jenkins: Master: HostName: jenkins.molgenis.org ServiceType: ClusterIP InstallPlugins: - kubernetes:1.12.0 - workflow-aggregator:2.5 - workflow-job:2.21 - credentials-binding:1.16 - git:3.9.1 - github-branch-source:2.3.6 - kubernetes-credentials-provider:0.9 - blueocean:1.6.2 - github-oauth:0.29 - gogs-webhook:1.0.14 - sauce-ondemand:1.176 Security: UseGitHub: false GitHub: ClientID: "" ClienSecret: "" DefaultView: dev Views: dev: - molgenis ops: - molgenis-ops-docker-httpd - molgenis-ops-docker-maven - molgenis-ops-docker-node - molgenis-ops-tools - molgenis-ops-tomcat Jobs: |- molgenis: |- .* false true -1 -1 H H * * * 86400000 false molgenis molgenis-jenkins-github-secret 1 1 1 Jenkinsfile molgenis-ops-docker-httpd: |- HTTPD server that can be used for redirection and proxieing molgenis-ops-docker-httpd false true -1 -1 false a756941d-6c9d-4492-bcf9-327041764be6 https://git.webhosting.rug.nl/molgenis/molgenis-ops-docker-httpd.git molgenis-jenkins-gogs-secret Jenkinsfile molgenis-ops-docker-node: |- NodeJS build container with Curl molgenis-ops-docker-node false true -1 -1 false a756941d-6c9d-4492-bcf9-327041764be6 https://git.webhosting.rug.nl/molgenis/molgenis-ops-docker-node.git molgenis-jenkins-gogs-secret Jenkinsfile molgenis-ops-docker-maven: |- MAVEN build container with RPMbuild and Curl molgenis-ops-docker-maven false true -1 -1 false 4702479a-6988-4a85-b4b7-e77fa2d05ffa https://git.webhosting.rug.nl/molgenis/molgenis-ops-docker-maven.git molgenis-jenkins-gogs-secret Jenkinsfile molgenis-ops-tomcat: |- MOLGENIS tomcat package to manage tomcat version on CentOS molgenis-ops-tomcat false true -1 -1 false 4702479a-6988-4a85-b4b7-e77fa2d05ffa https://git.webhosting.rug.nl/molgenis/molgenis-ops-tomcat.git molgenis-jenkins-gogs-secret Jenkinsfile molgenis-ops-tools: |- MOLGENIS operations tools-package to configure firewall, apache, sudoers, etc. molgenis-ops-tools false true -1 -1 false 4702479a-6988-4a85-b4b7-e77fa2d05ffa https://git.webhosting.rug.nl/molgenis/molgenis-ops-tools.git molgenis-jenkins-gogs-secret Jenkinsfile # Kubernetes secret that contains a 'credentials.xml' for Jenkins # CredentialsXmlSecret: jenkins-credentials # Kubernetes secret that contains files to be put in the Jenkins 'secrets' directory, # useful to manage encryption keys used for credentials.xml for instance (such as # master.key and hudson.util.Secret) # SecretsFilesSecret: jenkins-secrets CustomConfigMap: true rbac: install: true Pods: molgenis: Label: molgenisv2 NodeUsageMode: EXCLUSIVE volumes: - type: HostPath hostPath: "/var/run/docker.sock" mountPath: "/var/run/docker.sock" Containers: maven: Image: "registry.webhosting.rug.nl/molgenis/maven" ImageTag: lts AlwaysPullImage: true Command: cat WorkingDir: /home/jenkins TTY: true resources: requests: cpu: "1" memory: "4Gi" EnvVars: - type: KeyValue key: MAVEN_OPTS value: "-Duser.home=/home/jenkins" - type: KeyValue key: MAVEN_CONFIG value: "/home/jenkins/.m2" alpine: Image: "spotify/alpine" Command: cat WorkingDir: /home/jenkins TTY: true vault: Image: "vault" Command: cat WorkingDir: /home/jenkins TTY: true EnvVars: - type: Secret key: VAULT_TOKEN secretName: molgenis-pipeline-vault-secret secretKey: token - type: Secret key: VAULT_SKIP_VERIFY secretName: molgenis-pipeline-vault-secret secretKey: skipVerify - type: Secret key: VAULT_ADDR secretName: molgenis-pipeline-vault-secret secretKey: addr NodeSelector: {} molgenis-legacy: InheritFrom: molgenis Label: molgenis NodeUsageMode: NORMAL volumes: - type: Secret secretName: molgenis-pipeline-file-secret mountPath: "/home/jenkins/.m2" Containers: EnvVars: - type: Secret key: PGP_PASSPHRASE secretName: molgenis-pipeline-env-secret secretKey: pgpPassphrase - type: KeyValue key: PGP_SECRETKEY value: "keyfile:/home.jenkins/.m2/key.asc" - type: KeyValue key: npm_config_registry value: "http://nexus.molgenis-nexus:8081/repository/npm-central/" - type: Secret key: SONAR_TOKEN secretName: molgenis-pipeline-env-secret secretKey: sonarToken - type: Secret key: CODECOV_TOKEN secretName: molgenis-pipeline-env-secret secretKey: codecovToken - type: Secret key: GITHUB_TOKEN secretName: molgenis-pipeline-env-secret secretKey: githubToken NodeSelector: {} node: Label: node-carbon NodeUsageMode: EXCLUSIVE Containers: node: Image: "registry.webhosting.rug.nl/molgenis/node" ImageTag: lts AlwaysPullImage: true Command: cat WorkingDir: /home/jenkins TTY: true EnvVars: - type: KeyValue key: npm_config_registry value: "http://nexus.molgenis-nexus:8081/repository/npm-central/" - type: Secret key: CODECOV_TOKEN secretName: molgenis-pipeline-env-secret secretKey: codecovToken - type: Secret key: GITHUB_TOKEN secretName: molgenis-pipeline-env-secret secretKey: githubToken - type: Secret key: NPM_TOKEN secretName: molgenis-pipeline-env-secret secretKey: npmToken NodeSelector: {} molgenis-it: InheritFrom: molgenis Label: molgenis-it NodeUsageMode: EXCLUSIVE Containers: elasticsearch: Image: docker.elastic.co/elasticsearch/elasticsearch ImageTag: 5.5.3 resources: requests: cpu: "100m" memory: "1Gi" limits: cpu: "1" memory: "1500Mi" EnvVars: - type: KeyValue key: ES_JAVA_OPTS value: "-Xms512m -Xmx512m" - type: KeyValue key: cluster.name value: molgenis - type: KeyValue key: bootstrap.memory_lock value: "true" - type: KeyValue key: xpack.security.enabled value: "false" - type: KeyValue key: discovery.type value: single-node postgres: Image: postgres ImageTag: 9.6-alpine resources: requests: cpu: "100m" memory: "250Mi" limits: cpu: "1" memory: "250Mi" EnvVars: - type: KeyValue key: POSTGRES_USER value: molgenis - type: KeyValue key: POSTGRES_PASSWORD value: molgenis - type: KeyValue key: POSTGRES_DB value: molgenis opencpu: Image: molgenis/opencpu AlwaysPullImage: true resources: requests: cpu: "100m" memory: "256Mi" limits: cpu: "1" memory: "512Mi" NodeSelector: {} PipelineSecrets: Vault: Replace: true Token: xxxx Addr: "https://vault-operator.vault-operator.svc:8200" SkipVerify: 1 Env: # Set to false to keep existing secret Replace: true # Passphrase for the pgp private key file, prefixed with literal: PGPPassphrase: literal:xxxx # Token for codecov.io service CodecovToken: xxxx # Token for github bot account GitHubToken: xxxx # Token for github bot account GogsToken: xxxx # Token for sonarcloud.io SonarToken: xxxx # Token for npmjs.org NpmToken: xxxx # Password Local NEXUS NexusPassword: xxxx # Password hub.docker.com DockerHubPassword: xxxx # Access key for saucelabs.com SauceAccessKey: xxxx File: # Set to false to keep existing secret Replace: true # PGP Private key in ascii format used to sign artifacts PGPPrivateKeyAsc: |- -----BEGIN PGP PRIVATE KEY BLOCK----- xxxxx -----END PGP PRIVATE KEY BLOCK----- # maven.settings file MavenSettingsXML: |- ${user.home}/.mvnrepository false nexus external:* http://nexus.molgenis-nexus:8081/repository/maven-central/ sonatype-nexus-staging molgenis xxxx local-nexus http://nexus.molgenis-nexus:8081/repository/maven-snapshots/ admin xxxxx registry.molgenis.org admin xxxx registry.hub.docker.com molgenisci xxxx