jenkins: Master: HostName: jenkins.molgenis.org ServiceType: ClusterIP InstallPlugins: - kubernetes:1.8.4 - workflow-aggregator:2.5 - workflow-job:2.21 - credentials-binding:1.16 - git:3.9.1 - github-branch-source:2.3.6 - kubernetes-credentials-provider:0.9 Jobs: |- molgenis: |- .* false true -1 -1 H H * * * 86400000 false molgenis molgenis-jenkins-github-secret 1 1 1 Jenkinsfile # Kubernetes secret that contains a 'credentials.xml' for Jenkins # CredentialsXmlSecret: jenkins-credentials # Kubernetes secret that contains files to be put in the Jenkins 'secrets' directory, # useful to manage encryption keys used for credentials.xml for instance (such as # master.key and hudson.util.Secret) # SecretsFilesSecret: jenkins-secrets CustomConfigMap: true rbac: install: true Pods: default: Label: "default" NodeUsageMode: NORMAL volumes: - type: HostPath hostPath: "/var/run/docker.sock" mountPath: "/var/run/docker.sock" - type: Secret secretName: molgenis-pipeline-file-secret mountPath: "/root/.m2" Containers: maven: Image: "webhost12.service.rug.nl/molgenis/molgenis-maven" resources: requests: cpu: "1000m" limits: memory: "1Gi" alpine: Image: "spotify/alpine" EnvVars: - type: Secret key: PGP_PASSPHRASE secretName: molgenis-pipeline-env-secret secretKey: pgpPassphrase - type: KeyValue key: PGP_SECRETKEY value: "keyfile:/root/.m2/key.asc" - type: Secret key: SONAR_TOKEN secretName: molgenis-pipeline-env-secret secretKey: sonarToken - type: Secret key: CODECOV_TOKEN secretName: molgenis-pipeline-env-secret secretKey: codecovToken - type: Secret key: GITHUB_TOKEN secretName: molgenis-pipeline-env-secret secretKey: githubToken # If needed # ImagePullSecret: jenkins NodeSelector: {} PipelineSecrets: Env: # Set to false to keep existing secret Replace: true # Passphrase for the pgp private key file, prefixed with literal: PGPPassphrase: literal:xxxx # Token for codecov.io service CodecovToken: xxxx # Token for github bot account GitHubToken: xxxx # Token for sonarcloud.io SonarToken: xxxx File: # Set to false to keep existing secret Replace: true # PGP Private key in ascii format used to sign artifacts PGPPrivateKeyAsc: |- -----BEGIN PGP PRIVATE KEY BLOCK----- xxxxx -----END PGP PRIVATE KEY BLOCK----- # maven.settings file MavenSettingsXML: |- ${user.home}/.mvnrepository false nexus external:* https://registry.molgenis.org/repository/maven-central/ sonatype-nexus-staging molgenis xxxx local-nexus https://registry.molgenis.org/repository/maven-snapshots/ admin xxxxx registry.molgenis.org admin xxxx