Like Prometheus, but for logs.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 
loki/.drone/drone.yml

1313 lines
26 KiB

---
kind: pipeline
name: loki-build-image-amd64
platform:
arch: amd64
os: linux
steps:
- environment:
DOCKER_BUILDKIT: 1
image: plugins/docker
name: push
settings:
context: loki-build-image
dockerfile: loki-build-image/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-build-image
tags:
- 0.33.2-amd64
username:
from_secret: docker_username
when:
event:
- push
- tag
paths:
- loki-build-image/**
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
workspace:
base: /src
path: loki
---
kind: pipeline
name: loki-build-image-arm64
platform:
arch: arm64
os: linux
steps:
- environment:
DOCKER_BUILDKIT: 1
image: plugins/docker
name: push
settings:
context: loki-build-image
dockerfile: loki-build-image/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-build-image
tags:
- 0.33.2-arm64
username:
from_secret: docker_username
when:
event:
- push
- tag
paths:
- loki-build-image/**
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
workspace:
base: /src
path: loki
---
depends_on:
- loki-build-image-amd64
- loki-build-image-arm64
kind: pipeline
name: loki-build-image-publish
steps:
- image: plugins/manifest:1.4.0
name: manifest
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest-build-image.tmpl
target: loki-build-image:0.33.2
username:
from_secret: docker_username
when:
event:
- push
- tag
paths:
- loki-build-image/**
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: helm-test-image
steps:
- image: plugins/docker
name: push-image
settings:
dockerfile: production/helm/loki/src/helm-test/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-helm-test
username:
from_secret: docker_username
when:
event:
- push
- tag
paths:
- production/helm/loki/src/helm-test/**
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
workspace:
base: /src
path: loki
---
kind: pipeline
name: documentation-checks
steps:
- commands:
- make BUILD_IN_CONTAINER=false documentation-helm-reference-check
depends_on:
- clone
environment: {}
image: grafana/loki-build-image:0.33.3
name: documentation-helm-reference-check
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
workspace:
base: /src
path: loki
---
kind: pipeline
name: docker-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-image
settings:
dockerfile: cmd/loki/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-canary-image
settings:
dockerfile: cmd/loki-canary/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-canary
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-canary-boringcrypto-image
settings:
dockerfile: cmd/loki-canary-boringcrypto/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-canary-boringcrypto
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-logcli-image
settings:
dockerfile: cmd/logcli/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/logcli
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: docker-arm64
platform:
arch: arm64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-image
settings:
dockerfile: cmd/loki/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-canary-image
settings:
dockerfile: cmd/loki-canary/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-canary
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-canary-boringcrypto-image
settings:
dockerfile: cmd/loki-canary-boringcrypto/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-canary-boringcrypto
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-logcli-image
settings:
dockerfile: cmd/logcli/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/logcli
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: docker-arm
platform:
arch: arm
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-loki-image
settings:
dockerfile: cmd/loki/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-loki-canary-image
settings:
dockerfile: cmd/loki-canary/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-canary
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-loki-canary-boringcrypto-image
settings:
dockerfile: cmd/loki-canary-boringcrypto/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-canary-boringcrypto
username:
from_secret: docker_username
when:
event:
- push
- tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-logcli-image
settings:
dockerfile: cmd/logcli/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/logcli
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: promtail-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-promtail-image
settings:
dockerfile: clients/cmd/promtail/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/promtail
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: promtail-arm64
platform:
arch: arm64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-promtail-image
settings:
dockerfile: clients/cmd/promtail/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/promtail
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: promtail-arm
platform:
arch: arm
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-promtail-image
settings:
dockerfile: clients/cmd/promtail/Dockerfile.arm32
dry_run: false
password:
from_secret: docker_password
repo: grafana/promtail
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: lokioperator-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-operator-image
settings:
context: operator
dockerfile: operator/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-operator
username:
from_secret: docker_username
when:
event:
- push
- tag
ref:
- refs/heads/main
- refs/tags/operator/v*
trigger:
ref:
- refs/heads/main
- refs/tags/operator/v*
- refs/pull/*/head
---
kind: pipeline
name: lokioperator-arm64
platform:
arch: arm64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-loki-operator-image
settings:
context: operator
dockerfile: operator/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-operator
username:
from_secret: docker_username
when:
event:
- push
- tag
ref:
- refs/heads/main
- refs/tags/operator/v*
trigger:
ref:
- refs/heads/main
- refs/tags/operator/v*
- refs/pull/*/head
---
kind: pipeline
name: lokioperator-arm
platform:
arch: arm
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-loki-operator-image
settings:
context: operator
dockerfile: operator/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-operator
username:
from_secret: docker_username
when:
event:
- push
- tag
ref:
- refs/heads/main
- refs/tags/operator/v*
trigger:
ref:
- refs/heads/main
- refs/tags/operator/v*
- refs/pull/*/head
---
kind: pipeline
name: fluent-bit-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-fluent-bit-image
settings:
dockerfile: clients/cmd/fluent-bit/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/fluent-bit-plugin-loki
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: fluent-bit-arm64
platform:
arch: arm64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-fluent-bit-image
settings:
dockerfile: clients/cmd/fluent-bit/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/fluent-bit-plugin-loki
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: fluent-bit-arm
platform:
arch: arm
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker:linux-arm
name: publish-fluent-bit-image
settings:
dockerfile: clients/cmd/fluent-bit/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/fluent-bit-plugin-loki
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: fluentd-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
- echo ",main" >> .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-fluentd-image
settings:
dockerfile: clients/cmd/fluentd/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/fluent-plugin-loki
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: logstash-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
- echo ",main" >> .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-logstash-image
settings:
dockerfile: clients/cmd/logstash/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/logstash-output-loki
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: querytee-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
- echo ",main" >> .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-querytee-image
settings:
dockerfile: cmd/querytee/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/loki-query-tee
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
depends_on:
- docker-amd64
- docker-arm64
- docker-arm
- promtail-amd64
- promtail-arm64
- promtail-arm
- fluent-bit-amd64
- fluent-bit-arm64
- fluent-bit-arm
kind: pipeline
name: manifest
steps:
- depends_on:
- clone
image: plugins/manifest:1.4.0
name: manifest-promtail
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest.tmpl
target: promtail
username:
from_secret: docker_username
- depends_on:
- clone
- manifest-promtail
image: plugins/manifest:1.4.0
name: manifest-loki
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest.tmpl
target: loki
username:
from_secret: docker_username
- depends_on:
- clone
- manifest-loki
image: plugins/manifest:1.4.0
name: manifest-loki-canary
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest.tmpl
target: loki-canary
username:
from_secret: docker_username
- depends_on:
- clone
- manifest-loki-canary
image: plugins/manifest:1.4.0
name: manifest-loki-canary-boringcrypto
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest.tmpl
target: loki-canary-boringcrypto
username:
from_secret: docker_username
- depends_on:
- clone
- manifest-loki-canary-boringcrypto
image: plugins/manifest:1.4.0
name: manifest-fluent-bit-plugin-loki
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest.tmpl
target: fluent-bit-plugin-loki
username:
from_secret: docker_username
trigger:
event:
- push
- tag
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
depends_on:
- lokioperator-amd64
- lokioperator-arm64
- lokioperator-arm
kind: pipeline
name: manifest-operator
steps:
- depends_on:
- clone
image: plugins/manifest:1.4.0
name: manifest-loki-operator
settings:
ignore_missing: false
password:
from_secret: docker_password
spec: .drone/docker-manifest-operator.tmpl
target: loki-operator
username:
from_secret: docker_username
trigger:
event:
- push
- tag
ref:
- refs/heads/main
- refs/tags/operator/v*
---
depends_on:
- manifest
image_pull_secrets:
- dockerconfigjson
kind: pipeline
name: deploy
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag) > .tag
- export RELEASE_TAG=$(cat .tag)
- export RELEASE_NAME=$([[ $RELEASE_TAG =~ $RELEASE_TAG_REGEXP ]] && echo $RELEASE_TAG
| grep -oE $MAJOR_MINOR_VERSION_REGEXP | sed "s/\./-/g" | sed "s/$/-x/" || echo
"next")
- echo $RELEASE_NAME
- echo $PLUGIN_CONFIG_TEMPLATE > updater-config.json
- sed -i "s/\"{{release}}\"/\"$RELEASE_NAME\"/g" updater-config.json
- sed -i "s/{{version}}/$RELEASE_TAG/g" updater-config.json
depends_on:
- clone
environment:
MAJOR_MINOR_VERSION_REGEXP: ([0-9]+\.[0-9]+)
RELEASE_TAG_REGEXP: ^([0-9]+\.[0-9]+\.[0-9]+)$
image: alpine
name: prepare-updater-config
settings:
config_template:
from_secret: updater_config_template
- depends_on:
- prepare-updater-config
image: us.gcr.io/kubernetes-dev/drone/plugins/updater@sha256:cbcb09c74f96a34c528f52bf9b4815a036b11fed65f685be216e0c8b8e84285b
name: trigger
settings:
config_file: updater-config.json
github_token:
from_secret: github_token
trigger:
event:
- push
- tag
ref:
- refs/heads/main
- refs/tags/v*
---
depends_on:
- manifest
image_pull_secrets:
- dockerconfigjson
kind: pipeline
name: update-loki-helm-chart-on-loki-release
steps:
- commands:
- apk add --no-cache bash git
- git fetch --tags
- latest_version=$(git tag -l 'v[0-9]*.[0-9]*.[0-9]*' | sort -V | tail -n 1 | sed
's/v//g')
- RELEASE_TAG=$(./tools/image-tag)
- if [ "$RELEASE_TAG" != "$latest_version" ]; then echo "Current version $RELEASE_TAG
is not the latest version of Loki. The latest version is $latest_version" && exit
78; fi
image: alpine
name: check-version-is-latest
when:
event:
- tag
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- RELEASE_TAG=$(./tools/image-tag)
- echo $PLUGIN_CONFIG_TEMPLATE > updater-config.json
- sed -i -E "s/\{\{release\}\}/$RELEASE_TAG/g" updater-config.json
depends_on:
- check-version-is-latest
image: alpine
name: prepare-helm-chart-update-config
settings:
config_template:
from_secret: helm-chart-update-config-template
- depends_on:
- prepare-helm-chart-update-config
image: us.gcr.io/kubernetes-dev/drone/plugins/updater@sha256:cbcb09c74f96a34c528f52bf9b4815a036b11fed65f685be216e0c8b8e84285b
name: trigger-helm-chart-update
settings:
config_file: updater-config.json
github_token:
from_secret: github_token
trigger:
ref:
- refs/tags/v*
---
kind: pipeline
name: logql-analyzer
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
image: alpine
name: image-tag
- depends_on:
- image-tag
image: plugins/docker
name: publish-logql-analyzer-image
settings:
dockerfile: cmd/logql-analyzer/Dockerfile
dry_run: false
password:
from_secret: docker_password
repo: grafana/logql-analyzer
username:
from_secret: docker_username
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: docker-driver
steps:
- commands:
- git fetch origin --tags
- make docker-driver-push
depends_on:
- clone
environment:
DOCKER_PASSWORD:
from_secret: docker_password
DOCKER_USERNAME:
from_secret: docker_username
image: grafana/loki-build-image:0.33.3
name: build and push
privileged: true
volumes:
- name: docker
path: /var/run/docker.sock
trigger:
event:
- push
- tag
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
volumes:
- host:
path: /var/run/docker.sock
name: docker
---
kind: pipeline
name: lambda-promtail-amd64
platform:
arch: amd64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-amd64 > .tags
image: alpine
name: image-tag
- commands:
- if [ "$${#TEST_SECRET}" -eq 0 ]; then
- ' echo "Missing a secret to run this pipeline. This branch needs to be re-pushed
as a branch in main grafana/loki repository in order to run." && exit 78'
- fi
environment:
TEST_SECRET:
from_secret: ecr_key
image: alpine
name: skip pipeline if missing secret
- depends_on:
- image-tag
image: cstyan/ecr
name: publish-lambda-promtail-image
privileged: true
settings:
access_key:
from_secret: ecr_key
dockerfile: tools/lambda-promtail/Dockerfile
dry_run: false
region: us-east-1
registry: public.ecr.aws/grafana
repo: public.ecr.aws/grafana/lambda-promtail
secret_key:
from_secret: ecr_secret_key
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
kind: pipeline
name: lambda-promtail-arm64
platform:
arch: arm64
os: linux
steps:
- commands:
- apk add --no-cache bash git
- git fetch origin --tags
- echo $(./tools/image-tag)-arm64 > .tags
image: alpine
name: image-tag
- commands:
- if [ "$${#TEST_SECRET}" -eq 0 ]; then
- ' echo "Missing a secret to run this pipeline. This branch needs to be re-pushed
as a branch in main grafana/loki repository in order to run." && exit 78'
- fi
environment:
TEST_SECRET:
from_secret: ecr_key
image: alpine
name: skip pipeline if missing secret
- depends_on:
- image-tag
image: cstyan/ecr
name: publish-lambda-promtail-image
privileged: true
settings:
access_key:
from_secret: ecr_key
dockerfile: tools/lambda-promtail/Dockerfile
dry_run: false
region: us-east-1
registry: public.ecr.aws/grafana
repo: public.ecr.aws/grafana/lambda-promtail
secret_key:
from_secret: ecr_secret_key
when:
event:
- push
- tag
trigger:
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
---
depends_on:
- lambda-promtail-amd64
- lambda-promtail-arm64
kind: pipeline
name: manifest-ecr
steps:
- commands:
- apk add --no-cache aws-cli
- docker login --username AWS --password $(aws ecr-public get-login-password --region
us-east-1) public.ecr.aws
depends_on:
- clone
environment:
AWS_ACCESS_KEY_ID:
from_secret: ecr_key
AWS_SECRET_ACCESS_KEY:
from_secret: ecr_secret_key
image: docker:dind
name: ecr-login
volumes:
- name: dockerconf
path: /root/.docker
- depends_on:
- clone
- ecr-login
image: plugins/manifest:1.4.0
name: manifest-lambda-promtail
settings:
ignore_missing: true
spec: .drone/docker-manifest-ecr.tmpl
target: lambda-promtail
volumes:
- name: dockerconf
path: /.docker
trigger:
event:
- push
ref:
- refs/heads/main
- refs/heads/k???
- refs/tags/v*
- refs/pull/*/head
volumes:
- name: dockerconf
temp: {}
---
get:
name: pat
path: infra/data/ci/github/grafanabot
kind: secret
name: github_token
---
get:
name: .dockerconfigjson
path: secret/data/common/gcr
kind: secret
name: dockerconfigjson
---
get:
name: username
path: infra/data/ci/docker_hub
kind: secret
name: docker_username
---
get:
name: password
path: infra/data/ci/docker_hub
kind: secret
name: docker_password
---
get:
name: access_key_id
path: infra/data/ci/loki/aws-credentials
kind: secret
name: ecr_key
---
get:
name: secret_access_key
path: infra/data/ci/loki/aws-credentials
kind: secret
name: ecr_secret_key
---
get:
name: updater-config-template.json
path: secret/data/common/loki_ci_autodeploy
kind: secret
name: updater_config_template
---
get:
name: on-loki-release-config.json
path: secret/data/common/loki-helm-chart-auto-update
kind: secret
name: helm-chart-update-config-template
---
get:
name: passphrase
path: infra/data/ci/packages-publish/gpg
kind: secret
name: gpg_passphrase
---
get:
name: private-key
path: infra/data/ci/packages-publish/gpg
kind: secret
name: gpg_private_key
---
kind: signature
hmac: 33b9d2962b6dfcf1136ef7602d29e3f32f03b0d90dfd579652cbaf0a4ef2de4b
...