Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
48 changes: 29 additions & 19 deletions eng/common/templates/1es-official.yml
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,9 @@ parameters:
- name: stages
type: stageList
default: []
- name: serviceConnections
type: object
default: []
- name: pool
type: object
default:
Expand All @@ -38,23 +41,30 @@ resources:
ref: refs/tags/release

extends:
template: v1/1ES.Official.PipelineTemplate.yml@1ESPipelineTemplates
template: /eng/common/templates/task-prefix-decorator.yml@self
parameters:
pool: ${{ parameters.pool }}
sdl:
binskim:
enabled: true
componentgovernance:
ignoreDirectories: $(Build.SourcesDirectory)/versions
whatIf: ${{ parameters.cgDryRun }}
showAlertLink: true
policheck:
enabled: true
sourceRepositoriesToScan:
exclude:
- repository: InternalVersionsRepo
- repository: PublicVersionsRepo
sourceAnalysisPool: ${{ parameters.sourceAnalysisPool }}
tsa:
enabled: true
stages: ${{ parameters.stages }}
baseTemplate: v1/1ES.Official.PipelineTemplate.yml@1ESPipelineTemplates
templateParameters:
pool: ${{ parameters.pool }}
sdl:
binskim:
enabled: true
componentgovernance:
ignoreDirectories: $(Build.SourcesDirectory)/versions
whatIf: ${{ parameters.cgDryRun }}
showAlertLink: true
policheck:
enabled: true
sourceRepositoriesToScan:
exclude:
- repository: InternalVersionsRepo
- repository: PublicVersionsRepo
sourceAnalysisPool: ${{ parameters.sourceAnalysisPool }}
tsa:
enabled: true
stages:
- template: /eng/common/templates/stages/setup-service-connections.yml@self
parameters:
pool: ${{ parameters.pool }}
serviceConnections: ${{ parameters.serviceConnections }}
- ${{ parameters.stages }}
56 changes: 34 additions & 22 deletions eng/common/templates/1es-unofficial.yml
Original file line number Diff line number Diff line change
Expand Up @@ -20,6 +20,9 @@ parameters:
type: stageList
default: []
# 1ES Pipeline Template parameters
- name: serviceConnections
type: object
default: []
- name: pool
type: object
default:
Expand All @@ -41,26 +44,35 @@ resources:
ref: refs/tags/release

extends:
template: v1/1ES.Unofficial.PipelineTemplate.yml@1ESPipelineTemplates
template: /eng/common/templates/task-prefix-decorator.yml@self
parameters:
pool: ${{ parameters.pool }}
sdl:
binskim:
enabled: true
componentgovernance:
ignoreDirectories: $(Build.SourcesDirectory)/versions
whatIf: true
showAlertLink: true
enableAllTools: ${{ not(parameters.disableSDL) }}
policheck:
enabled: true
sbom:
enabled: true
sourceRepositoriesToScan:
exclude:
- repository: InternalVersionsRepo
- repository: PublicVersionsRepo
sourceAnalysisPool: ${{ parameters.sourceAnalysisPool }}
tsa:
enabled: true
stages: ${{ parameters.stages }}
# Use a unique task prefix for unofficial pipelines
taskPrefix: "🟦"
baseTemplate: v1/1ES.Unofficial.PipelineTemplate.yml@1ESPipelineTemplates
templateParameters:
pool: ${{ parameters.pool }}
sdl:
binskim:
enabled: true
componentgovernance:
ignoreDirectories: $(Build.SourcesDirectory)/versions
whatIf: true
showAlertLink: true
enableAllTools: ${{ not(parameters.disableSDL) }}
policheck:
enabled: true
sbom:
enabled: true
sourceRepositoriesToScan:
exclude:
- repository: InternalVersionsRepo
- repository: PublicVersionsRepo
sourceAnalysisPool: ${{ parameters.sourceAnalysisPool }}
tsa:
enabled: true
stages:
- template: /eng/common/templates/stages/setup-service-connections.yml@self
parameters:
pool: ${{ parameters.pool }}
serviceConnections: ${{ parameters.serviceConnections }}
- ${{ parameters.stages }}
8 changes: 6 additions & 2 deletions eng/common/templates/jobs/build-images.yml
Original file line number Diff line number Diff line change
Expand Up @@ -65,10 +65,14 @@ jobs:
parameters:
name: BuildImages
displayName: Build Images
serviceConnection: $(build.serviceConnectionName)
serviceConnections:
- name: acr
id: $(build.serviceConnection.id)
tenantId: $(build.serviceConnection.tenantId)
clientId: $(build.serviceConnection.clientId)
internalProjectName: ${{ parameters.internalProjectName }}
dockerClientOS: ${{ parameters.dockerClientOS }}
args: >
args: >-
build
--manifest $(manifest)
$(imageBuilderPaths)
Expand Down
5 changes: 4 additions & 1 deletion eng/common/templates/jobs/copy-base-images-staging.yml
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,10 @@ jobs:
additionalOptions: ${{ parameters.additionalOptions }}
acr:
server: $(acr-staging.server)
serviceConnection: $(internal-mirror.serviceConnectionName)
serviceConnection:
tenantId: $(internal-mirror.serviceConnection.tenantId)
clientId: $(internal-mirror.serviceConnection.clientId)
id: $(internal-mirror.serviceConnection.id)
subscription: $(acr-staging.subscription)
resourceGroup: $(acr-staging.resourceGroup)
repoPrefix: $(mirrorRepoPrefix)
2 changes: 1 addition & 1 deletion eng/common/templates/jobs/copy-base-images.yml
Original file line number Diff line number Diff line change
Expand Up @@ -32,7 +32,7 @@ jobs:
- ${{ parameters.customInitSteps }}
- template: /eng/common/templates/steps/copy-base-images.yml@self
parameters:
acr: ${{ parameters.acr }}
acr: ${{ parameters.acr }}
repoPrefix: ${{ parameters.repoPrefix }}
additionalOptions: ${{ parameters.additionalOptions }}
continueOnError: ${{ parameters.continueOnError }}
Expand Down
10 changes: 8 additions & 2 deletions eng/common/templates/jobs/generate-matrix.yml
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,7 @@ parameters:
noCache: false
customInitSteps: []
commonInitStepsForMatrixAndBuild: []
sourceBuildPipelineRunId: ""

jobs:
- job: ${{ parameters.name }}
Expand All @@ -28,9 +29,10 @@ jobs:
parameters:
targetPath: $(Build.ArtifactStagingDirectory)
artifactName: image-info
pipelineRunId: ${{ parameters.sourceBuildPipelineRunId }}
- powershell: |
$additionalGenerateBuildMatrixOptions = "$(additionalGenerateBuildMatrixOptions)"

if ("${{ parameters.isTestStage}}" -eq "true") {
$additionalGenerateBuildMatrixOptions = "$additionalGenerateBuildMatrixOptions --image-info $(artifactsPath)/image-info.json"
}
Expand Down Expand Up @@ -59,6 +61,10 @@ jobs:
parameters:
name: matrix
displayName: Generate ${{ parameters.matrixType }} Matrix
serviceConnection: $(build.serviceConnectionName)
serviceConnections:
- name: acr
tenantId: $(build.serviceConnection.tenantId)
clientId: $(build.serviceConnection.clientId)
id: $(build.serviceConnection.id)
internalProjectName: internal
args: $(generateBuildMatrixCommand)
Loading