feat(ci): ISO releases start on GitHub (tag + notes, iso-release.yml); the Gitea mirror builds on that tag and attaches the ISO (a release on the mirror survives its syncs only with a tag from GitHub); steamify-prepare.sh takes an exact STEAMIFY_VERSION

This commit is contained in:
theupriser committed 2026-09-29 21:39:00 +02:00
1 parent da1524961b
commit ff0ec9f11e
4 files changed
+111 -37

No files matched your search

+41 -33
View File
@@ -1,20 +1,20 @@
# The Steamify ISO, built and released on the Gitea mirror (git.upriser.nl) by its own runner: the same
# build as by hand (the wsl-build-host skill in steamify-cachyos-dev), then a Gitea release with the ISO,
# its checksums and package list, notes from CHANGELOG.md's Steamify section. The ISO's version is the
# Steamify version on it plus the build date and time (UTC): master releases v<steamify>-<date>-<HHMM>,
# feat/steamify a pre-release v<steamify>-dev.<date>-<HHMM>. Never overwritten. GitHub skips it (one file
# for both servers; GitHub releases take at most 2 GB per file, the ISO is bigger).
# The Steamify ISO's release, step 2 of 2 (the Gitea mirror, git.upriser.nl, on its own runner): builds the
# ISO for a release tag that iso-release.yml created on GitHub (it comes in with the mirror's sync, and a
# release on the mirror only survives its syncs when its tag comes from GitHub), then attaches the ISO, its
# checksums and package list to the mirror's release for that tag. The tag names the Steamify version and
# the time: v<steamify>-<YYYY.MM.DD>-<HHMM> (master) or v<steamify>-dev.<...> (feat/steamify, a pre-release);
# the ISO gets exactly that Steamify release, and its label the same moment. GitHub skips it.
# The runner needs privileged containers (archiso mounts loop devices) and ~20 GB of disk; Gitea's
# [attachment] MAX_SIZE must allow the ISO (default 2 GB).
# [repository.release] FILE_MAX_SIZE must allow the ISO (default 2 GB).
name: Steamify ISO (Gitea release)
on:
push:
branches: [master, feat/steamify]
tags: ['v*']
workflow_dispatch:
concurrency:
group: steamify-iso
group: steamify-iso-${{ github.ref }}
cancel-in-progress: true
jobs:
@@ -38,11 +38,21 @@ jobs:
with:
fetch-depth: 0
- name: Steamify on the ISO (its newest release)
- name: Version and time from the tag
run: |
./steamify-prepare.sh
# One moment for the ISO's label (profiledef.sh) and the release's name.
echo "STEAMIFY_BUILD_STAMP=$(date -u +%Y%m%d_%H%M)" >> "$GITHUB_ENV"
tag="${{ github.ref_name }}"
[[ "$tag" =~ ^v([0-9]+\.[0-9]+\.[0-9]+)-(dev\.)?([0-9]{4})\.([0-9]{2})\.([0-9]{2})-([0-9]{4})$ ]] ||
{ echo "::error::$tag is not a Steamify ISO release tag (v<steamify>-[dev.]<YYYY.MM.DD>-<HHMM>)"; exit 1; }
m=("${BASH_REMATCH[@]}")
{
echo "STEAMIFY_VERSION=${m[1]}"
# One moment for the ISO's label (profiledef.sh) and the release's name: the tag's.
echo "STEAMIFY_BUILD_STAMP=${m[3]}${m[4]}${m[5]}_${m[6]}"
echo "ISO_PRERELEASE=$([ -n "${m[2]}" ] && echo true || echo false)"
} >> "$GITHUB_ENV"
- name: Steamify ${{ env.STEAMIFY_VERSION }} on the ISO
run: ./steamify-prepare.sh
- name: Build
run: |
@@ -57,44 +67,42 @@ jobs:
run: |
iso="$(ls out/desktop/*.iso | head -n 1)"
[ -f "$iso" ] || { echo "::error::no ISO in out/desktop"; exit 1; }
steamify="$(sed -n 's/^VERSION=//p' archiso/airootfs/usr/local/share/steamify/steamify.sh | head -n 1)"
[ -n "$steamify" ] || { echo "::error::no Steamify version on the ISO"; exit 1; }
api="${{ github.server_url }}/api/v1/repos/${{ github.repository }}"
exists() { curl -fsS -o /dev/null -H "Authorization: token $TOKEN" "$api/releases/tags/$1"; }
b="$STEAMIFY_BUILD_STAMP" # YYYYMMDD_HHMM (UTC), the same moment as the ISO's label
stamp="${b:0:4}.${b:4:2}.${b:6:2}-${b:9:4}" # every build its own name
if [ "${{ github.ref }}" = refs/heads/master ]; then
tag="v$steamify-$stamp" prerelease=false name="CachyOS with Steamify Live ISO $steamify ($stamp UTC)"
tag="${{ github.ref_name }}" b="$STEAMIFY_BUILD_STAMP"
stamp="${b:0:4}.${b:4:2}.${b:6:2}-${b:9:4}"
if [ "$ISO_PRERELEASE" = true ]; then
name="CachyOS with Steamify Live ISO $STEAMIFY_VERSION (test build $stamp UTC)"
else
tag="v$steamify-dev.$stamp" prerelease=true name="CachyOS with Steamify Live ISO $steamify (test build $stamp UTC)"
name="CachyOS with Steamify Live ISO $STEAMIFY_VERSION ($stamp UTC)"
fi
# Never overwritten (a rerun in the same minute would find its tag taken).
if exists "$tag"; then
echo "::warning::$tag is already released and won't be overwritten."
# Never overwritten: a release for this tag that already has the ISO is left alone.
api="${{ github.server_url }}/api/v1/repos/${{ github.repository }}"
if curl -fsS -H "Authorization: token $TOKEN" "$api/releases/tags/$tag" -o /tmp/rel.json &&
[ "$(jq '[.assets[] | select(.name | endswith(".iso"))] | length' /tmp/rel.json)" -gt 0 ]; then
echo "::warning::$tag already has its ISO and won't be overwritten."
echo "publish=false" >> "$GITHUB_OUTPUT"; exit 0
fi
{ echo "publish=true"; echo "tag=$tag"; echo "prerelease=$prerelease"; echo "name=$name"; } >> "$GITHUB_OUTPUT"
# The Steamify section of CHANGELOG.md ("## CachyOS with Steamify Live ISO"), without its heading.
{ echo "publish=true"; echo "name=$name"; } >> "$GITHUB_OUTPUT"
section="$(awk '/^## CachyOS with Steamify Live ISO/ {found = 1; next} found && /^#/ {exit} found' CHANGELOG.md)"
{
echo "Built $(date -u '+%F %H:%M UTC') from \`$(git rev-parse --short HEAD)\` (${{ github.ref_name }}), with Steamify $steamify."
echo "Built from \`$(git rev-parse --short HEAD)\` ($tag) with Steamify $STEAMIFY_VERSION."
echo
echo "SHA-256: \`$(cut -d' ' -f1 "$iso.sha256")\`, label \`STEAMIFY_${steamify//./_}_$b\`"
echo "SHA-256: \`$(cut -d' ' -f1 "$iso.sha256")\`, label \`STEAMIFY_${STEAMIFY_VERSION//./_}_$b\`"
echo
echo "Sources: [Steamify](https://github.com/theupriser/steamify-cachyos/tree/v$STEAMIFY_VERSION), this repository at this tag, and the packages' sources at [CachyOS](https://github.com/CachyOS) and [Arch Linux](https://archlinux.org/packages/)."
echo
echo "$section"
} > release-notes.md
cat release-notes.md
- name: Publish ${{ steps.rel.outputs.tag }}
- name: Publish ${{ github.ref_name }}
if: steps.rel.outputs.publish == 'true'
uses: akkuman/gitea-release-action@v1.3.7
with:
token: ${{ github.token }}
tag_name: ${{ steps.rel.outputs.tag }}
target_commitish: ${{ github.sha }}
tag_name: ${{ github.ref_name }}
name: ${{ steps.rel.outputs.name }}
body_path: release-notes.md
prerelease: ${{ steps.rel.outputs.prerelease }}
prerelease: ${{ env.ISO_PRERELEASE }}
files: |
out/desktop/*.iso
out/desktop/*.iso.sha256