Merge pull request #14 from constructive-io/feat/dockerhub-readme-sync #56
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Build and Push Docker Image | |
| on: | |
| push: | |
| branches: [main] | |
| tags: ['v*'] | |
| pull_request: | |
| branches: [main] | |
| env: | |
| REGISTRY: ghcr.io | |
| IMAGE_NAME: constructive-io/docker/postgres-plus | |
| DOCKERHUB_IMAGE: constructiveio/postgres-plus | |
| PG_VERSION: '18' | |
| concurrency: | |
| group: ${{ github.workflow }}-${{ github.ref }}-docker-postgres-plus | |
| cancel-in-progress: true | |
| jobs: | |
| build-postgres-plus: | |
| strategy: | |
| fail-fast: false | |
| matrix: | |
| include: | |
| - platform: linux/amd64 | |
| arch: amd64 | |
| runner: ubuntu-latest | |
| - platform: linux/arm64 | |
| arch: arm64 | |
| runner: ubuntu-24.04-arm | |
| runs-on: ${{ matrix.runner }} | |
| permissions: | |
| contents: read | |
| packages: write | |
| steps: | |
| - name: Checkout | |
| uses: actions/checkout@v4 | |
| - name: Set up Docker Buildx | |
| uses: docker/setup-buildx-action@v3 | |
| - name: Log in to Container Registry | |
| if: github.event_name != 'pull_request' | |
| uses: docker/login-action@v3 | |
| with: | |
| registry: ${{ env.REGISTRY }} | |
| username: ${{ github.actor }} | |
| password: ${{ secrets.GITHUB_TOKEN }} | |
| - name: Extract metadata | |
| id: meta | |
| uses: docker/metadata-action@v5 | |
| with: | |
| images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }} | |
| tags: | | |
| type=raw,value=latest,enable=${{ github.ref == 'refs/heads/main' }} | |
| type=raw,value=${{ env.PG_VERSION }},enable=${{ github.ref == 'refs/heads/main' }} | |
| type=sha,format=short,prefix= | |
| type=semver,pattern={{version}},enable=${{ startsWith(github.ref, 'refs/tags/v') }} | |
| type=semver,pattern={{major}}.{{minor}},enable=${{ startsWith(github.ref, 'refs/tags/v') }} | |
| - name: Build (no push, PR only, amd64) | |
| if: github.event_name == 'pull_request' && matrix.platform == 'linux/amd64' | |
| uses: docker/build-push-action@v6 | |
| with: | |
| context: . | |
| file: ./Dockerfile | |
| platforms: linux/amd64 | |
| push: false | |
| tags: ${{ steps.meta.outputs.tags }} | |
| labels: ${{ steps.meta.outputs.labels }} | |
| build-args: | | |
| PG_VERSION=${{ env.PG_VERSION }} | |
| cache-from: type=gha | |
| cache-to: type=gha,mode=max | |
| - name: Build & push by digest | |
| if: github.event_name != 'pull_request' | |
| id: build | |
| uses: docker/build-push-action@v6 | |
| with: | |
| context: . | |
| file: ./Dockerfile | |
| platforms: ${{ matrix.platform }} | |
| labels: ${{ steps.meta.outputs.labels }} | |
| outputs: type=image,name=${{ env.REGISTRY }}/${{ env.IMAGE_NAME }},push-by-digest=true,push=true | |
| build-args: | | |
| PG_VERSION=${{ env.PG_VERSION }} | |
| cache-from: type=gha | |
| cache-to: type=gha,mode=max | |
| - name: Export digest | |
| if: github.event_name != 'pull_request' | |
| run: | | |
| mkdir -p "${{ runner.temp }}/digests" | |
| digest="${{ steps.build.outputs.digest }}" | |
| touch "${{ runner.temp }}/digests/${digest#sha256:}" | |
| - name: Upload digest | |
| if: github.event_name != 'pull_request' | |
| uses: actions/upload-artifact@v4 | |
| with: | |
| name: digests-${{ matrix.arch }} | |
| path: ${{ runner.temp }}/digests/* | |
| publish-postgres-plus-manifest: | |
| if: github.event_name != 'pull_request' | |
| runs-on: ubuntu-latest | |
| needs: build-postgres-plus | |
| env: | |
| DOCKERHUB_ENABLED: ${{ secrets.DOCKERHUB_USERNAME != '' && secrets.DOCKERHUB_TOKEN != '' }} | |
| permissions: | |
| contents: read | |
| packages: write | |
| steps: | |
| - name: Set up Docker Buildx | |
| uses: docker/setup-buildx-action@v3 | |
| - name: Log in to Container Registry | |
| uses: docker/login-action@v3 | |
| with: | |
| registry: ${{ env.REGISTRY }} | |
| username: ${{ github.actor }} | |
| password: ${{ secrets.GITHUB_TOKEN }} | |
| - name: Download digests | |
| uses: actions/download-artifact@v4 | |
| with: | |
| pattern: digests-* | |
| path: ${{ runner.temp }}/digests | |
| merge-multiple: true | |
| - name: Extract metadata | |
| id: meta | |
| uses: docker/metadata-action@v5 | |
| with: | |
| images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }} | |
| tags: | | |
| type=raw,value=latest,enable=${{ github.ref == 'refs/heads/main' }} | |
| type=raw,value=${{ env.PG_VERSION }},enable=${{ github.ref == 'refs/heads/main' }} | |
| type=sha,format=short,prefix= | |
| type=semver,pattern={{version}},enable=${{ startsWith(github.ref, 'refs/tags/v') }} | |
| type=semver,pattern={{major}}.{{minor}},enable=${{ startsWith(github.ref, 'refs/tags/v') }} | |
| - name: Create and push multi-arch manifests | |
| run: | | |
| set -euo pipefail | |
| image="${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}" | |
| digest_dir="${{ runner.temp }}/digests" | |
| if [ ! -d "$digest_dir" ]; then | |
| echo "No digests directory found at $digest_dir" | |
| exit 1 | |
| fi | |
| digests="" | |
| for digest_file in "$digest_dir"/*; do | |
| digest="$(basename "$digest_file")" | |
| digests="$digests $image@sha256:$digest" | |
| done | |
| if [ -z "$digests" ]; then | |
| echo "No digests found to create manifest" | |
| exit 1 | |
| fi | |
| echo "Creating manifests for tags:" | |
| echo "${{ steps.meta.outputs.tags }}" | |
| echo "${{ steps.meta.outputs.tags }}" | while read -r tag; do | |
| [ -z "$tag" ] && continue | |
| echo "Creating multi-arch manifest for $tag" | |
| docker buildx imagetools create -t "$tag" $digests | |
| done | |
| - name: Log in to Docker Hub | |
| if: env.DOCKERHUB_ENABLED == 'true' | |
| uses: docker/login-action@v3 | |
| with: | |
| username: ${{ secrets.DOCKERHUB_USERNAME }} | |
| password: ${{ secrets.DOCKERHUB_TOKEN }} | |
| - name: Extract Docker Hub metadata | |
| if: env.DOCKERHUB_ENABLED == 'true' | |
| id: meta-dockerhub | |
| uses: docker/metadata-action@v5 | |
| with: | |
| images: docker.io/${{ env.DOCKERHUB_IMAGE }} | |
| tags: | | |
| type=raw,value=latest,enable=${{ github.ref == 'refs/heads/main' }} | |
| type=raw,value=${{ env.PG_VERSION }},enable=${{ github.ref == 'refs/heads/main' }} | |
| type=sha,format=short,prefix= | |
| type=semver,pattern={{version}},enable=${{ startsWith(github.ref, 'refs/tags/v') }} | |
| type=semver,pattern={{major}}.{{minor}},enable=${{ startsWith(github.ref, 'refs/tags/v') }} | |
| - name: Checkout | |
| if: env.DOCKERHUB_ENABLED == 'true' | |
| uses: actions/checkout@v4 | |
| - name: Update Docker Hub description | |
| if: env.DOCKERHUB_ENABLED == 'true' && github.ref == 'refs/heads/main' | |
| uses: peter-evans/dockerhub-description@v4 | |
| with: | |
| username: ${{ secrets.DOCKERHUB_USERNAME }} | |
| password: ${{ secrets.DOCKERHUB_TOKEN }} | |
| repository: ${{ env.DOCKERHUB_IMAGE }} | |
| short-description: "Lean PostgreSQL 18 with pgvector, PostGIS, pg_textsearch, pg_partman" | |
| readme-filepath: ./README.md | |
| - name: Create and push Docker Hub manifests | |
| if: env.DOCKERHUB_ENABLED == 'true' | |
| run: | | |
| set -euo pipefail | |
| image="${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}" | |
| digest_dir="${{ runner.temp }}/digests" | |
| digests="" | |
| for digest_file in "$digest_dir"/*; do | |
| digest="$(basename "$digest_file")" | |
| digests="$digests $image@sha256:$digest" | |
| done | |
| echo "${{ steps.meta-dockerhub.outputs.tags }}" | while read -r tag; do | |
| [ -z "$tag" ] && continue | |
| echo "Creating multi-arch manifest for $tag" | |
| docker buildx imagetools create -t "$tag" $digests | |
| done |