Compare commits
1 commit
e7d79b67c0
...
e9bc73d57c
Author | SHA1 | Date | |
---|---|---|---|
e9bc73d57c |
12 changed files with 154 additions and 166 deletions
2
.github/CODEOWNERS
vendored
2
.github/CODEOWNERS
vendored
|
@ -1,2 +0,0 @@
|
||||||
# https://docs.github.com/en/github/creating-cloning-and-archiving-repositories/about-code-owners#codeowners-syntax
|
|
||||||
* @sschnabe @rpahli @fabian-schlegel @jschwarze @wistefan @monotek
|
|
14
.github/dependabot.yml
vendored
14
.github/dependabot.yml
vendored
|
@ -1,14 +0,0 @@
|
||||||
version: 2
|
|
||||||
updates:
|
|
||||||
- package-ecosystem: maven
|
|
||||||
directory: /
|
|
||||||
schedule:
|
|
||||||
interval: daily
|
|
||||||
allow:
|
|
||||||
- dependency-name: io.kokuwa.maven:maven-parent
|
|
||||||
- dependency-name: org.keycloak:keycloak-quarkus-server
|
|
||||||
- package-ecosystem: github-actions
|
|
||||||
directory: /
|
|
||||||
schedule:
|
|
||||||
interval: monthly
|
|
||||||
day: monday
|
|
16
.github/settings.xml
vendored
16
.github/settings.xml
vendored
|
@ -1,16 +0,0 @@
|
||||||
<?xml version="1.0" encoding="UTF-8"?>
|
|
||||||
<!-- https://github.com/actions/setup-java/issues/85 -->
|
|
||||||
<settings>
|
|
||||||
<servers>
|
|
||||||
<server>
|
|
||||||
<id>sonatype-nexus</id>
|
|
||||||
<username>${env.SERVER_USERNAME}</username>
|
|
||||||
<password>${env.SERVER_PASSWORD}</password>
|
|
||||||
</server>
|
|
||||||
<server>
|
|
||||||
<id>github.com</id>
|
|
||||||
<username>nope</username>
|
|
||||||
<password>${env.GIT_ACTION_TOKEN}</password>
|
|
||||||
</server>
|
|
||||||
</servers>
|
|
||||||
</settings>
|
|
50
.github/workflows/build.yaml
vendored
50
.github/workflows/build.yaml
vendored
|
@ -1,50 +0,0 @@
|
||||||
name: Build
|
|
||||||
|
|
||||||
on:
|
|
||||||
push:
|
|
||||||
branches: [main]
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
|
|
||||||
build:
|
|
||||||
runs-on: ubuntu-latest
|
|
||||||
env:
|
|
||||||
MAVEN_ARGS: --batch-mode --color=always --no-transfer-progress --settings=.github/settings.xml
|
|
||||||
steps:
|
|
||||||
- name: docker/login-action docker.io
|
|
||||||
uses: docker/login-action@v3.4.0
|
|
||||||
with:
|
|
||||||
registry: docker.io
|
|
||||||
username: ${{ secrets.DOCKERIO_USERNAME }}
|
|
||||||
password: ${{ secrets.DOCKERIO_TOKEN }}
|
|
||||||
- name: docker/login-action ghcr.io
|
|
||||||
uses: docker/login-action@v3.4.0
|
|
||||||
with:
|
|
||||||
registry: ghcr.io
|
|
||||||
username: ${{ github.actor }}
|
|
||||||
password: ${{ secrets.GIT_ACTION_TOKEN }}
|
|
||||||
- run: git config --global user.name "${{ vars.KOKUWA_IO_BOT_NAME }}"
|
|
||||||
- run: git config --global user.email "${{ vars.KOKUWA_IO_BOT_EMAIL }}"
|
|
||||||
- uses: actions/checkout@v4
|
|
||||||
with:
|
|
||||||
token: ${{ secrets.GIT_ACTION_TOKEN }}
|
|
||||||
- uses: crazy-max/ghaction-import-gpg@v6
|
|
||||||
with:
|
|
||||||
gpg_private_key: ${{ secrets.GPG_PRIVATE_KEY }}
|
|
||||||
passphrase: ${{ secrets.GPG_PASSPHRASE }}
|
|
||||||
git_user_signingkey: true
|
|
||||||
git_commit_gpgsign: true
|
|
||||||
- uses: actions/setup-java@v4
|
|
||||||
with:
|
|
||||||
distribution: temurin
|
|
||||||
java-version: 17
|
|
||||||
cache: maven
|
|
||||||
server-id: sonatype-nexus
|
|
||||||
server-username: SERVER_USERNAME
|
|
||||||
server-password: SERVER_PASSWORD
|
|
||||||
gpg-private-key: ${{ secrets.GPG_PRIVATE_KEY }}
|
|
||||||
gpg-passphrase: GPG_PASSPHRASE
|
|
||||||
- run: mvn $MAVEN_ARGS deploy
|
|
||||||
env:
|
|
||||||
SERVER_USERNAME: ${{ secrets.SONATYPE_NEXUS_USERNAME }}
|
|
||||||
SERVER_PASSWORD: ${{ secrets.SONATYPE_NEXUS_PASSWORD }}
|
|
50
.github/workflows/release.yaml
vendored
50
.github/workflows/release.yaml
vendored
|
@ -1,50 +0,0 @@
|
||||||
name: Release
|
|
||||||
|
|
||||||
on: workflow_dispatch
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
build:
|
|
||||||
runs-on: ubuntu-latest
|
|
||||||
env:
|
|
||||||
MAVEN_ARGS: --batch-mode --color=always --no-transfer-progress --settings=.github/settings.xml
|
|
||||||
steps:
|
|
||||||
- name: docker/login-action docker.io
|
|
||||||
uses: docker/login-action@v3.4.0
|
|
||||||
with:
|
|
||||||
registry: docker.io
|
|
||||||
username: ${{ secrets.DOCKERIO_USERNAME }}
|
|
||||||
password: ${{ secrets.DOCKERIO_TOKEN }}
|
|
||||||
- name: docker/login-action ghcr.io
|
|
||||||
uses: docker/login-action@v3.4.0
|
|
||||||
with:
|
|
||||||
registry: ghcr.io
|
|
||||||
username: ${{ github.actor }}
|
|
||||||
password: ${{ secrets.GIT_ACTION_TOKEN }}
|
|
||||||
- run: git config --global user.name "${{ vars.KOKUWA_IO_BOT_NAME }}"
|
|
||||||
- run: git config --global user.email "${{ vars.KOKUWA_IO_BOT_EMAIL }}"
|
|
||||||
- uses: actions/checkout@v4
|
|
||||||
with:
|
|
||||||
token: ${{ secrets.GIT_ACTION_TOKEN }}
|
|
||||||
- uses: crazy-max/ghaction-import-gpg@v6
|
|
||||||
with:
|
|
||||||
gpg_private_key: ${{ secrets.GPG_PRIVATE_KEY }}
|
|
||||||
passphrase: ${{ secrets.GPG_PASSPHRASE }}
|
|
||||||
git_user_signingkey: true
|
|
||||||
git_commit_gpgsign: true
|
|
||||||
- uses: actions/setup-java@v4
|
|
||||||
with:
|
|
||||||
distribution: temurin
|
|
||||||
java-version: 17
|
|
||||||
cache: maven
|
|
||||||
server-id: sonatype-nexus
|
|
||||||
server-username: SERVER_USERNAME
|
|
||||||
server-password: SERVER_PASSWORD
|
|
||||||
gpg-private-key: ${{ secrets.GPG_PRIVATE_KEY }}
|
|
||||||
gpg-passphrase: GPG_PASSPHRASE
|
|
||||||
- run: mvn $MAVEN_ARGS release:prepare -Darguments="$MAVEN_ARGS"
|
|
||||||
- run: mvn $MAVEN_ARGS release:perform -Darguments="$MAVEN_ARGS"
|
|
||||||
env:
|
|
||||||
SERVER_USERNAME: ${{ secrets.SONATYPE_NEXUS_USERNAME }}
|
|
||||||
SERVER_PASSWORD: ${{ secrets.SONATYPE_NEXUS_PASSWORD }}
|
|
||||||
GIT_ACTION_TOKEN: ${{ secrets.GIT_ACTION_TOKEN }}
|
|
||||||
GPG_PASSPHRASE: ${{ secrets.GPG_PASSPHRASE }}
|
|
|
@ -1,34 +1,38 @@
|
||||||
name: PullRequest
|
name: Verify
|
||||||
|
|
||||||
on: pull_request
|
on:
|
||||||
|
- pull_request
|
||||||
|
- push:
|
||||||
|
branches: [main]
|
||||||
|
|
||||||
env:
|
env:
|
||||||
MAVEN_ARGS: --batch-mode --color=always --no-transfer-progress
|
MAVEN_ARGS: --batch-mode --color=always --no-transfer-progress
|
||||||
|
|
||||||
jobs:
|
jobs:
|
||||||
|
|
||||||
yaml:
|
renovate:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- uses: actions/checkout@v4
|
- uses: actions/checkout@main
|
||||||
- uses: ibiqlik/action-yamllint@v3
|
- uses: docker://kokuwaio/renovate-config-validator
|
||||||
with:
|
|
||||||
format: colored
|
|
||||||
strict: true
|
|
||||||
|
|
||||||
markdown:
|
markdownlint:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- uses: actions/checkout@v4
|
- uses: actions/checkout@main
|
||||||
- uses: avto-dev/markdown-lint@v1
|
- uses: docker://kokuwaio/markdownlint
|
||||||
with:
|
|
||||||
args: /github/workspace
|
yamllint:
|
||||||
|
runs-on: ubuntu-latest
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@main
|
||||||
|
- uses: docker://kokuwaio/yamllint
|
||||||
|
|
||||||
build:
|
build:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- uses: actions/checkout@v4
|
- uses: actions/checkout@main
|
||||||
- uses: actions/setup-java@v4
|
- uses: actions/setup-java@main
|
||||||
with:
|
with:
|
||||||
distribution: temurin
|
distribution: temurin
|
||||||
java-version: 17
|
java-version: 17
|
||||||
|
@ -49,8 +53,8 @@ jobs:
|
||||||
- 26.1.5
|
- 26.1.5
|
||||||
- 26.2.5
|
- 26.2.5
|
||||||
steps:
|
steps:
|
||||||
- uses: actions/checkout@v4
|
- uses: actions/checkout@main
|
||||||
- uses: actions/setup-java@v4
|
- uses: actions/setup-java@main
|
||||||
with:
|
with:
|
||||||
distribution: temurin
|
distribution: temurin
|
||||||
java-version: 17
|
java-version: 17
|
18
.woodpecker/build.yaml
Normal file
18
.woodpecker/build.yaml
Normal file
|
@ -0,0 +1,18 @@
|
||||||
|
when:
|
||||||
|
event: [manual, push]
|
||||||
|
branch: main
|
||||||
|
path: [.woodpecker/build.yaml, pom.xml, src/**]
|
||||||
|
|
||||||
|
services:
|
||||||
|
- name: dockerd
|
||||||
|
image: kokuwaio/dockerd
|
||||||
|
ports: [2375, 8080]
|
||||||
|
|
||||||
|
steps:
|
||||||
|
|
||||||
|
build:
|
||||||
|
image: maven:3.9.9-eclipse-temurin-17
|
||||||
|
commands: mvn deploy --settings=.woodpecker/maven/settings.xml
|
||||||
|
environment:
|
||||||
|
NEXUS_USERNAME: {from_secret: nexus_username}
|
||||||
|
NEXUS_PASSWORD: {from_secret: nexus_password}
|
21
.woodpecker/lint.yaml
Normal file
21
.woodpecker/lint.yaml
Normal file
|
@ -0,0 +1,21 @@
|
||||||
|
when:
|
||||||
|
event: [manual, pull_request, push]
|
||||||
|
branch: main
|
||||||
|
path: [.woodpecker/lint.yaml, renovate.json, "**/*.y*ml", "**/*.md"]
|
||||||
|
|
||||||
|
steps:
|
||||||
|
|
||||||
|
renovate:
|
||||||
|
image: kokuwaio/renovate-config-validator
|
||||||
|
depends_on: []
|
||||||
|
when: [path: [.woodpecker/lint.yaml, renovate.json]]
|
||||||
|
|
||||||
|
yaml:
|
||||||
|
image: kokuwaio/yamllint
|
||||||
|
depends_on: []
|
||||||
|
when: [path: [.woodpecker/lint.yaml, .yamllint.yaml, "**/*.y*ml"]]
|
||||||
|
|
||||||
|
markdown:
|
||||||
|
image: kokuwaio/markdownlint
|
||||||
|
depends_on: []
|
||||||
|
when: [path: [.woodpecker/lint.yaml, .markdownlint.yaml, "**/*.md"]]
|
18
.woodpecker/maven/settings.xml
Normal file
18
.woodpecker/maven/settings.xml
Normal file
|
@ -0,0 +1,18 @@
|
||||||
|
<?xml version="1.0" encoding="UTF-8"?>
|
||||||
|
<settings xmlns="http://maven.apache.org/SETTINGS/1.0.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://maven.apache.org/SETTINGS/1.0.0 https://maven.apache.org/xsd/settings-1.0.0.xsd">
|
||||||
|
<interactiveMode>false</interactiveMode>
|
||||||
|
<localRepository>/woodpecker/.m2</localRepository>
|
||||||
|
<servers>
|
||||||
|
<server>
|
||||||
|
<id>sonatype-nexus</id>
|
||||||
|
<username>${env.NEXUS_USERNAME}</username>
|
||||||
|
<password>${env.NEXUS_PASSWORD}</password>
|
||||||
|
</server>
|
||||||
|
</servers>
|
||||||
|
<mirrors>
|
||||||
|
<mirror>
|
||||||
|
<url>http://mirror.woodpecker.svc/maven2</url>
|
||||||
|
<mirrorOf>central</mirrorOf>
|
||||||
|
</mirror>
|
||||||
|
</mirrors>
|
||||||
|
</settings>
|
23
.woodpecker/verify.yaml
Normal file
23
.woodpecker/verify.yaml
Normal file
|
@ -0,0 +1,23 @@
|
||||||
|
when:
|
||||||
|
event: [manual, pull_request]
|
||||||
|
path: [.woodpecker/verify.yaml, pom.xml, src/**]
|
||||||
|
|
||||||
|
matrix:
|
||||||
|
KEYCLOAK_VERSION:
|
||||||
|
- 22.0.5
|
||||||
|
- 23.0.7
|
||||||
|
- 24.0.5
|
||||||
|
- 25.0.6
|
||||||
|
- 26.0.8
|
||||||
|
- 26.1.5
|
||||||
|
- 26.2.5
|
||||||
|
|
||||||
|
services:
|
||||||
|
- name: dockerd
|
||||||
|
image: kokuwaio/dockerd
|
||||||
|
ports: [2375, 8080]
|
||||||
|
|
||||||
|
steps:
|
||||||
|
verify:
|
||||||
|
image: maven:3.9.9-eclipse-temurin-17
|
||||||
|
commands: mvn verify --settings=.woodpecker/maven/settings.xml -Dversion.org.keycloak.test=$KEYCLOAK_VERSION
|
33
renovate.json
Normal file
33
renovate.json
Normal file
|
@ -0,0 +1,33 @@
|
||||||
|
{
|
||||||
|
"$schema": "https://docs.renovatebot.com/renovate-schema.json",
|
||||||
|
"labels": ["renovate", "renovate-manager/{{{manager}}}", "renovate-type/{{{updateType}}}"],
|
||||||
|
"dependencyDashboard": true,
|
||||||
|
"dependencyDashboardLabels": ["renovate"],
|
||||||
|
"dependencyDashboardApproval": true,
|
||||||
|
"dependencyDashboardOSVVulnerabilitySummary": "all",
|
||||||
|
"separateMajorMinor": true,
|
||||||
|
"separateMinorPatch": true,
|
||||||
|
"separateMultipleMinor": true,
|
||||||
|
"separateMultipleMajor": true,
|
||||||
|
"pinDigests": true,
|
||||||
|
"automerge": false,
|
||||||
|
"automergeStrategy": "fast-forward",
|
||||||
|
"rebaseWhen": "behind-base-branch",
|
||||||
|
"packageRules": [
|
||||||
|
{
|
||||||
|
"matchUpdateTypes": ["digest"],
|
||||||
|
"dependencyDashboardApproval": false,
|
||||||
|
"automergeType": "branch"
|
||||||
|
},{
|
||||||
|
"matchUpdateTypes": ["patch"],
|
||||||
|
"dependencyDashboardApproval": false,
|
||||||
|
"automerge": true
|
||||||
|
},{
|
||||||
|
"matchUpdateTypes": ["minor"],
|
||||||
|
"dependencyDashboardApproval": false
|
||||||
|
},{
|
||||||
|
"matchManagers": ["woodpecker"],
|
||||||
|
"pinDigests": false
|
||||||
|
}
|
||||||
|
]
|
||||||
|
}
|
|
@ -15,6 +15,7 @@ import org.junit.jupiter.api.extension.ParameterContext;
|
||||||
import org.junit.jupiter.api.extension.ParameterResolver;
|
import org.junit.jupiter.api.extension.ParameterResolver;
|
||||||
import org.keycloak.admin.client.Keycloak;
|
import org.keycloak.admin.client.Keycloak;
|
||||||
import org.keycloak.admin.client.token.TokenService;
|
import org.keycloak.admin.client.token.TokenService;
|
||||||
|
import org.testcontainers.containers.FixedHostPortGenericContainer;
|
||||||
import org.testcontainers.containers.GenericContainer;
|
import org.testcontainers.containers.GenericContainer;
|
||||||
import org.testcontainers.containers.wait.strategy.Wait;
|
import org.testcontainers.containers.wait.strategy.Wait;
|
||||||
import org.testcontainers.utility.MountableFile;
|
import org.testcontainers.utility.MountableFile;
|
||||||
|
@ -45,28 +46,30 @@ public class KeycloakExtension implements BeforeAllCallback, ParameterResolver {
|
||||||
throw new Exception("Failed to read properties", e);
|
throw new Exception("Failed to read properties", e);
|
||||||
}
|
}
|
||||||
var version = properties.getProperty("version");
|
var version = properties.getProperty("version");
|
||||||
|
var image = "quay.io/keycloak/keycloak:" + version;
|
||||||
var jar = properties.getProperty("jar");
|
var jar = properties.getProperty("jar");
|
||||||
var timeout = properties.getProperty("timeout");
|
var timeout = properties.getProperty("timeout");
|
||||||
|
|
||||||
// create and start container
|
// create and start container
|
||||||
|
|
||||||
@SuppressWarnings("resource")
|
@SuppressWarnings({ "resource", "deprecation" })
|
||||||
var container = new GenericContainer<>("quay.io/keycloak/keycloak:" + version)
|
var container = System.getenv("CI") == null
|
||||||
.withEnv("KEYCLOAK_ADMIN", "admin")
|
? new GenericContainer<>(image).withExposedPorts(8080)
|
||||||
.withEnv("KEYCLOAK_ADMIN_PASSWORD", "password")
|
: new FixedHostPortGenericContainer<>(image).withFixedExposedPort(8080, 8080)
|
||||||
.withEnv("KC_LOG_LEVEL", "io.kokuwa:trace")
|
.withEnv("KEYCLOAK_ADMIN", "admin")
|
||||||
// otherwise port 9000 will be used, with this config we can test different keycloak versions
|
.withEnv("KEYCLOAK_ADMIN_PASSWORD", "password")
|
||||||
.withEnv("KC_LEGACY_OBSERVABILITY_INTERFACE", "true")
|
.withEnv("KC_LOG_LEVEL", "io.kokuwa:trace")
|
||||||
.withEnv("KC_HEALTH_ENABLED", "true")
|
// otherwise port 9000 will be used, with this config we can test different keycloak versions
|
||||||
.withEnv("KC_METRICS_ENABLED", "true")
|
.withEnv("KC_LEGACY_OBSERVABILITY_INTERFACE", "true")
|
||||||
.withEnv("KC_METRICS_STATS_ENABLED", "true")
|
.withEnv("KC_HEALTH_ENABLED", "true")
|
||||||
.withEnv("KC_METRICS_STATS_INTERVAL", "PT1s")
|
.withEnv("KC_METRICS_ENABLED", "true")
|
||||||
.withCopyFileToContainer(MountableFile.forHostPath(jar), "/opt/keycloak/providers/metrics.jar")
|
.withEnv("KC_METRICS_STATS_ENABLED", "true")
|
||||||
.withLogConsumer(out -> System.out.print(out.getUtf8String()))
|
.withEnv("KC_METRICS_STATS_INTERVAL", "PT1s")
|
||||||
.withExposedPorts(8080)
|
.withCopyFileToContainer(MountableFile.forHostPath(jar), "/opt/keycloak/providers/metrics.jar")
|
||||||
.withStartupTimeout(Duration.parse(timeout))
|
.withLogConsumer(out -> System.out.print(out.getUtf8String()))
|
||||||
.waitingFor(Wait.forHttp("/health").forPort(8080))
|
.withStartupTimeout(Duration.parse(timeout))
|
||||||
.withCommand("start-dev");
|
.waitingFor(Wait.forHttp("/health").forPort(8080).withStartupTimeout(Duration.ofMinutes(10)))
|
||||||
|
.withCommand("start-dev");
|
||||||
try {
|
try {
|
||||||
container.start();
|
container.start();
|
||||||
} catch (RuntimeException e) {
|
} catch (RuntimeException e) {
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue