can be e.g. vyos-1x.git or vyatta-op.git
def isCustomBuild() {
// GitHub organisation base URL
def gitURI = '' + getGitRepoName()
def httpURI = '' + getGitRepoName()
return ! ((getGitRepoURL() == gitURI) || (getGitRepoURL() == httpURI))
def setDescription() {
def item = Jenkins.instance.getItemByFullName(env.JOB_NAME)
// build up the main description text
def description = ""
description += "Build VyOS ISO image
if (isCustomBuild()) {
description += ""
description += "Build not started from official Git repository!
description += "
description += "Repository: " + getGitRepoURL() + "
description += "Branch: " + getGitBranchName() + "
description += "
} else {
description += "Sources taken from Git branch: " + getGitBranchName() + "
// Only keep the 10 most recent builds
def projectProperties = [
[$class: 'BuildDiscarderProperty',strategy: [$class: 'LogRotator', numToKeepStr: '10']],
// Due to long build times on DockerHub we rather build the container by ourself
// and publish it later on.
// create container names on demand
env.DOCKER_IMAGE = "vyos/vyos-build:" + getGitBranchName()
env.DOCKER_IMAGE_ARM = "vyos/vyos-build:" + getGitBranchName() + "-armhf"
env.DOCKER_IMAGE_ARM64 = "vyos/vyos-build:" + getGitBranchName() + "-arm64"
node('Docker') {
stage('Fetch') {
git branch: getGitBranchName(),
url: getGitRepoURL()
stage('Build Docker container') {
parallel (
'x86-64': {
script {
dir('docker') {
sh """
mkdir -p x86-64
cp Dockerfile x86-64/Dockerfile
cp x86-64/
docker build -t ${env.DOCKER_IMAGE} x86-64
if ( ! isCustomBuild()) {
withDockerRegistry([credentialsId: "DockerHub"]) {
sh "docker push ${env.DOCKER_IMAGE}"
// 'armhf': {
// script {
// dir('docker') {
// sh """
// cp Dockerfile armhf/Dockerfile
// cp armhf/
// sed -i 's#^FROM.*#FROM multiarch/debian-debootstrap:armhf-buster-slim#' armhf/Dockerfile
// docker build -t ${env.DOCKER_IMAGE_ARM} armhf
// """
// if ( ! isCustomBuild()) {
// withDockerRegistry([credentialsId: "DockerHub"]) {
// sh "docker push ${env.DOCKER_IMAGE_ARM}"
// }
// }
// }
// }
// },
// 'arm64': {
// script {
// dir('docker') {
// sh """
// cp Dockerfile arm64/Dockerfile
// cp arm64/
// sed -i 's#^FROM.*#FROM multiarch/debian-debootstrap:arm64-buster-slim#' arm64/Dockerfile
// docker build -t ${env.DOCKER_IMAGE_ARM64} arm64
// """
// if ( ! isCustomBuild()) {
// withDockerRegistry([credentialsId: "DockerHub"]) {
// sh "docker push ${env.DOCKER_IMAGE_ARM64}"
// }
// }
// }
// }
// }
pipeline {
options {
timeout(time: 120, unit: 'MINUTES')
triggers {
cron('H 2 * * *')
agent {
dockerfile {
filename 'Dockerfile'
dir 'docker'
args '--privileged --sysctl net.ipv6.conf.lo.disable_ipv6=0 -e GOSU_UID=1006 -e GOSU_GID=1006'
stages {
stage('Build ISO') {
steps {
script {
def commitId = sh(returnStdout: true, script: 'git rev-parse --short=11 HEAD').trim()
currentBuild.description = sprintf('Git SHA1: %s', commitId[-11..-1])
sh './configure --build-by --debian-mirror'
sh 'sudo make iso'
stage('Test ISO') {
steps {
sh "sudo make test"
post {
success {
script {
// only deploy ISO if build from official repository
if (isCustomBuild())
// publish build result, using Jenkins Credentials
sshagent(['']) {
// build up some fancy groovy variables so we do not need to write/copy
// every option over and over again!
def ARCH = sh(returnStdout: true, script: "dpkg --print-architecture").trim()
def SSH_DIR = '/home/sentrium/web/' + getGitBranchName() + '/' + ARCH
def SSH_OPTS = '-o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no'
def SSH_REMOTE = 'khagen@'
// No need to explicitly check the return code. The pipeline
// will fail if sh returns a non 0 exit code
sh """
ssh ${SSH_OPTS} ${SSH_REMOTE} -t "bash --login -c 'mkdir -p ${SSH_DIR}'"
ssh ${SSH_OPTS} ${SSH_REMOTE} -t "bash --login -c 'find ${SSH_DIR} -type f -mtime +14 -exec rm -f {} \\;'"
scp ${SSH_OPTS} build/vyos*.iso ${SSH_REMOTE}:${SSH_DIR}/
ssh ${SSH_OPTS} ${SSH_REMOTE} -t "bash --login -c '/usr/bin/'"
//upload to S3
files = findFiles(glob: 'build/vyos*.iso')
withAWS(region: 'us-east-1', credentials: 's3-vyos-downloads-rolling-rw') {
def ARCH = sh(returnStdout: true, script: "dpkg --print-architecture").trim()
s3Upload( bucket: '', path: 'rolling/', workingDir:'build', includePathPattern: 'vyos*.iso' )
s3Copy( fromBucket:'', fromPath:'rolling/' + files[0].name , toBucket:'', toPath: 'rolling/vyos-rolling-latest.iso')
failure {
archiveArtifacts artifacts: '**/live-image-amd64.hybrid.iso',
allowEmptyArchive: true
cleanup {
echo 'One way or another, I have finished'
// the 'build' directory got elevated permissions during the build
// cdjust permissions so it can be cleaned up by the regular user
sh '''
if [ -d build ]; then
sudo chmod -R 777 build/
deleteDir() /* cleanup our workspace */