Skip to content

ci: kekw

ci: kekw #49

Workflow file for this run

name: main
on:
push:
branches:
- master
jobs:
build:
name: Build and push
runs-on: ubuntu-latest
permissions:
contents: write
id-token: write
strategy:
matrix:
module: [azure, idporten]
steps:
- name: Checkout latest code
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # ratchet:actions/checkout@v4
- name: Set up JDK 21
uses: actions/setup-java@99b8673ff64fbf99d8d325f52d9a5bdedb8483e9 # ratchet:actions/setup-java@v4
with:
java-version: '21'
distribution: 'temurin'
cache: 'gradle'
- name: Verify Gradle wrapper checksum
uses: gradle/actions/wrapper-validation@dbbdc275be76ac10734476cc723d82dfe7ec6eda # ratchet:gradle/actions/wrapper-validation@v3
- name: Setup Gradle to generate and submit dependency graphs
uses: gradle/actions/setup-gradle@dbbdc275be76ac10734476cc723d82dfe7ec6eda # ratchet:gradle/actions/setup-gradle@v3
with:
dependency-graph: generate-and-submit
- name: Build with Gradle
run: ./gradlew clean wonderwalled-${{ matrix.module }}:build wonderwalled-${{ matrix.module }}:shadowJar
env:
ORG_GRADLE_PROJECT_githubUser: x-access-token
ORG_GRADLE_PROJECT_githubPassword: ${{ secrets.GITHUB_TOKEN }}
- uses: nais/platform-build-push-sign@main # ratchet:exclude
id: build_push_sign
with:
name: wonderwalled-${{ matrix.module }}
context: ./wonderwalled-${{ matrix.module }}
dockerfile: ./wonderwalled-${{ matrix.module }}/Dockerfile
google_service_account: gh-wonderwalled
multi-platform: true
push: true
workload_identity_provider: ${{ secrets.NAIS_IO_WORKLOAD_IDENTITY_PROVIDER }}
- uses: nais/deploy/actions/deploy@v2 # ratchet:exclude
env:
APIKEY: ${{ secrets.NAIS_DEPLOY_APIKEY }}
CLUSTER: dev-gcp
RESOURCE: .nais/${{ matrix.module }}.yaml,.nais/${{ matrix.module }}-token-generator.yaml
IMAGE: ${{ steps.build_push_sign.outputs.tag }}