From ad4ed45cd7eaed136f0876a44e1ebab23828c5fe Mon Sep 17 00:00:00 2001 From: Rob Winch Date: Mon, 16 Nov 2020 15:15:28 -0600 Subject: [PATCH] Provide artifactoryUsername/Password --- Jenkinsfile | 169 ++++++++++++++++++++++++++++++++-------------------- 1 file changed, 104 insertions(+), 65 deletions(-) diff --git a/Jenkinsfile b/Jenkinsfile index ba52fd1152..b7c7a48698 100644 --- a/Jenkinsfile +++ b/Jenkinsfile @@ -8,6 +8,23 @@ properties(projectProperties) def SUCCESS = hudson.model.Result.SUCCESS.toString() currentBuild.result = SUCCESS +def GRADLE_ENTERPRISE_CACHE_USER = usernamePassword(credentialsId: 'gradle_enterprise_cache_user', + passwordVariable: 'GRADLE_ENTERPRISE_CACHE_PASSWORD', + usernameVariable: 'GRADLE_ENTERPRISE_CACHE_USERNAME') +def GRADLE_ENTERPRISE_SECRET_ACCESS_KEY = string(credentialsId: 'gradle_enterprise_secret_access_key', + variable: 'GRADLE_ENTERPRISE_ACCESS_KEY') +def SPRING_SIGNING_SECRING = file(credentialsId: 'spring-signing-secring.gpg', variable: 'SIGNING_KEYRING_FILE') +def SPRING_GPG_PASSPHRASE = string(credentialsId: 'spring-gpg-passphrase', variable: 'SIGNING_PASSWORD') +def OSSRH_CREDENTIALS = usernamePassword(credentialsId: 'oss-token', passwordVariable: 'OSSRH_PASSWORD', usernameVariable: 'OSSRH_USERNAME') +def ARTIFACTORY_CREDENTIALS = usernamePassword(credentialsId: '02bd1690-b54f-4c9f-819d-a77cb7a9822c', usernameVariable: 'ARTIFACTORY_USERNAME', passwordVariable: 'ARTIFACTORY_PASSWORD') +def JENKINS_PRIVATE_SSH_KEY = file(credentialsId: 'docs.spring.io-jenkins_private_ssh_key', variable: 'DEPLOY_SSH_KEY') +def SONAR_LOGIN_CREDENTIALS = string(credentialsId: 'spring-sonar.login', variable: 'SONAR_LOGIN') + +def jdkEnv(String jdk = 'jdk8') { + def jdkTool = tool(jdk) + return "JAVA_HOME=${ jdkTool }" +} + try { parallel check: { stage('Check') { @@ -15,8 +32,15 @@ try { checkout scm sh "git clean -dfx" try { - withEnv(["JAVA_HOME=${ tool 'jdk8' }"]) { - sh "./gradlew clean check --refresh-dependencies --no-daemon --stacktrace" + withCredentials([GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY, + ARTIFACTORY_CREDENTIALS]) { + withEnv([jdkEnv(), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew check -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --stacktrace" + } } } catch(Exception e) { currentBuild.result = 'FAILED: check' @@ -32,13 +56,19 @@ try { node { checkout scm sh "git clean -dfx" - withCredentials([string(credentialsId: 'spring-sonar.login', variable: 'SONAR_LOGIN')]) { + withCredentials([SONAR_LOGIN_CREDENTIALS, + GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY, + ARTIFACTORY_CREDENTIALS]) { try { - withEnv(["JAVA_HOME=${ tool 'jdk8' }"]) { + withEnv([jdkEnv(), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { if ("master" == env.BRANCH_NAME) { - sh "./gradlew sonarqube -PexcludeProjects='**/samples/**' -Dsonar.host.url=$SPRING_SONAR_HOST_URL -Dsonar.login=$SONAR_LOGIN --refresh-dependencies --no-daemon --stacktrace" + sh "./gradlew sonarqube -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD -PexcludeProjects='**/samples/**' -Dsonar.host.url=$SPRING_SONAR_HOST_URL -Dsonar.login=$SONAR_LOGIN --stacktrace" } else { - sh "./gradlew sonarqube -PexcludeProjects='**/samples/**' -Dsonar.projectKey='spring-security-${env.BRANCH_NAME}' -Dsonar.projectName='spring-security-${env.BRANCH_NAME}' -Dsonar.host.url=$SPRING_SONAR_HOST_URL -Dsonar.login=$SONAR_LOGIN --refresh-dependencies --no-daemon --stacktrace" + sh "./gradlew sonarqube -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD -PexcludeProjects='**/samples/**' -Dsonar.projectKey='spring-security-${env.BRANCH_NAME}' -Dsonar.projectName='spring-security-${env.BRANCH_NAME}' -Dsonar.host.url=$SPRING_SONAR_HOST_URL -Dsonar.login=$SONAR_LOGIN --stacktrace" } } } catch(Exception e) { @@ -55,8 +85,15 @@ try { checkout scm sh "git clean -dfx" try { - withEnv(["JAVA_HOME=${ tool 'jdk8' }"]) { - sh "./gradlew clean test -PforceMavenRepositories=snapshot -PspringVersion='5.2.+' -PreactorVersion=Dysprosium-BUILD-SNAPSHOT -PspringDataVersion=Lovelace-BUILD-SNAPSHOT -PlocksDisabled --refresh-dependencies --no-daemon --stacktrace" + withCredentials([GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY, + ARTIFACTORY_CREDENTIALS]) { + withEnv([jdkEnv(), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew test -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --refresh-dependencies -PforceMavenRepositories=snapshot -PspringVersion='5.2.+' -PreactorVersion='Dysprosium-BUILD-SNAPSHOT' -PspringDataVersion='Neumann-BUILD-SNAPSHOT' -PrsocketVersion='1.0.+' -PspringBootVersion='2.3.+' -PlocksDisabled --stacktrace" + } } } catch(Exception e) { currentBuild.result = 'FAILED: snapshots' @@ -65,46 +102,22 @@ try { } } }, - jdk9: { - stage('JDK 9') { - node { - checkout scm - sh "git clean -dfx" - try { - withEnv(["JAVA_HOME=${ tool 'jdk9' }"]) { - sh "./gradlew clean test --refresh-dependencies --no-daemon --stacktrace" - } - } catch(Exception e) { - currentBuild.result = 'FAILED: jdk9' - throw e - } - } - } - }, - jdk10: { - stage('JDK 10') { - node { - checkout scm - sh "git clean -dfx" - try { - withEnv(["JAVA_HOME=${ tool 'jdk10' }"]) { - sh "./gradlew clean test --refresh-dependencies --no-daemon --stacktrace" - } - } catch(Exception e) { - currentBuild.result = 'FAILED: jdk10' - throw e - } - } - } - }, jdk11: { stage('JDK 11') { node { checkout scm sh "git clean -dfx" try { - withEnv(["JAVA_HOME=${ tool 'jdk11' }"]) { - sh "./gradlew clean test --refresh-dependencies --no-daemon --stacktrace" + + withCredentials([GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY, + ARTIFACTORY_CREDENTIALS]) { + withEnv([jdkEnv("jdk11"), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew test -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --stacktrace" + } } } catch(Exception e) { currentBuild.result = 'FAILED: jdk11' @@ -119,8 +132,15 @@ try { checkout scm sh "git clean -dfx" try { - withEnv(["JAVA_HOME=${ tool 'openjdk12' }"]) { - sh "./gradlew clean test --refresh-dependencies --no-daemon --stacktrace" + withCredentials([GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY, + ARTIFACTORY_CREDENTIALS]) { + withEnv([jdkEnv("openjdk12"), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew test -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --stacktrace" + } } } catch(Exception e) { currentBuild.result = 'FAILED: jdk12' @@ -136,15 +156,18 @@ try { node { checkout scm sh "git clean -dfx" - withCredentials([file(credentialsId: 'spring-signing-secring.gpg', variable: 'SIGNING_KEYRING_FILE')]) { - withCredentials([string(credentialsId: 'spring-gpg-passphrase', variable: 'SIGNING_PASSWORD')]) { - withCredentials([usernamePassword(credentialsId: 'oss-token', passwordVariable: 'OSSRH_PASSWORD', usernameVariable: 'OSSRH_USERNAME')]) { - withCredentials([usernamePassword(credentialsId: '02bd1690-b54f-4c9f-819d-a77cb7a9822c', usernameVariable: 'ARTIFACTORY_USERNAME', passwordVariable: 'ARTIFACTORY_PASSWORD')]) { - withEnv(["JAVA_HOME=${ tool 'jdk8' }"]) { - sh "./gradlew deployArtifacts finalizeDeployArtifacts -Psigning.secretKeyRingFile=$SIGNING_KEYRING_FILE -Psigning.keyId=$SPRING_SIGNING_KEYID -Psigning.password='$SIGNING_PASSWORD' -PossrhUsername=$OSSRH_USERNAME -PossrhPassword=$OSSRH_PASSWORD -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --refresh-dependencies --no-daemon --stacktrace" - } - } - } + withCredentials([SPRING_SIGNING_SECRING, + SPRING_GPG_PASSPHRASE, + OSSRH_CREDENTIALS, + ARTIFACTORY_CREDENTIALS, + GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY]) { + withEnv([jdkEnv(), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew deployArtifacts -Psigning.secretKeyRingFile=$SIGNING_KEYRING_FILE -Psigning.keyId=$SPRING_SIGNING_KEYID -Psigning.password='$SIGNING_PASSWORD' -PossrhUsername=$OSSRH_USERNAME -PossrhPassword=$OSSRH_PASSWORD -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --stacktrace --no-parallel" + sh "./gradlew finalizeDeployArtifacts -Psigning.secretKeyRingFile=$SIGNING_KEYRING_FILE -Psigning.keyId=$SPRING_SIGNING_KEYID -Psigning.password='$SIGNING_PASSWORD' -PossrhUsername=$OSSRH_USERNAME -PossrhPassword=$OSSRH_PASSWORD -PartifactoryUsername=$ARTIFACTORY_USERNAME -PartifactoryPassword=$ARTIFACTORY_PASSWORD --stacktrace --no-parallel" } } } @@ -155,9 +178,17 @@ try { node { checkout scm sh "git clean -dfx" - withCredentials([file(credentialsId: 'docs.spring.io-jenkins_private_ssh_key', variable: 'DEPLOY_SSH_KEY')]) { - withEnv(["JAVA_HOME=${ tool 'jdk8' }"]) { - sh "./gradlew deployDocs -PdeployDocsSshKeyPath=$DEPLOY_SSH_KEY -PdeployDocsSshUsername=$SPRING_DOCS_USERNAME --refresh-dependencies --no-daemon --stacktrace" + withCredentials([JENKINS_PRIVATE_SSH_KEY, + SPRING_GPG_PASSPHRASE, + OSSRH_CREDENTIALS, + ARTIFACTORY_CREDENTIALS, + GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY]) { + withEnv([jdkEnv(), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew deployDocs -PdeployDocsSshKeyPath=$DEPLOY_SSH_KEY -PdeployDocsSshUsername=$SPRING_DOCS_USERNAME --stacktrace" } } } @@ -168,9 +199,17 @@ try { node { checkout scm sh "git clean -dfx" - withCredentials([file(credentialsId: 'docs.spring.io-jenkins_private_ssh_key', variable: 'DEPLOY_SSH_KEY')]) { - withEnv(["JAVA_HOME=${ tool 'jdk8' }"]) { - sh "./gradlew deploySchema -PdeployDocsSshKeyPath=$DEPLOY_SSH_KEY -PdeployDocsSshUsername=$SPRING_DOCS_USERNAME --refresh-dependencies --no-daemon --stacktrace" + withCredentials([JENKINS_PRIVATE_SSH_KEY, + SPRING_GPG_PASSPHRASE, + OSSRH_CREDENTIALS, + ARTIFACTORY_CREDENTIALS, + GRADLE_ENTERPRISE_CACHE_USER, + GRADLE_ENTERPRISE_SECRET_ACCESS_KEY]) { + withEnv([jdkEnv(), + "GRADLE_ENTERPRISE_CACHE_USERNAME=${GRADLE_ENTERPRISE_CACHE_USERNAME}", + "GRADLE_ENTERPRISE_CACHE_PASSWORD=${GRADLE_ENTERPRISE_CACHE_PASSWORD}", + "GRADLE_ENTERPRISE_ACCESS_KEY=${GRADLE_ENTERPRISE_ACCESS_KEY}"]) { + sh "./gradlew deploySchema -PdeployDocsSshKeyPath=$DEPLOY_SSH_KEY -PdeployDocsSshUsername=$SPRING_DOCS_USERNAME --stacktrace" } } } @@ -194,12 +233,12 @@ try { def subject = "${buildStatus}: Build ${env.JOB_NAME} ${env.BUILD_NUMBER} status is now ${buildStatus}" def details = """The build status changed to ${buildStatus}. For details see ${env.BUILD_URL}""" - emailext ( - subject: subject, - body: details, - recipientProviders: RECIPIENTS, - to: "$SPRING_SECURITY_TEAM_EMAILS" - ) + emailext ( + subject: subject, + body: details, + recipientProviders: RECIPIENTS, + to: "$SPRING_SECURITY_TEAM_EMAILS" + ) } } }