Compare commits
4 commits
81873ebf42
...
db0f36e029
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
db0f36e029 | ||
|
|
c1bd0ec9f9 | ||
|
|
71b7db4985 | ||
|
|
202798219d |
1 changed files with 86 additions and 0 deletions
|
|
@ -3,6 +3,14 @@ on:
|
||||||
push:
|
push:
|
||||||
branches: [main]
|
branches: [main]
|
||||||
workflow_dispatch:
|
workflow_dispatch:
|
||||||
|
|
||||||
|
env:
|
||||||
|
# WIN_HOST is the host machine reachable from inside the job container.
|
||||||
|
# Resolved at runtime to the container's default gateway, since Forgejo Runner
|
||||||
|
# creates a per-job Docker network whose gateway IP varies between runs.
|
||||||
|
WIN_PORT: 2210
|
||||||
|
WIN_USER: edr
|
||||||
|
|
||||||
jobs:
|
jobs:
|
||||||
hello:
|
hello:
|
||||||
runs-on: docker
|
runs-on: docker
|
||||||
|
|
@ -15,3 +23,81 @@ jobs:
|
||||||
node --version
|
node --version
|
||||||
- name: Math check
|
- name: Math check
|
||||||
run: echo "2+2 = $((2+2))"
|
run: echo "2+2 = $((2+2))"
|
||||||
|
|
||||||
|
windows-test:
|
||||||
|
runs-on: docker
|
||||||
|
steps:
|
||||||
|
- name: Install sshpass
|
||||||
|
run: |
|
||||||
|
apt-get update -qq
|
||||||
|
apt-get install -y -qq sshpass openssh-client iproute2
|
||||||
|
|
||||||
|
- name: Resolve host gateway
|
||||||
|
run: |
|
||||||
|
GW=$(ip route | awk '/default/ {print $3; exit}')
|
||||||
|
echo "WIN_HOST=$GW" >> "$GITHUB_ENV"
|
||||||
|
echo "Using host gateway: $GW"
|
||||||
|
|
||||||
|
- name: Wait for Windows VM SSH
|
||||||
|
env:
|
||||||
|
SSHPASS: ${{ secrets.WINDOWS_SSH_PASSWORD }}
|
||||||
|
run: |
|
||||||
|
for i in $(seq 1 30); do
|
||||||
|
if sshpass -e ssh -o StrictHostKeyChecking=no -o ConnectTimeout=3 \
|
||||||
|
-p "$WIN_PORT" "$WIN_USER@$WIN_HOST" "exit" 2>/dev/null; then
|
||||||
|
echo "VM SSH ready"; exit 0
|
||||||
|
fi
|
||||||
|
echo "[$i/30] waiting for VM..."; sleep 5
|
||||||
|
done
|
||||||
|
echo "VM SSH never became ready"; exit 1
|
||||||
|
|
||||||
|
- name: Smoke test on Windows
|
||||||
|
env:
|
||||||
|
SSHPASS: ${{ secrets.WINDOWS_SSH_PASSWORD }}
|
||||||
|
run: |
|
||||||
|
sshpass -e ssh -o StrictHostKeyChecking=no \
|
||||||
|
-p "$WIN_PORT" "$WIN_USER@$WIN_HOST" \
|
||||||
|
"whoami && ver && echo windows-smoke-ok"
|
||||||
|
|
||||||
|
# Verifies the revert actually wiped the previous run's marker.
|
||||||
|
# Fails fast if it finds C:\ci-marker.txt, which would only be there if
|
||||||
|
# a previous CI run left it behind and the revert step didn't restore gold.
|
||||||
|
- name: Verify clean baseline (no marker from prior run)
|
||||||
|
env:
|
||||||
|
SSHPASS: ${{ secrets.WINDOWS_SSH_PASSWORD }}
|
||||||
|
run: |
|
||||||
|
out=$(sshpass -e ssh -o StrictHostKeyChecking=no \
|
||||||
|
-p "$WIN_PORT" "$WIN_USER@$WIN_HOST" \
|
||||||
|
"if exist C:\\ci-marker.txt (echo MARKER_EXISTS & type C:\\ci-marker.txt) else (echo CLEAN)")
|
||||||
|
echo "$out"
|
||||||
|
echo "$out" | grep -q "^CLEAN" || { echo "marker from previous run survived — revert is broken"; exit 1; }
|
||||||
|
|
||||||
|
- name: Drop marker file (would persist without revert)
|
||||||
|
env:
|
||||||
|
SSHPASS: ${{ secrets.WINDOWS_SSH_PASSWORD }}
|
||||||
|
run: |
|
||||||
|
sshpass -e ssh -o StrictHostKeyChecking=no \
|
||||||
|
-p "$WIN_PORT" "$WIN_USER@$WIN_HOST" \
|
||||||
|
"echo run=${GITHUB_RUN_NUMBER} sha=${GITHUB_SHA} > C:\\ci-marker.txt && type C:\\ci-marker.txt"
|
||||||
|
|
||||||
|
# Always-runs cleanup: rolls the VM back to the gold snapshot on the host.
|
||||||
|
# In a separate job so it fires even when windows-test crashes mid-step.
|
||||||
|
revert-vm:
|
||||||
|
runs-on: docker
|
||||||
|
needs: [windows-test]
|
||||||
|
if: always()
|
||||||
|
steps:
|
||||||
|
- name: Install client tools
|
||||||
|
run: |
|
||||||
|
apt-get update -qq
|
||||||
|
apt-get install -y -qq curl iproute2
|
||||||
|
|
||||||
|
- name: Trigger revert on host
|
||||||
|
env:
|
||||||
|
REVERT_TOKEN: ${{ secrets.REVERT_TOKEN }}
|
||||||
|
run: |
|
||||||
|
GW=$(ip route | awk '/default/ {print $3; exit}')
|
||||||
|
echo "calling revert endpoint at $GW:8765"
|
||||||
|
curl -fsSL --max-time 90 -X POST \
|
||||||
|
-H "Authorization: Bearer $REVERT_TOKEN" \
|
||||||
|
"http://$GW:8765/revert"
|
||||||
|
|
|
||||||
Loading…
Add table
Reference in a new issue