
Manuel Boira Cuevas
manuelbcd
Sarah Edwards
Aparna Ravindra
manuelbcd
Daniel Winsor
parent
39293c2452
commit
87a12c3391
@@ -1,81 +0,0 @@
|
|||||||
# This workflow will build a docker container, publish it to Google Container Registry, and deploy it to GKE when there is a push to the $default-branch branch.
|
|
||||||
#
|
|
||||||
# To configure this workflow:
|
|
||||||
#
|
|
||||||
# 1. Ensure that your repository contains the necessary configuration for your Google Kubernetes Engine cluster, including deployment.yml, kustomization.yml, service.yml, etc.
|
|
||||||
#
|
|
||||||
# 2. Set up secrets in your workspace: GKE_PROJECT with the name of the project and GKE_SA_KEY with the Base64 encoded JSON service account key (https://github.com/GoogleCloudPlatform/github-actions/tree/docs/service-account-key/setup-gcloud#inputs).
|
|
||||||
#
|
|
||||||
# 3. Change the values for the GKE_ZONE, GKE_CLUSTER, IMAGE, and DEPLOYMENT_NAME environment variables (below).
|
|
||||||
#
|
|
||||||
# For more support on how to run the workflow, please visit https://github.com/google-github-actions/setup-gcloud/tree/master/example-workflows/gke
|
|
||||||
|
|
||||||
name: Build and Deploy to GKE
|
|
||||||
|
|
||||||
on:
|
|
||||||
push:
|
|
||||||
branches:
|
|
||||||
- $default-branch
|
|
||||||
|
|
||||||
env:
|
|
||||||
PROJECT_ID: ${{ secrets.GKE_PROJECT }}
|
|
||||||
GKE_CLUSTER: cluster-1 # TODO: update to cluster name
|
|
||||||
GKE_ZONE: us-central1-c # TODO: update to cluster zone
|
|
||||||
DEPLOYMENT_NAME: gke-test # TODO: update to deployment name
|
|
||||||
IMAGE: static-site
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
setup-build-publish-deploy:
|
|
||||||
name: Setup, Build, Publish, and Deploy
|
|
||||||
runs-on: ubuntu-latest
|
|
||||||
environment: production
|
|
||||||
|
|
||||||
steps:
|
|
||||||
- name: Checkout
|
|
||||||
uses: actions/checkout@v2
|
|
||||||
|
|
||||||
# Setup gcloud CLI
|
|
||||||
- uses: google-github-actions/[email protected]
|
|
||||||
with:
|
|
||||||
service_account_key: ${{ secrets.GKE_SA_KEY }}
|
|
||||||
project_id: ${{ secrets.GKE_PROJECT }}
|
|
||||||
|
|
||||||
# Configure Docker to use the gcloud command-line tool as a credential
|
|
||||||
# helper for authentication
|
|
||||||
- run: |-
|
|
||||||
gcloud --quiet auth configure-docker
|
|
||||||
|
|
||||||
# Get the GKE credentials so we can deploy to the cluster
|
|
||||||
- uses: google-github-actions/[email protected]
|
|
||||||
with:
|
|
||||||
cluster_name: ${{ env.GKE_CLUSTER }}
|
|
||||||
location: ${{ env.GKE_ZONE }}
|
|
||||||
credentials: ${{ secrets.GKE_SA_KEY }}
|
|
||||||
|
|
||||||
# Build the Docker image
|
|
||||||
- name: Build
|
|
||||||
run: |-
|
|
||||||
docker build \
|
|
||||||
--tag "gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA" \
|
|
||||||
--build-arg GITHUB_SHA="$GITHUB_SHA" \
|
|
||||||
--build-arg GITHUB_REF="$GITHUB_REF" \
|
|
||||||
.
|
|
||||||
|
|
||||||
# Push the Docker image to Google Container Registry
|
|
||||||
- name: Publish
|
|
||||||
run: |-
|
|
||||||
docker push "gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA"
|
|
||||||
|
|
||||||
# Set up kustomize
|
|
||||||
- name: Set up Kustomize
|
|
||||||
run: |-
|
|
||||||
curl -sfLo kustomize https://github.com/kubernetes-sigs/kustomize/releases/download/v3.1.0/kustomize_3.1.0_linux_amd64
|
|
||||||
chmod u+x ./kustomize
|
|
||||||
|
|
||||||
# Deploy the Docker image to the GKE cluster
|
|
||||||
- name: Deploy
|
|
||||||
run: |-
|
|
||||||
./kustomize edit set image gcr.io/PROJECT_ID/IMAGE:TAG=gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA
|
|
||||||
./kustomize build . | kubectl apply -f -
|
|
||||||
kubectl rollout status deployment/$DEPLOYMENT_NAME
|
|
||||||
kubectl get services -o wide
|
|
||||||
@@ -1,81 +0,0 @@
|
|||||||
# This workflow will build a docker container, publish it to Google Container Registry, and deploy it to GKE when there is a push to the $default-branch branch.
|
|
||||||
#
|
|
||||||
# To configure this workflow:
|
|
||||||
#
|
|
||||||
# 1. Ensure that your repository contains the necessary configuration for your Google Kubernetes Engine cluster, including deployment.yml, kustomization.yml, service.yml, etc.
|
|
||||||
#
|
|
||||||
# 2. Set up secrets in your workspace: GKE_PROJECT with the name of the project and GKE_SA_KEY with the Base64 encoded JSON service account key (https://github.com/GoogleCloudPlatform/github-actions/tree/docs/service-account-key/setup-gcloud#inputs).
|
|
||||||
#
|
|
||||||
# 3. Change the values for the GKE_ZONE, GKE_CLUSTER, IMAGE, and DEPLOYMENT_NAME environment variables (below).
|
|
||||||
#
|
|
||||||
# For more support on how to run the workflow, please visit https://github.com/google-github-actions/setup-gcloud/tree/master/example-workflows/gke
|
|
||||||
|
|
||||||
name: Build and Deploy to GKE
|
|
||||||
|
|
||||||
on:
|
|
||||||
push:
|
|
||||||
branches:
|
|
||||||
- $default-branch
|
|
||||||
|
|
||||||
env:
|
|
||||||
PROJECT_ID: ${{ secrets.GKE_PROJECT }}
|
|
||||||
GKE_CLUSTER: cluster-1 # TODO: update to cluster name
|
|
||||||
GKE_ZONE: us-central1-c # TODO: update to cluster zone
|
|
||||||
DEPLOYMENT_NAME: gke-test # TODO: update to deployment name
|
|
||||||
IMAGE: static-site
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
setup-build-publish-deploy:
|
|
||||||
name: Setup, Build, Publish, and Deploy
|
|
||||||
runs-on: ubuntu-latest
|
|
||||||
environment: production
|
|
||||||
|
|
||||||
steps:
|
|
||||||
- name: Checkout
|
|
||||||
uses: actions/checkout@v2
|
|
||||||
|
|
||||||
# Setup gcloud CLI
|
|
||||||
- uses: google-github-actions/[email protected]
|
|
||||||
with:
|
|
||||||
service_account_key: ${{ secrets.GKE_SA_KEY }}
|
|
||||||
project_id: ${{ secrets.GKE_PROJECT }}
|
|
||||||
|
|
||||||
# Configure Docker to use the gcloud command-line tool as a credential
|
|
||||||
# helper for authentication
|
|
||||||
- run: |-
|
|
||||||
gcloud --quiet auth configure-docker
|
|
||||||
|
|
||||||
# Get the GKE credentials so we can deploy to the cluster
|
|
||||||
- uses: google-github-actions/[email protected]
|
|
||||||
with:
|
|
||||||
cluster_name: ${{ env.GKE_CLUSTER }}
|
|
||||||
location: ${{ env.GKE_ZONE }}
|
|
||||||
credentials: ${{ secrets.GKE_SA_KEY }}
|
|
||||||
|
|
||||||
# Build the Docker image
|
|
||||||
- name: Build
|
|
||||||
run: |-
|
|
||||||
docker build \
|
|
||||||
--tag "gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA" \
|
|
||||||
--build-arg GITHUB_SHA="$GITHUB_SHA" \
|
|
||||||
--build-arg GITHUB_REF="$GITHUB_REF" \
|
|
||||||
.
|
|
||||||
|
|
||||||
# Push the Docker image to Google Container Registry
|
|
||||||
- name: Publish
|
|
||||||
run: |-
|
|
||||||
docker push "gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA"
|
|
||||||
|
|
||||||
# Set up kustomize
|
|
||||||
- name: Set up Kustomize
|
|
||||||
run: |-
|
|
||||||
curl -sfLo kustomize https://github.com/kubernetes-sigs/kustomize/releases/download/v3.1.0/kustomize_3.1.0_linux_amd64
|
|
||||||
chmod u+x ./kustomize
|
|
||||||
|
|
||||||
# Deploy the Docker image to the GKE cluster
|
|
||||||
- name: Deploy
|
|
||||||
run: |-
|
|
||||||
./kustomize edit set image gcr.io/PROJECT_ID/IMAGE:TAG=gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA
|
|
||||||
./kustomize build . | kubectl apply -f -
|
|
||||||
kubectl rollout status deployment/$DEPLOYMENT_NAME
|
|
||||||
kubectl get services -o wide
|
|
||||||
@@ -1,81 +0,0 @@
|
|||||||
# This workflow will build a docker container, publish it to Google Container Registry, and deploy it to GKE when there is a push to the $default-branch branch.
|
|
||||||
#
|
|
||||||
# To configure this workflow:
|
|
||||||
#
|
|
||||||
# 1. Ensure that your repository contains the necessary configuration for your Google Kubernetes Engine cluster, including deployment.yml, kustomization.yml, service.yml, etc.
|
|
||||||
#
|
|
||||||
# 2. Set up secrets in your workspace: GKE_PROJECT with the name of the project and GKE_SA_KEY with the Base64 encoded JSON service account key (https://github.com/GoogleCloudPlatform/github-actions/tree/docs/service-account-key/setup-gcloud#inputs).
|
|
||||||
#
|
|
||||||
# 3. Change the values for the GKE_ZONE, GKE_CLUSTER, IMAGE, and DEPLOYMENT_NAME environment variables (below).
|
|
||||||
#
|
|
||||||
# For more support on how to run the workflow, please visit https://github.com/google-github-actions/setup-gcloud/tree/master/example-workflows/gke
|
|
||||||
|
|
||||||
name: Build and Deploy to GKE
|
|
||||||
|
|
||||||
on:
|
|
||||||
push:
|
|
||||||
branches:
|
|
||||||
- $default-branch
|
|
||||||
|
|
||||||
env:
|
|
||||||
PROJECT_ID: ${{ secrets.GKE_PROJECT }}
|
|
||||||
GKE_CLUSTER: cluster-1 # TODO: update to cluster name
|
|
||||||
GKE_ZONE: us-central1-c # TODO: update to cluster zone
|
|
||||||
DEPLOYMENT_NAME: gke-test # TODO: update to deployment name
|
|
||||||
IMAGE: static-site
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
setup-build-publish-deploy:
|
|
||||||
name: Setup, Build, Publish, and Deploy
|
|
||||||
runs-on: ubuntu-latest
|
|
||||||
environment: production
|
|
||||||
|
|
||||||
steps:
|
|
||||||
- name: Checkout
|
|
||||||
uses: actions/checkout@v2
|
|
||||||
|
|
||||||
# Setup gcloud CLI
|
|
||||||
- uses: google-github-actions/[email protected]
|
|
||||||
with:
|
|
||||||
service_account_key: ${{ secrets.GKE_SA_KEY }}
|
|
||||||
project_id: ${{ secrets.GKE_PROJECT }}
|
|
||||||
|
|
||||||
# Configure Docker to use the gcloud command-line tool as a credential
|
|
||||||
# helper for authentication
|
|
||||||
- run: |-
|
|
||||||
gcloud --quiet auth configure-docker
|
|
||||||
|
|
||||||
# Get the GKE credentials so we can deploy to the cluster
|
|
||||||
- uses: google-github-actions/[email protected]
|
|
||||||
with:
|
|
||||||
cluster_name: ${{ env.GKE_CLUSTER }}
|
|
||||||
location: ${{ env.GKE_ZONE }}
|
|
||||||
credentials: ${{ secrets.GKE_SA_KEY }}
|
|
||||||
|
|
||||||
# Build the Docker image
|
|
||||||
- name: Build
|
|
||||||
run: |-
|
|
||||||
docker build \
|
|
||||||
--tag "gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA" \
|
|
||||||
--build-arg GITHUB_SHA="$GITHUB_SHA" \
|
|
||||||
--build-arg GITHUB_REF="$GITHUB_REF" \
|
|
||||||
.
|
|
||||||
|
|
||||||
# Push the Docker image to Google Container Registry
|
|
||||||
- name: Publish
|
|
||||||
run: |-
|
|
||||||
docker push "gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA"
|
|
||||||
|
|
||||||
# Set up kustomize
|
|
||||||
- name: Set up Kustomize
|
|
||||||
run: |-
|
|
||||||
curl -sfLo kustomize https://github.com/kubernetes-sigs/kustomize/releases/download/v3.1.0/kustomize_3.1.0_linux_amd64
|
|
||||||
chmod u+x ./kustomize
|
|
||||||
|
|
||||||
# Deploy the Docker image to the GKE cluster
|
|
||||||
- name: Deploy
|
|
||||||
run: |-
|
|
||||||
./kustomize edit set image gcr.io/PROJECT_ID/IMAGE:TAG=gcr.io/$PROJECT_ID/$IMAGE:$GITHUB_SHA
|
|
||||||
./kustomize build . | kubectl apply -f -
|
|
||||||
kubectl rollout status deployment/$DEPLOYMENT_NAME
|
|
||||||
kubectl get services -o wide
|
|
||||||
@@ -1,7 +0,0 @@
|
|||||||
{
|
|
||||||
"name": "[Specific Docker] Deploy dockerfile to Amazon EKS",
|
|
||||||
"description": "Deploy a container to an Amazon EKS.",
|
|
||||||
"creator": "Amazon Web Services",
|
|
||||||
"iconName": "aws",
|
|
||||||
"categories": ["Deployment", "Dockerfile"]
|
|
||||||
}
|
|
||||||
@@ -1,7 +0,0 @@
|
|||||||
{
|
|
||||||
"name": "[Specific Node]Deploy to Amazon ECS",
|
|
||||||
"description": "Deploy a Node app to Amazon ECS service powered by AWS Fargate or Amazon EC2.",
|
|
||||||
"creator": "Amazon Web Services",
|
|
||||||
"iconName": "aws",
|
|
||||||
"categories": ["Deployment", "JavaScript", "npm"]
|
|
||||||
}
|
|
||||||
@@ -1,7 +0,0 @@
|
|||||||
{
|
|
||||||
"name": "[Specific Docker] Deploy dockerfile to AKS",
|
|
||||||
"description": "Build a dockerfile project and deploy it to AKS.",
|
|
||||||
"creator": "Microsoft Azure",
|
|
||||||
"iconName": "azure",
|
|
||||||
"categories": ["Deployment", "Dockerfile"]
|
|
||||||
}
|
|
||||||
Reference in New Issue
Block a user