34 Commits

Author SHA1 Message Date
Aarnav Tale
5aa0d1bacd chore: v1.2.0 2023-06-28 22:16:04 -04:00
Aarnav Tale
93d421ead9 feat: use github actions env for windows check for extra resiliency 2023-06-28 22:15:24 -04:00
Aarnav Tale
e49d06518c feat: support arch and darwin/linux properly 2023-06-28 22:14:43 -04:00
Aarnav Tale
69c8dc994c chore: add better failure message for version resolving failures on kubectl 2023-06-28 22:09:13 -04:00
Aarnav Tale
e70828b58c fix: typo in teardown error message 2023-06-28 22:07:52 -04:00
Aarnav Tale
d7c0fa7a71 chore: update packages 2023-06-28 22:06:56 -04:00
Aarnav Tale
9d3c93f137 chore: v1.1.3 2023-02-15 14:56:50 -05:00
Aarnav Tale
ce29488755 feat: use actions tool-cache 2023-02-15 14:50:20 -05:00
Aarnav Tale
f08750dda0 fix: set permission to 775 not 755 2023-02-15 14:15:14 -05:00
Aarnav Tale
a3a1ddb586 revert: "fix: chmod with 775 after install (closes #4)"
This reverts commit b413e7e15e.
2023-02-15 13:45:10 -05:00
Aarnav Tale
b413e7e15e fix: chmod with 775 after install (closes #4) 2023-02-15 13:43:16 -05:00
Aarnav Tale
43525325f3 feat: block running on win32 2023-02-15 13:33:52 -05:00
Aarnav Tale
8c4badf72a chore: v1.1.2 2023-01-25 11:18:36 -05:00
Aarnav Tale
ff8bf47b42 feat: actually execute post action 2023-01-25 11:17:31 -05:00
Aarnav Tale
4933a15eb6 chore: v1.1.1 2023-01-25 11:10:14 -05:00
Aarnav Tale
c2bec5ff29 fix: deploy branch instead of v1 branch 2023-01-25 11:10:00 -05:00
Aarnav Tale
443c3cc7e1 chore: v1.1.0 2023-01-25 11:08:31 -05:00
Aarnav Tale
7eb54a9e39 fix: remove unnecessary lifecycle hook 2023-01-25 11:08:25 -05:00
Aarnav Tale
22c5cc3864 chore: reflect fixes in deploy task 2023-01-25 10:58:44 -05:00
Aarnav Tale
a0fc1ed3bf fix: maybe it works now 2023-01-25 10:56:26 -05:00
Aarnav Tale
9814a57069 feat: use actions/checkout to create push branch 2023-01-25 10:54:49 -05:00
Aarnav Tale
0597b11a08 fix: don't remove ignored directories 2023-01-25 10:49:49 -05:00
Aarnav Tale
0c2bcc2bf3 fix: resolve issues with actions 2023-01-25 10:44:34 -05:00
Aarnav Tale
aa17f278e9 feat: add dist to gitignore 2023-01-25 10:39:48 -05:00
Aarnav Tale
641b6b74db feat: create deploy ci 2023-01-25 10:39:31 -05:00
Aarnav Tale
c370e32093 fix: orphan branch to push 2023-01-25 10:31:06 -05:00
Aarnav Tale
d9fb2b8307 fix: use readline methods from node:readline to support node 16 2023-01-25 10:28:39 -05:00
Aarnav Tale
b061303a52 feat: build in a separate branch for testing 2023-01-25 10:24:46 -05:00
Aarnav Tale
d37d346399 fix: remove readable references as it only works in node 18 2023-01-25 10:18:56 -05:00
Aarnav Tale
36563347fa chore: build dist 2023-01-25 10:07:57 -05:00
Aarnav Tale
6ac935ba0c fix: run all actions 2023-01-25 10:07:45 -05:00
Aarnav Tale
f7e6d667ef fix: handle blank version 2023-01-25 10:07:23 -05:00
Aarnav Tale
34e21c7e3f feat: add more debug logging 2023-01-25 01:10:58 -05:00
Aarnav Tale
5fe2f65f42 test: use the latest branch for testing 2023-01-25 01:04:23 -05:00
12 changed files with 1848 additions and 1460 deletions

29
.github/workflows/deploy.yaml vendored Normal file
View File

@@ -0,0 +1,29 @@
name: Deploy Action
on:
push:
tags:
- '*'
- '!v1'
jobs:
deploy:
name: Deploy
runs-on: ubuntu-latest
steps:
- name: Checkout Repository
uses: actions/checkout@v3
- name: Build latest dist/ folder
run: |
npm install -g pnpm
pnpm install --frozen-lockfile
pnpm run build
- name: Upload dist/ folder
run: |
git config --global user.email "<41898282+github-actions[bot]@users.noreply.github.com>"
git config --global user.name "github-actions[bot]"
git checkout --orphan deploy
git add -f dist README.md LICENSE action.yaml
git commit -m "chore: create ci release ($GITHUB_SHA)"
git tag --force v1
git push -f --tags origin deploy

View File

@@ -1,4 +1,4 @@
name: Kubectl Action
name: Test Action
on:
push:
@@ -6,10 +6,31 @@ on:
jobs:
build:
name: Build
runs-on: ubuntu-latest
steps:
- name: Checkout Repository
uses: actions/checkout@v3
- name: Build latest dist/ folder
run: |
npm install -g pnpm
pnpm install --frozen-lockfile
pnpm run build
- name: Upload dist/ folder
run: |
git config --global user.email "<41898282+github-actions[bot]@users.noreply.github.com>"
git config --global user.name "github-actions[bot]"
git checkout --orphan ci
git add -f dist README.md LICENSE action.yaml
git commit -m "chore: create ci release ($GITHUB_SHA)"
git push -f origin ci
test:
name: Test
runs-on: ubuntu-latest
needs: build
steps:
- name: Setup tale/kubectl-action
uses: tale/kubectl-action@v1
uses: tale/kubectl-action@ci
with:
base64-kube-config: ${{ secrets.KUBE_CONFIG }}
- name: Test the output of `kubectl cluster-info`

1
.gitignore vendored
View File

@@ -1 +1,2 @@
node_modules/
dist/

4
dist/index.js vendored

File diff suppressed because one or more lines are too long

1
dist/index.js.map vendored

File diff suppressed because one or more lines are too long

142
dist/licenses.txt vendored
View File

@@ -1,142 +0,0 @@
@actions/core
MIT
The MIT License (MIT)
Copyright 2019 GitHub
Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
@actions/http-client
MIT
Actions Http Client for Node.js
Copyright (c) GitHub, Inc.
All rights reserved.
MIT License
Permission is hereby granted, free of charge, to any person obtaining a copy of this software and
associated documentation files (the "Software"), to deal in the Software without restriction,
including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense,
and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so,
subject to the following conditions:
The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED *AS IS*, WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT
LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN
NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY,
WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE
SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
busboy
MIT
Copyright Brian White. All rights reserved.
Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to
deal in the Software without restriction, including without limitation the
rights to use, copy, modify, merge, publish, distribute, sublicense, and/or
sell copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in
all copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS
IN THE SOFTWARE.
streamsearch
MIT
Copyright Brian White. All rights reserved.
Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to
deal in the Software without restriction, including without limitation the
rights to use, copy, modify, merge, publish, distribute, sublicense, and/or
sell copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in
all copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS
IN THE SOFTWARE.
tunnel
MIT
The MIT License (MIT)
Copyright (c) 2012 Koichi Kobayashi
Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to deal
in the Software without restriction, including without limitation the rights
to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in
all copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
THE SOFTWARE.
undici
MIT
MIT License
Copyright (c) Matteo Collina and Undici contributors
Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to deal
in the Software without restriction, including without limitation the rights
to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in all
copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
uuid
MIT
The MIT License (MIT)
Copyright (c) 2010-2020 Robert Kieffer and other contributors
Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.

File diff suppressed because one or more lines are too long

View File

@@ -1,22 +1,22 @@
{
"name": "kubectl-action",
"version": "1.0.8",
"version": "1.2.0",
"scripts": {
"dev": "ncc -smw --license licenses.txt build src/main.ts",
"build": "ncc -sm --license licenses.txt build src/main.ts",
"push": "np --no-cleanup --no-publish --no-tests --message 'chore: v%s' && git tag --force v1 && git push -f --tags",
"version": "pnpm run build && git add dist"
"push": "np --no-cleanup --no-publish --no-tests --message 'chore: v%s'"
},
"dependencies": {
"@actions/core": "^1.10.0",
"undici": "^5.16.0"
"@actions/tool-cache": "^2.0.1",
"undici": "^5.22.1"
},
"devDependencies": {
"@types/node": "^18.11.18",
"@vercel/ncc": "^0.36.0",
"eslint": "^8.32.0",
"eslint-config-tale": "^1.0.15",
"np": "^7.6.3",
"typescript": "^4.9.4"
"@types/node": "^20.3.2",
"@vercel/ncc": "^0.36.1",
"eslint": "^8.43.0",
"eslint-config-tale": "^1.0.16",
"np": "^8.0.4",
"typescript": "^5.1.6"
}
}

2925
pnpm-lock.yaml generated

File diff suppressed because it is too large Load Diff

View File

@@ -1,12 +1,33 @@
/* eslint-disable unicorn/prefer-top-level-await */
import { env, platform } from 'node:process'
import { debug, getState, setFailed } from '@actions/core'
import { setupKubeconfig } from 'login'
import { installKubectl } from 'setup'
import { teardown } from 'teardown'
const post = Boolean(getState('isPost'))
if (env.RUNNER_OS === 'Windows' || platform === 'win32') {
setFailed('kubectl-action does not support Windows')
}
if (!post) {
if (getState('kubectl-path')) {
debug('Running post kubectl-action setup')
teardown()
// eslint-disable-next-line unicorn/prefer-top-level-await
.catch(error => {
setFailed('Failed to teardown kubectl (this is a bug in kubectl-action): ')
debug(JSON.stringify(error))
})
} else {
debug('Running kubectl-action setup')
installKubectl()
// eslint-disable-next-line no-async-promise-executor
new Promise(async () => {
await installKubectl()
debug('kubectl-action setup complete')
await setupKubeconfig()
debug('kubectl-action kubeconfig setup complete')
})
// eslint-disable-next-line unicorn/prefer-top-level-await
.catch(error => {
setFailed('Failed to install kubectl (this is a bug in kubectl-action): ')
debug(JSON.stringify(error))

View File

@@ -1,11 +1,9 @@
import { createHash, randomUUID } from 'node:crypto'
import { createWriteStream } from 'node:fs'
import { mkdir } from 'node:fs/promises'
import { join } from 'node:path'
import { env, stdout } from 'node:process'
import { Readable } from 'node:stream'
import { chmod } from 'node:fs/promises'
import { dirname, join } from 'node:path'
import { env } from 'node:process'
import { addPath, debug, getInput, saveState, setFailed, warning } from '@actions/core'
import { addPath, debug, getInput, setFailed } from '@actions/core'
import { cacheFile, downloadTool, find } from '@actions/tool-cache'
import { fetch } from 'undici'
export async function installKubectl() {
@@ -21,7 +19,8 @@ export async function installKubectl() {
trimWhitespace: true
})
const version = input === 'latest' ? await fetchLatestVersion() : input
const version = input === 'latest' || input === '' ? await fetchLatestVersion() : input
debug(`kubectl-version: ${version ?? 'undefined'}`)
if (!version?.startsWith('v')) {
setFailed('Unable to determine the `kubectl` version to install')
@@ -30,27 +29,15 @@ export async function installKubectl() {
console.log(`Installing kubectl version ${version}`)
const kubectl = await downloadKubectl(version)
if (!kubectl) {
return
try {
const path = await fetchKubectl(version)
await chmod(path, '775')
addPath(dirname(path))
debug(`kubectl ${version} installed and cached at ${path}`)
} catch {
debug('Failed to download kubectl from dl.k8s.io')
setFailed('Failed to download kubectl from dl.k8s.io\nPlease check the version you specified is valid')
}
const path = join(env.RUNNER_TEMP, randomUUID())
await mkdir(path, { recursive: true })
saveState('kubectl-path', path)
const stream = createWriteStream(join(path, 'kubectl'))
kubectl.pipe(stream)
console.log(`Installing kubectl to ${path}`)
await new Promise<void>((resolve, reject) => {
stream.on('finish', resolve)
stream.on('error', reject)
})
addPath(path)
}
// Fetches the latest kubectl version from the Kubernetes release server
@@ -66,61 +53,34 @@ async function fetchLatestVersion() {
}
// Downloads the kubectl binary from the Kubernetes release server
// Also runs a checksum verification on the downloaded binary
async function downloadKubectl(version: string) {
const url = `https://dl.k8s.io/release/${version}/bin/linux/amd64/kubectl`
const hashUrl = `${url}.sha256`
// If already downloaded, returns the path to the cached binary
async function fetchKubectl(version: string) {
const cachedPath = find('kubectl', version)
// Cached path is a directory containing the kubectl binary
if (cachedPath) {
debug(`kubectl ${version} already installed`)
return join(cachedPath, 'kubectl')
}
const url = `https://dl.k8s.io/release/${version}/bin/${retrieveRunnerMetadata()}/kubectl`
console.log(`Downloading kubectl (${url})`)
const hashResponse = await fetch(hashUrl)
if (!hashResponse.ok) {
warning(`Skipping checksum verification for kubectl ${version}`)
}
const hash = hashResponse.ok ? await hashResponse.text() : ''
const response = await fetch(url)
if (!response.ok || !response.body) {
setFailed(`Failed to download kubectl with status ${response.status}`)
return
}
const hashStream = createHash('sha256')
const body = Readable.fromWeb(response.body)
const size = Number(response.headers.get('content-length'))
return new Promise<Readable | void>((resolve, reject) => {
let downloaded = 0
let progressed = 0
body.on('data', (chunk: Buffer) => {
hashStream.update(chunk)
downloaded += chunk.length
if (Math.floor((downloaded / size) * 80) > progressed) {
stdout.clearLine(0)
stdout.cursorTo(0)
progressed++
stdout.write(`[${'='.repeat(progressed)}>${' '.repeat(80 - progressed)}]`)
}
})
body.on('end', () => {
stdout.clearLine(0)
stdout.cursorTo(0)
console.log(`[${'='.repeat(80)}]`)
const hashSum = hashStream.digest('hex')
if (hashResponse.ok && hashSum !== hash) {
setFailed(`Checksum verification failed for kubectl ${version}`)
resolve()
}
resolve(body)
})
body.on('error', reject)
})
const downloadPath = await downloadTool(url)
const toolPath = await cacheFile(downloadPath, 'kubectl', 'kubectl', version)
return join(toolPath, 'kubectl')
}
// Gets the proper architecture and OS for the current platform
// This doesn't use node functions, but instead CI variables provided by GitHub
function retrieveRunnerMetadata() {
// Currently we don't support win32 platforms anyways
const runnerSystem = env.RUNNER_OS === 'Linux' ? 'linux' : 'darwin'
const runnerArch = env.RUNNER_ARCH?.toLowerCase()
if (runnerArch?.includes('arm')) {
return `${runnerSystem}/arm64`
}
return `${runnerSystem}/amd64`
}

View File

@@ -4,10 +4,7 @@ import { debug, getState } from '@actions/core'
export async function teardown() {
debug('Running kubectl-action teardown()')
console.log('Removing kubectl and kubeconfig')
const path = getState('kubectl-path')
await rm(path, { recursive: true, force: true })
console.log('Removing kubeconfig')
const configPath = getState('kubeconfig-path')
await rm(configPath, { recursive: true, force: true })