2020-06-27 18:14:58 +02:00
|
|
|
# This file configures the primary build pipeline used for the
|
|
|
|
# top-level list of depot targets.
|
|
|
|
#
|
|
|
|
# It outputs a "YAML" (actually JSON) file which is evaluated and
|
|
|
|
# submitted to Buildkite at the start of each build. This means we can
|
|
|
|
# dynamically configure the pipeline execution here.
|
2020-08-27 02:05:45 +02:00
|
|
|
{ depot, lib, pkgs, ... }:
|
2020-06-27 18:14:58 +02:00
|
|
|
|
|
|
|
let
|
2020-08-27 02:05:45 +02:00
|
|
|
inherit (builtins) concatStringsSep foldl' map toJSON;
|
2021-04-11 12:19:18 +02:00
|
|
|
inherit (pkgs) symlinkJoin writeText;
|
2020-06-27 18:14:58 +02:00
|
|
|
|
2020-08-27 02:05:45 +02:00
|
|
|
# Create an expression that builds the target at the specified
|
|
|
|
# location.
|
2020-08-31 02:36:03 +02:00
|
|
|
mkBuildExpr = target:
|
|
|
|
let
|
|
|
|
descend = expr: attr: "builtins.getAttr \"${attr}\" (${expr})";
|
|
|
|
targetExpr = foldl' descend "import ./. {}" target.__readTree;
|
|
|
|
subtargetExpr = descend targetExpr target.__subtarget;
|
|
|
|
in if target ? __subtarget then subtargetExpr else targetExpr;
|
2020-08-27 02:05:45 +02:00
|
|
|
|
|
|
|
# Create a pipeline label from the targets tree location.
|
2020-08-31 02:36:03 +02:00
|
|
|
mkLabel = target:
|
|
|
|
let label = concatStringsSep "/" target.__readTree;
|
|
|
|
in if target ? __subtarget
|
|
|
|
then "${label}:${target.__subtarget}"
|
|
|
|
else label;
|
2020-08-27 02:05:45 +02:00
|
|
|
|
|
|
|
# Create a pipeline step from a single target.
|
|
|
|
mkStep = target: {
|
2021-08-26 16:04:14 +02:00
|
|
|
command = let
|
|
|
|
drvPath = builtins.unsafeDiscardStringContext target.drvPath;
|
|
|
|
in lib.concatStringsSep " " [
|
|
|
|
# First try to realise the drvPath of the target so we don't evaluate twice.
|
|
|
|
# Nix has no concept of depending on a derivation file without depending on
|
|
|
|
# at least one of its `outPath`s, so we need to discard the string context
|
|
|
|
# if we don't want to build everything during pipeline construction.
|
|
|
|
"nix-store --realise '${drvPath}'"
|
|
|
|
# However, Nix doesn't track references of store paths to derivations, so
|
|
|
|
# there's no guarantee that the derivation file is not garbage collected.
|
|
|
|
# To handle this case we fall back to an ordinary build if the derivation
|
|
|
|
# file is missing.
|
|
|
|
"|| (test ! -f '${drvPath}' && nix-build -E '${mkBuildExpr target}' --show-trace)"
|
|
|
|
];
|
2020-08-31 02:36:03 +02:00
|
|
|
label = ":nix: ${mkLabel target}";
|
2021-08-26 17:02:52 +02:00
|
|
|
|
|
|
|
# Skip build steps if their out path has already been built.
|
|
|
|
skip = let
|
|
|
|
shouldSkip = with builtins;
|
|
|
|
# Only skip in real Buildkite builds
|
|
|
|
(getEnv "BUILDKITE_BUILD_ID" != "") &&
|
|
|
|
# Always build everything for the canon branch.
|
2021-08-26 18:31:59 +02:00
|
|
|
(getEnv "BUILDKITE_BRANCH" != "refs/heads/canon") &&
|
2021-08-26 17:02:52 +02:00
|
|
|
# Discard string context to avoid realising the store path during
|
|
|
|
# pipeline construction.
|
|
|
|
(pathExists (unsafeDiscardStringContext target.outPath));
|
|
|
|
in if shouldSkip then "Target was already built." else false;
|
2020-08-27 02:05:45 +02:00
|
|
|
};
|
|
|
|
|
|
|
|
# Protobuf check step which validates that changes to .proto files
|
|
|
|
# between revisions don't cause backwards-incompatible or otherwise
|
|
|
|
# flawed changes.
|
|
|
|
protoCheck = {
|
|
|
|
command = "${depot.nix.bufCheck}/bin/ci-buf-check";
|
|
|
|
label = ":water_buffalo:";
|
|
|
|
};
|
|
|
|
|
2020-06-27 18:14:58 +02:00
|
|
|
# This defines the build pipeline, using the pipeline format
|
|
|
|
# documented on https://buildkite.com/docs/pipelines/defining-steps
|
2020-08-27 02:05:45 +02:00
|
|
|
#
|
|
|
|
# Pipeline steps need to stay in order.
|
|
|
|
pipeline.steps =
|
|
|
|
# Create build steps for each CI target
|
2021-08-29 14:25:59 +02:00
|
|
|
(map mkStep depot.ci.targets)
|
2020-08-27 02:05:45 +02:00
|
|
|
|
|
|
|
++ [
|
|
|
|
# Simultaneously run protobuf checks
|
|
|
|
protoCheck
|
|
|
|
|
|
|
|
# Wait for all previous checks to complete
|
|
|
|
({
|
|
|
|
wait = null;
|
|
|
|
continue_on_failure = true;
|
|
|
|
})
|
|
|
|
|
|
|
|
# Wait for all steps to complete, then exit with success or
|
2021-11-25 10:58:22 +01:00
|
|
|
# failure depending on whether any other steps failed.
|
|
|
|
#
|
|
|
|
# This information is checked by querying the Buildkite GraphQL
|
|
|
|
# API and fetching the count of failed steps.
|
|
|
|
#
|
2020-08-27 02:05:45 +02:00
|
|
|
# This step must be :duck:! (yes, really!)
|
|
|
|
({
|
2021-11-25 10:58:22 +01:00
|
|
|
command = let duck = pkgs.writeShellScript "duck" ''
|
|
|
|
set -ueo pipefail
|
|
|
|
|
|
|
|
readonly FAILED_JOBS=$(${pkgs.curl}/bin/curl 'https://graphql.buildkite.com/v1' \
|
|
|
|
--silent \
|
|
|
|
-H "Authorization: Bearer $(cat /etc/secrets/buildkite-besadii)" \
|
|
|
|
-d "{\"query\": \"query BuildStatusQuery { build(uuid: \\\"$BUILDKITE_BUILD_ID\\\") { jobs(passed: false) { count } } }\"}" | \
|
|
|
|
${pkgs.jq}/bin/jq -r '.data.build.jobs.count')
|
|
|
|
|
|
|
|
echo "$FAILED_JOBS build jobs failed."
|
|
|
|
|
|
|
|
if (( $FAILED_JOBS > 0 )); then
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
''; in "${duck}";
|
|
|
|
|
2020-08-27 02:05:45 +02:00
|
|
|
label = ":duck:";
|
2021-04-11 12:19:18 +02:00
|
|
|
key = ":duck:";
|
|
|
|
})
|
|
|
|
|
|
|
|
# After duck, on success, create a gcroot if the build branch is
|
|
|
|
# canon.
|
|
|
|
#
|
|
|
|
# We care that this anchors *most* of the depot, in practice
|
|
|
|
# it's unimportant if there is a build race and we get +-1 of
|
|
|
|
# the targets.
|
|
|
|
#
|
|
|
|
# Unfortunately this requires a third evaluation of the graph,
|
|
|
|
# but since it happens after :duck: it should not affect the
|
|
|
|
# timing of status reporting back to Gerrit.
|
|
|
|
({
|
|
|
|
command = "nix-instantiate -A ci.gcroot --add-root /nix/var/nix/gcroots/depot/canon";
|
|
|
|
label = ":anchor:";
|
2021-04-11 22:59:41 +02:00
|
|
|
"if" = ''build.branch == "refs/heads/canon"'';
|
2021-04-11 12:19:18 +02:00
|
|
|
depends_on = [{
|
|
|
|
step = ":duck:";
|
|
|
|
allow_failure = false;
|
|
|
|
}];
|
2020-08-27 02:05:45 +02:00
|
|
|
})
|
|
|
|
];
|
|
|
|
in (writeText "depot.yaml" (toJSON pipeline))
|