Jenkins file一行代码部署.NET程序到K8S
什么是Jenkins共享库
随着微服务的增多,每个项目的都需要pipline文件,这样的话Pipeline代码冗余度高,并且pipeline的功能越来越复杂。
jenkins可以使用Shared Lib,将一些公共的pipeline抽象做成模块代码,在各种项目pipeline之间复用,以减少冗余。
共享库目录结构
- 共享库根目录
- |-- vars
- |-- test1.groovy
- |-- src
- |-- test2.groovy
- |-- resources
vars: 依赖于Jenkins运行环境的Groovy脚本。其中的Groovy脚本被称之为全局变量。
src: 标准的Java源码目录结构,其中的Groovy脚本被称为类库(Library class)。
resources: 目录允许从外部库中使用 libraryResource 步骤来加载有关的非 Groovy 文件。
引用共享库的方式
- #!/usr/bin/env groovy
- // 引用默认配置的共享库
- @Library('demo-shared-library') _
- // 引用指定分支、tag的共享库代码
- @Library('demo-shared-library@1.0') _
- // 引用多个指定分支tag的共享库
- @Library('demo-shared-library@$Branch/Tag','demo-shared-library-test@$Branch/Tag') _
- @Library('utils') import org.foo.Utilities
- @Library('utils') import static org.foo.Utilities.*
vars下的全局变量
/vars下的全局变量必须以全小写或驼峰(camelCased)
/vars/*.groovy若实现call()方法,直接引用时默认执行其中的方法
实现一行代码部署.NET程序到K8S
安装Jenkins Master
- # master
- docker run --name jenkins-blueocean -u root --privileged -d -p 8080:8080 -p 50000:50000 -v D:/architecture/jenkins/data:/var/jenkins_home -v /var/run/docker.sock:/var/run/docker.sock jenkinsci/blueocean
- # 访问:http://ip:8080/
- # jenkins密码,查看容器日志: 7285ced325a24483bfdaab227415fdac
- # 安装推荐插件
安装Jenkins Agent
- Name: agent2/agent3
- Labels: agentnode
- Launch method: Launch agent by connecting it to the master
Build Agent Docker Image
- # slave
- # Dockerfile
- FROM jenkins/inbound-agent:latest
- USER root
- RUN apt-get update
- RUN apt-get -y install ca-certificates curl gnupg lsb-release
- RUN curl -fsSL https://get.docker.com -o get-docker.sh
- RUN sh get-docker.sh
- RUN curl -LO "https://dl.k8s.io/release/$(curl -L -s https://dl.k8s.io/release/stable.txt)/bin/linux/amd64/kubectl"
- RUN install -o root -g root -m 0755 kubectl /usr/local/bin/kubectl
- RUN kubectl version --client
- ENV JMETER_VERSION=5.4.1
- ENV JMETER_HOME=/jmeter/apache-jmeter-${JMETER_VERSION}
- ENV JMETER_PATH=${JMETER_HOME}/bin:${PATH}
- ENV PATH=${JMETER_HOME}/bin:${PATH}
- RUN mkdir /jmeter
- COPY apache-jmeter-${JMETER_VERSION}.tgz /jmeter
- RUN cd /jmeter && tar xvf apache-jmeter-${JMETER_VERSION}.tgz #其中tgz文件请去官网下载
- RUN sed -i 's/#jmeter.save.saveservice.output_format=csv/jmeter.save.saveservice.output_format=xml/g' /jmeter/apache-jmeter-5.4.1/bin/jmeter.properties
- docker build -t chesterjenkinsagent .
- docker tag chesterjenkinsagent:latest 192.168.43.95/jenkins/chesterjenkinsagent:v1
- docker login --username=admin --password=123456 192.168.43.95
- docker push 192.168.43.95/jenkins/chesterjenkinsagent:v1
运行Agent,其中的密钥通过jenkins的agent信息获取
- # agent4
- docker run -v /var/run/docker.sock:/var/run/docker.sock --name agent4 -d --init 192.168.43.95/jenkins/chesterjenkinsagent:v1 -url http://192.168.43.94:8080 1e84c896dbffc0c325587eedb6301ab0ae66d3f4b49c4628dbb05714e382d7a2 agent4
新增K8S凭据
- 将k8s集群的配置文件导出 ~/.kube/config
- Mange Jenkins -> Manage Credentials -> Add Credentials -> Secret File
- 选择导出的kubeconfig,设置id为kubeconfig
新增Harbor凭据
- Mange Jenkins -> Manage Credentials -> Add Credentials -> Username with password
- 输入Harbor的用户名密码
新增Gitee凭据
- Mange Jenkins -> Manage Credentials -> Add Credentials -> Username with password
- 输入Gitee的用户名密码
安装插件
Manage Jenkins -> Manage Plugins -> Search "Performance" -> install
管理共享库

共享库中新增以下代码
vars/run.groovy
- #!/usr/bin/env groovy
- def call(String nameSpaceName, String serviceName, String servicePath, String servicePort, String nodePort, Map envInfo) {
- def devBranch = envInfo['dev']
- def prodBranch = envInfo['prod']
- pipeline {
- agent {
- label 'agentnode'
- }
- environment {
- DEV_MY_KUBECONFIG = credentials('kubeconfig')
- PROD_MY_KUBECONFIG = credentials('kubeconfig')
- HARBOR = credentials('harbor')
- }
- stages {
- stage('Dev - GitPull') {
- steps {
- deleteDir()
- gitCheckOut devBranch, env.GIT_URL
- }
- post {
- success {
- script {
- echo 'pull done'
- }
- }
- }
- }
- stage('Dev - DockerBuild') {
- steps {
- dockerImageBuild serviceName, "${servicePath}Dockerfile"
- }
- }
- stage('Dev - DockerTag') {
- steps {
- dockerTag serviceName, 'dev'
- }
- }
- stage('Dev - DockerLogin') {
- steps {
- dockerLogin 'dev'
- }
- }
- stage('Dev - DockerPush') {
- steps {
- dockerPush serviceName, 'dev'
- }
- }
- stage('Dev - GenerateHarborSecretYAML') {
- steps {
- harborSecret nameSpaceName, serviceName, 'dev'
- }
- }
- stage('Dev - GenerateK8SYAML') {
- steps {
- k8sGenerateYaml nameSpaceName, serviceName, servicePath, 'dev', servicePort, nodePort
- }
- }
- stage('Dev - DeployToK8S') {
- steps {
- k8sDeploy servicePath, 'dev'
- }
- }
- stage('Dev - CheckDeployStatus') {
- steps {
- k8sCheckDeployStatus nameSpaceName, serviceName, 'dev'
- }
- }
- stage('Dev - Jmeter Test') {
- steps {
- jmeterTest servicePath
- }
- }
- stage('DeployToProd?') {
- steps {
- input '部署生产?'
- }
- }
- stage('Prod - GitPull') {
- steps {
- gitCheckOut prodBranch, env.GIT_URL
- }
- }
- stage('Prod - DockerBuild') {
- steps {
- dockerImageBuild serviceName, "${servicePath}Dockerfile"
- }
- }
- stage('Prod - DockerTag') {
- steps {
- dockerTag serviceName, 'prod'
- }
- }
- stage('Prod - DockerLogin') {
- steps {
- dockerLogin 'prod'
- }
- }
- stage('Prod - DockerPush') {
- steps {
- dockerPush serviceName, 'prod'
- }
- }
- stage('Prod - GenerateHarborSecretYAML') {
- steps {
- harborSecret nameSpaceName, serviceName, 'prod'
- }
- }
- stage('Prod - GenerateK8SYAML') {
- steps {
- k8sGenerateYaml nameSpaceName, serviceName, servicePath, 'prod', servicePort, nodePort
- }
- }
- stage('Prod - DeployToK8S') {
- steps {
- k8sDeploy servicePath, 'prod'
- }
- }
- stage('Prod - CheckDeployStatus') {
- steps {
- k8sCheckDeployStatus nameSpaceName, serviceName, 'prod'
- }
- }
- }
- }
- }
vars/dockerImageBuild.groovy
- #!/usr/bin/env groovy
- def call(String serviceName, String dockerfilePath) {
- echo "serviceName:${serviceName} dockerfilePath:${dockerfilePath}"
- sh "docker build -t ${serviceName} -f ${dockerfilePath} ."
- }
vars/dockerLogin.groovy
- #!/usr/bin/env groovy
- def call(String envName) {
- sh 'docker login --username=$HARBOR_USR --password=$HARBOR_PSW 192.168.43.95'
- }
vars/dockerPush.groovy
- #!/usr/bin/env groovy
- def call(String serviceName,String envName) {
- sh "docker push 192.168.43.95/dapr/${serviceName}:${envName}-${BUILD_NUMBER}"
- }
vars/dockerTag.groovy
- #!/usr/bin/env groovy
- def call(String serviceName, String envName) {
- sh "docker tag ${serviceName}:latest 192.168.43.95/dapr/${serviceName}:${envName}-${BUILD_NUMBER}"
- }
vars/gitCheckOut.groovy
- #!/usr/bin/env groovy
- def call(String branchName, String gitUrl) {
- echo "branchName:${branchName} gitUrl:${gitUrl}"
- checkout([$class: 'GitSCM', branches: [[name: branchName]], extensions: [], userRemoteConfigs: [[credentialsId: 'gitee', url: gitUrl]]])
- }
vars/harborSecret.groovy
- def call(String namespaceName, String serviceName, String envName) {
- dir('harborsecret') {
- checkout([$class: 'GitSCM', branches: [[name: '*/master']], extensions: [], userRemoteConfigs: [[credentialsId: 'gitee', url: 'https://gitee.com/chesterdotchen/jenkins-demo-secrets.git']]])
- sh """sed -i 's/{{ServiceName}}/${serviceName}/g' secrets.yaml"""
- sh """sed -i 's/{{NameSpaceName}}/${namespaceName}/g' secrets.yaml"""
- if (envName == 'dev') {
- sh("kubectl --kubeconfig ${DEV_MY_KUBECONFIG} apply -f secrets.yaml")
- }
- if (envName == 'prod') {
- sh("kubectl --kubeconfig ${PROD_MY_KUBECONFIG} apply -f secrets.yaml")
- }
- }
- }
vars/jmeterTest.groovy
- #!/usr/bin/env groovy
- def call(String servicePath) {
- sh "jmeter -j jmeter.save.saveservice.output_format=xml -n -t ${servicePath}jmeter.jmx -l ${servicePath}jmeter.report.jtl"
- sh "cp ${servicePath}jmeter.report.jtl ${servicePath}jmeter.report.${BUILD_NUMBER}.jtl"
- perfReport errorFailedThreshold:5, sourceDataFiles:"${servicePath}jmeter.report.jtl"
- sh "cat ${servicePath}jmeter.report.${BUILD_NUMBER}.jtl"
- sh """#!/bin/sh
- grep '<failure>true</failure>' ${servicePath}jmeter.report.${BUILD_NUMBER}.jtl
- if [ \$? = 0 ]
- then
- exit 1
- else
- exit 0
- fi
- """
- }
vars/k8sCheckDeployStatus.groovy
- #!/usr/bin/env groovy
- def call(String nameSpaceName, String serviceName, String envName) {
- if (envName == 'dev') {
- sh("""
- ATTEMPTS=0
- ROLLOUT_STATUS_CMD='kubectl --kubeconfig ${DEV_MY_KUBECONFIG} rollout status deployment/${serviceName} -n ${nameSpaceName}-ns'
- until \$ROLLOUT_STATUS_CMD || [ \$ATTEMPTS -eq 60 ]; do
- \$ROLLOUT_STATUS_CMD
- ATTEMPTS=\$((attempts + 1))
- sleep 10
- done
- """)
- }
- if (envName == 'prod') {
- sh("""
- ATTEMPTS=0
- ROLLOUT_STATUS_CMD='kubectl --kubeconfig ${PROD_MY_KUBECONFIG} rollout status deployment/${serviceName} -n ${nameSpaceName}-ns'
- until \$ROLLOUT_STATUS_CMD || [ \$ATTEMPTS -eq 60 ]; do
- \$ROLLOUT_STATUS_CMD
- ATTEMPTS=\$((attempts + 1))
- sleep 10
- done
- """)
- }
- }
vars/k8sDeploy.groovy
- #!/usr/bin/env groovy
- def call(String servicePath, String envName) {
- if (envName == 'dev') {
- sh("kubectl --kubeconfig ${DEV_MY_KUBECONFIG} apply -f ${servicePath}deployment.yaml")
- }
- if (envName == 'prod') {
- sh("kubectl --kubeconfig ${PROD_MY_KUBECONFIG} apply -f ${servicePath}deployment.yaml")
- }
- }
vars/k8sGenerateYaml.groovy
- #!/usr/bin/env groovy
- def call(String namespaceName, String serviceName, String servicePath, String envName, String servicePort, String nodePort) {
- sh """sed "s/{{tagversion}}/${envName}-${BUILD_NUMBER}/g" ${servicePath}deployment.yaml.tpl > ${servicePath}deployment.yaml """
- sh """sed -i 's/{{ServiceName}}/${serviceName}/g' ${servicePath}deployment.yaml"""
- sh """sed -i 's/{{ServicePort}}/${servicePort}/g' ${servicePath}deployment.yaml"""
- sh """sed -i 's/{{NodePort}}/${nodePort}/g' ${servicePath}deployment.yaml"""
- sh """sed -i 's/{{NameSpaceName}}/${namespaceName}/g' ${servicePath}deployment.yaml"""
- }
jenkins-demo-secrets中代码如下
- apiVersion: v1
- kind: Namespace
- metadata:
- name: {{NameSpaceName}}-ns
- ---
- apiVersion: v1
- kind: Secret
- metadata:
- name: harbor-key
- namespace: {{NameSpaceName}}-ns
- type: kubernetes.io/dockerconfigjson
- data:
- .dockerconfigjson: ewoJImF1dGhzIjogewoJCSIxOTIuMTY4LjQzLjk1IjogewoJCQkiYXV0aCI6ICJZV1J0YVc0Nk1USXpORFUyIgoJCX0sCgkJInJlZ2lzdHJ5LmNuLWJlaWppbmcuYWxpeXVuY3MuY29tIjogewoJCQkiYXV0aCI6ICI2Wm1JNUxpQTU0dXVPbU5vWlc1NWFYTm9hVEV5TXc9PSIKCQl9Cgl9Cn0=
dockerconfigjson可通过以下方式获取
- docker login --username=admin --password=123456 192.168.43.95
- cat ~/.docker/config.json | base64
Jenkinsfile中引用共享库
项目库中需要提前编写好Dockerfile,Jenkinsfile,deployment.yaml.tpl,jmeter.jmx
Dockerfile
- #See https://aka.ms/containerfastmode to understand how Visual Studio uses this Dockerfile to build your images for faster debugging.
- FROM mcr.microsoft.com/dotnet/aspnet:5.0 AS base
- WORKDIR /app
- EXPOSE 5001
- FROM mcr.microsoft.com/dotnet/sdk:5.0 AS build
- WORKDIR /src
- COPY ["FrontEnd/FrontEnd.csproj", "FrontEnd/"]
- COPY ["Common/Common.csproj", "Common/"]
- RUN dotnet restore "FrontEnd/FrontEnd.csproj"
- COPY . .
- WORKDIR "/src/FrontEnd"
- RUN dotnet build "FrontEnd.csproj" -c Release -o /app/build
- FROM build AS publish
- RUN dotnet publish "FrontEnd.csproj" -c Release -o /app/publish
- FROM base AS final
- WORKDIR /app
- COPY --from=publish /app/publish .
- ENTRYPOINT ["dotnet", "FrontEnd.dll"]
Jenkinsfile
- #!/usr/bin/env groovy
- @Library('share@master') _
- run 'daprtest', 'frontend', './FrontEnd/', '5001', '31111', ['dev':'*/master', 'prod':'*/master']
deployment.yaml.tpl
- apiVersion: v1
- kind: Namespace
- metadata:
- name: {{NameSpaceName}}-ns
- ---
- apiVersion: dapr.io/v1alpha1
- kind: Component
- metadata:
- name: statestore
- namespace: {{NameSpaceName}}-ns
- spec:
- type: state.redis
- version: v1
- metadata:
- - name: redisHost
- value: 192.168.43.102:6379
- - name: redisPassword
- value: "123456"
- - name: actorStateStore
- value: "true"
- ---
- apiVersion: apps/v1
- kind: Deployment
- metadata:
- name: {{ServiceName}}
- namespace: {{NameSpaceName}}-ns
- labels:
- app: {{ServiceName}}
- spec:
- replicas: 1
- selector:
- matchLabels:
- app: {{ServiceName}}
- template:
- metadata:
- namespace: {{NameSpaceName}}-ns
- labels:
- app: {{ServiceName}}
- annotations:
- dapr.io/enabled: "true"
- dapr.io/app-id: "{{ServiceName}}"
- dapr.io/app-port: "{{ServicePort}}"
- spec:
- imagePullSecrets:
- - name: harbor-key
- containers:
- - name: {{ServiceName}}
- image: 192.168.43.95/dapr/{{ServiceName}}:{{tagversion}}
- ports:
- - containerPort: {{ServicePort}}
- imagePullPolicy: Always
- ---
- apiVersion: v1
- kind: Service
- metadata:
- namespace: {{NameSpaceName}}-ns
- name: {{ServiceName}}-svc
- spec:
- type: NodePort
- selector:
- app: {{ServiceName}}
- ports:
- - port: {{ServicePort}}
- targetPort: {{ServicePort}}
- nodePort: {{NodePort}}
jmter.jmx则根据需要自行编写
新建pipline
其中的URL指向自己项目的git地址
构建pipline
至此,我们已经完成了Jenkinsfile中一行代码部署我们的项目,如果有新的service,在编写好Dockerfile,deployment.yaml.tpl(保持一致),jmeter.jmx的前提下,我们只需要Jenkinsfile中通过共享库引用run方法即可
Jenkins file一行代码部署.NET程序到K8S的更多相关文章
- 一行代码让微信小程序支持 cookie
weapp-cookie 一行代码让微信小程序支持 cookie,传送门:github Intro 微信原生的 wx.request 网络请求接口并不支持传统的 Cookie,但有时候我们现有的后端接 ...
- 写在最前面 - 《看懂每一行代码 - kubernetes》
我要写什么 <看懂每一行代码 - kubernetes>会包含k8s整个项目的源码解析,考虑到门槛问题,在开始分析k8s之前我会通过一些更低难度的golang开源项目讲解来帮助大家提升go ...
- 【转】jenkins自动化部署项目7 -- 新建job(将服务代码部署在windows上)
关于构建结束后jenkins会kill所有衍生子进程的官方解决方案:https://wiki.jenkins.io/display/JENKINS/Spawning+processes+from+bu ...
- jenkins自动化部署项目7 -- 新建job(将服务代码部署在windows上)
关于构建结束后jenkins会kill所有衍生子进程的官方解决方案:https://wiki.jenkins.io/display/JENKINS/Spawning+processes+from+bu ...
- Centos7.4简单安装使用gitlab+maven+jenkins实现java代码的持续集成部署
1.工具的简单介绍 gitlab--源代码版本管理控制工具 maven--java代码编译构建工具 jenkins--基于java开发的自动化持续集成部署工具 sonar--代码质量管理工具 2.gi ...
- Docker搭建Jenkins+Maven/Gradle——代码自动化运维部署平台(二)
一.简介 1.Jenkins 概述: Jenkins是一个功能强大的应用程序,允许持续集成和持续交付项目,无论用的是什么平台.这是一个免费的源代码,可以处理任何类型的构建或持续集成.集成Jenkins ...
- Jenkins与网站代码上线解决方案
1.1 前言 Jenkins是一个用Java编写的开源的持续集成工具.在与Oracle发生争执后,项目从Hudson项目独立. Jenkins提供了软件开发的持续集成服务.它运行在Servlet容器中 ...
- Java核心技术卷一基础知识-第10章-部署应用程序和applet-读书笔记
第10章 部署应用程序和applet 本章内容: * JAR文件 * Java Web Start * applet * 应用程序首选项存储 10.1 JAR文件 一个JAR文件既可以包含类文件,也可 ...
- Jenkins与网站代码上线解决方案【转】
转自 Jenkins与网站代码上线解决方案 - 惨绿少年 https://www.nmtui.com/clsn/lx524.html 1.1 前言 Jenkins是一个用Java编写的开源的持续集成工 ...
随机推荐
- 一文让你彻底理解group by和聚合函数
知道group by是进行分组查询,但是一直觉得对其理解得不够透彻,在网上扒了一篇文章,我认为写得非常好. 为什么不能够select * from Table group by id,为什么一定不能是 ...
- 2021牛客暑期多校训练营9C-Cells【LGV引理,范德蒙德行列式】
正题 题目链接:https://ac.nowcoder.com/acm/contest/11260/C 题目大意 一个平面上,\(n\)个起点\((0,a_i)\)分别对应终点\((i,0)\),每次 ...
- 记一次centos挂载ceph存储的坑
起因 生产有两台服务器,准备用来跑工作流,执行的资源的是放在ceph存储集群中,第一步挂载ceph 执行命令:mount -t ceph xxx:xxx -o name=admin,secret=AQ ...
- 关于Windows操作系统重定向
在用C++做一个文件遍历的时候发现,当我遍历C:\Windows\system32文件夹时,获取到的文件数目和实际总是对不上.在通过他人帮助后了解到了重定向这个概念,我百度了一下,下面为粘贴内容. S ...
- 小白自制Linux开发板 二. u-boot移植
上一篇:小白自制Linux开发板 一. 瞎抄原理图与乱画PCB 中我们做了一个小型而没用的开发板,用的是Licheepi Nano的镜像,那从本篇开始我们开始自己构建它的灵魂吧. 我们都知道,PC在 ...
- PyCharm插件开发实践-PyGetterAndSetter
背景需求 在面向对象的设计中,典型如Java语言,为了控制对象属性的修改入口,我们常用的做法是把属性设置为private,然后通过getter和setter方法访问.修改该属性. 但是在Pthon语言 ...
- JDK源码阅读:String类阅读笔记
String public final class String implements java.io.Serializable, Comparable<String>, CharSequ ...
- 一个故事,一段代码告诉你如何使用不同语言(Golang&C#)提供相同的能力基于Consul做服务注册与发现
目录 引言 什么是微服务 传统服务 微服务 什么是服务注册与服务发现 为什么要使用不同的语言提供相同的服务能力 服务协调器 服务注册 Golang C#(.NetCore3.1) 服务发现 通过Htt ...
- nvidia jetson xavier 风扇开机自启动
作者声明 版权声明:本文为博主原创文章,遵循CC 4.0 BY-SA版权协议,转载请附上原文出处链接和本声明. 原文链接:https://www.cnblogs.com/phoenixash/p/15 ...
- 洛谷T31018 经典题丶改(LCT+离线)
真的是一个大好题啊! QWQ首先我们考虑这种问题,如果直接在线做,估计应该是做不了,那我们是不是可以直接考虑离线. 将所有询问都按照\(r\)来排序. 然后依次加入每条边,计算\(a[i]<=n ...