pipeline { agent { label 'puppet' } post { always { deleteDir() /* clean up our workspace */ } success { updateGitlabCommitStatus state: 'success' } failure { updateGitlabCommitStatus state: 'failed' step([$class: 'Mailer', notifyEveryUnstableBuild: true, recipients: 'support@confdroid.com', sendToIndividuals: true]) } } options { gitLabConnection('gitlab.confdroid.com') } stages { stage('pull master') { steps { sshagent(['edd05eb6-26b5-4c7b-a5cc-ea2ab899f4fa']) { sh ''' git config user.name "Jenkins Server" git config user.email jenkins@confdroid.com # Ensure we're on the development branch (triggered by push) git checkout development # Create jenkins branch from development git checkout -b jenkins-build-$BUILD_NUMBER # Optionally merge master into jenkins to ensure compatibility git merge origin/master --no-ff || { echo "Merge conflict detected"; exit 1; } ''' } } } stage('puppet parser') { steps { sh '''for file in $(find . -iname \'*.pp\'); do /opt/puppetlabs/bin/puppet parser validate --color false --render-as s --modulepath=modules $file || exit 1; done;''' } } stage('check templates') { steps{ sh '''for file in $(find . -iname \'*.erb\'); do erb -P -x -T "-" $file | ruby -c || exit 1; done;''' } } stage('puppet-lint') { steps { sh '''/usr/local/bin/puppet-lint . \\ --no-variable_scope-check \\ || { echo "Puppet lint failed"; exit 1; } ''' } } stage('SonarScan') { steps { withCredentials([string(credentialsId: 'sonar-token', variable: 'SONAR_TOKEN')]) { sh ''' /opt/sonar-scanner/bin/sonar-scanner \ -Dsonar.projectKey=puppet_cd \ -Dsonar.sources=. \ -Dsonar.host.url=https://sonarqube.confdroid.com \ -Dsonar.token=$SONAR_TOKEN ''' } } } stage('create Puppet documentation') { steps { sh '/opt/puppetlabs/bin/puppet strings' } } stage('update repo') { steps { sshagent(['edd05eb6-26b5-4c7b-a5cc-ea2ab899f4fa']) { sh ''' git config user.name "Jenkins Server" git config user.email jenkins@confdroid.com git add -A && git commit -am "Recommit for updates in build $BUILD_NUMBER" || echo "No changes to commit" git push origin HEAD:master ''' } } } stage('Mirror to Gitea') { steps { withCredentials([usernamePassword( credentialsId: 'Jenkins-gitea', usernameVariable: 'GITEA_USER', passwordVariable: 'GITEA_TOKEN')]) { script { // Checkout from GitLab (already done implicitly) sh ''' git remote remove gitea || true git checkout master git remote add master https://gitea.confdroid.com/confdroid/puppet_cd.git git -c credential.helper="!f() { echo username=${GITEA_USER}; echo password=${GITEA_TOKEN}; }; f" \ push origin HEAD:master --tags ''' } } } } } }