|
| 1 | +#!/usr/bin/env bash |
| 2 | +set -euo pipefail |
| 3 | + |
| 4 | +SCRIPT_DIR="$(cd "$(dirname "${BASH_SOURCE[0]}")" && pwd)" |
| 5 | +REPO_ROOT="$(cd "$SCRIPT_DIR/.." && pwd)" |
| 6 | +IMAGE_TAG="${IMAGE_TAG:-socket-basics:smoke-test}" |
| 7 | +APP_TESTS_IMAGE_TAG="${APP_TESTS_IMAGE_TAG:-socket-basics-app-tests:smoke-test}" |
| 8 | +RUN_APP_TESTS=false |
| 9 | +BUILD_PROGRESS="${SMOKE_TEST_BUILD_PROGRESS:-}" |
| 10 | + |
| 11 | +MAIN_TOOLS=( |
| 12 | + "socket-basics -h" |
| 13 | + "command -v socket" |
| 14 | + "trivy --version" |
| 15 | + "trufflehog --version" |
| 16 | + "opengrep --version" |
| 17 | +) |
| 18 | + |
| 19 | +APP_TESTS_TOOLS=( |
| 20 | + "trivy --version" |
| 21 | + "trufflehog --version" |
| 22 | + "opengrep --version" |
| 23 | + "command -v socket" |
| 24 | +) |
| 25 | + |
| 26 | +usage() { |
| 27 | + echo "Usage: $0 [--image-tag TAG] [--app-tests] [--build-progress MODE]" |
| 28 | + echo " --build-progress: auto|plain|tty (default: auto locally, plain in CI)" |
| 29 | +} |
| 30 | + |
| 31 | +while [[ $# -gt 0 ]]; do |
| 32 | + case "$1" in |
| 33 | + -h|--help) usage; exit 0 ;; |
| 34 | + --image-tag) |
| 35 | + [[ $# -lt 2 ]] && { echo "Error: --image-tag requires a value"; exit 1; } |
| 36 | + IMAGE_TAG="$2"; shift 2 |
| 37 | + ;; |
| 38 | + --app-tests) RUN_APP_TESTS=true; shift ;; |
| 39 | + --build-progress) |
| 40 | + [[ $# -lt 2 ]] && { echo "Error: --build-progress requires a value"; exit 1; } |
| 41 | + BUILD_PROGRESS="$2"; shift 2 |
| 42 | + ;; |
| 43 | + *) echo "Error: unknown option: $1"; usage; exit 1 ;; |
| 44 | + esac |
| 45 | +done |
| 46 | + |
| 47 | +if [[ -z "$BUILD_PROGRESS" ]]; then |
| 48 | + if [[ "${GITHUB_ACTIONS:-}" == "true" ]]; then |
| 49 | + BUILD_PROGRESS="plain" |
| 50 | + else |
| 51 | + BUILD_PROGRESS="auto" |
| 52 | + fi |
| 53 | +fi |
| 54 | + |
| 55 | +case "$BUILD_PROGRESS" in |
| 56 | + auto|plain|tty) ;; |
| 57 | + *) echo "Error: invalid --build-progress '$BUILD_PROGRESS'"; exit 1 ;; |
| 58 | +esac |
| 59 | + |
| 60 | +if ! command -v docker >/dev/null 2>&1; then |
| 61 | + echo "ERROR: Docker CLI is not installed or not in PATH." |
| 62 | + exit 1 |
| 63 | +fi |
| 64 | +if ! docker info >/dev/null 2>&1; then |
| 65 | + echo "ERROR: Docker daemon is not reachable." |
| 66 | + exit 1 |
| 67 | +fi |
| 68 | + |
| 69 | +build_args_for_tag() { |
| 70 | + local tag="$1" |
| 71 | + BUILD_ARGS=(--progress "$BUILD_PROGRESS" -t "$tag") |
| 72 | + [[ -n "${TRIVY_VERSION:-}" ]] && BUILD_ARGS+=(--build-arg "TRIVY_VERSION=$TRIVY_VERSION") |
| 73 | + [[ -n "${TRUFFLEHOG_VERSION:-}" ]] && BUILD_ARGS+=(--build-arg "TRUFFLEHOG_VERSION=$TRUFFLEHOG_VERSION") |
| 74 | + [[ -n "${OPENGREP_VERSION:-}" ]] && BUILD_ARGS+=(--build-arg "OPENGREP_VERSION=$OPENGREP_VERSION") |
| 75 | + return 0 |
| 76 | +} |
| 77 | + |
| 78 | +run_checks() { |
| 79 | + local tag="$1" |
| 80 | + shift |
| 81 | + local checks=("$@") |
| 82 | + for cmd in "${checks[@]}"; do |
| 83 | + if docker run --rm --entrypoint /bin/sh "$tag" -c "$cmd" > /dev/null 2>&1; then |
| 84 | + echo " OK: $cmd" |
| 85 | + else |
| 86 | + echo " FAIL: $cmd" |
| 87 | + docker run --rm --entrypoint /bin/sh "$tag" -c "$cmd" 2>&1 || true |
| 88 | + return 1 |
| 89 | + fi |
| 90 | + done |
| 91 | +} |
| 92 | + |
| 93 | +cd "$REPO_ROOT" |
| 94 | + |
| 95 | +echo "==> Build main image" |
| 96 | +echo "Image: $IMAGE_TAG" |
| 97 | +echo "Docker build progress mode: $BUILD_PROGRESS" |
| 98 | +build_args_for_tag "$IMAGE_TAG" |
| 99 | +main_build_start="$(date +%s)" |
| 100 | +docker build "${BUILD_ARGS[@]}" . |
| 101 | +main_build_end="$(date +%s)" |
| 102 | +echo "Main image build completed in $((main_build_end - main_build_start))s" |
| 103 | + |
| 104 | +echo "==> Verify tools in main image" |
| 105 | +run_checks "$IMAGE_TAG" "${MAIN_TOOLS[@]}" |
| 106 | + |
| 107 | +if $RUN_APP_TESTS; then |
| 108 | + echo "==> Build app_tests image" |
| 109 | + echo "Image: $APP_TESTS_IMAGE_TAG" |
| 110 | + build_args_for_tag "$APP_TESTS_IMAGE_TAG" |
| 111 | + app_build_start="$(date +%s)" |
| 112 | + docker build -f app_tests/Dockerfile "${BUILD_ARGS[@]}" . |
| 113 | + app_build_end="$(date +%s)" |
| 114 | + echo "app_tests image build completed in $((app_build_end - app_build_start))s" |
| 115 | + |
| 116 | + echo "==> Verify tools in app_tests image" |
| 117 | + run_checks "$APP_TESTS_IMAGE_TAG" "${APP_TESTS_TOOLS[@]}" |
| 118 | +fi |
| 119 | + |
| 120 | +echo "==> Smoke test passed" |
0 commit comments