Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions README.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -464,6 +464,16 @@ As a result of the setup above the `create_gitops_prs` tool will open up to 2 po

The GitOps pull request is only created (or new commits added) if the `gitops` target changes the state for the target deployment branch. The source pull request will remain open (and keep accumulation GitOps results) until the pull request is merged and source branch is deleted.

The `--stamp` parameter allows for the replacement of certain placeholders, but only when the `gitops` target changes the output's digest compared to the one already saved. The new digest of the unstamped data is also saved with the manifest. The digest is kept in a file in the same location as the YAML file, with a `.digest` extension added to its name. This is helpful when the manifests have volatile information that shouldn't be the only factor causing changes in the target deployment branch.

Here are the placeholders that can be replaced:

| Placeholder | Replacement |
|------------------|-------------------------------------------------|
| `{{GIT_REVISION}}` | Result of `git rev-parse HEAD` |
| `{{UTC_DATE}}` | Result of `date -u` |
| `{{GIT_BRANCH}}` | The `branch_name` argument given to `create_gitops_prs` |

`--dry_run` parameter can be used to test the tool without creating any pull requests. The tool will print the list of the potential pull requests. It is recommended to run the tool in the dry run mode as a part of the CI test suite to verify that the tool is configured correctly.

<a name="multiple-release-branches-gitops-workflow"></a>
Expand Down
20 changes: 20 additions & 0 deletions gitops/digester/BUILD
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
# Copyright 2024 Adobe. All rights reserved.
# This file is licensed to you under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software distributed under
# the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
# OF ANY KIND, either express or implied. See the License for the specific language
# governing permissions and limitations under the License.

load("@io_bazel_rules_go//go:def.bzl", "go_library")

licenses(["notice"]) # Apache 2.0

go_library(
name = "go_default_library",
srcs = ["digester.go"],
importpath = "github.com/adobe/rules_gitops/gitops/digester",
visibility = ["//visibility:public"],
)
74 changes: 74 additions & 0 deletions gitops/digester/digester.go
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,74 @@
/*
Copyright 2024 Adobe. All rights reserved.
This file is licensed to you under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License. You may obtain a copy
of the License at http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under
the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR REPRESENTATIONS
OF ANY KIND, either express or implied. See the License for the specific language
governing permissions and limitations under the License.
*/
package digester

import (
"crypto/sha256"
"encoding/hex"
"errors"
"io"
"log"
"os"
)

// CalculateDigest calculates the SHA256 digest of a file specified by the given path
func CalculateDigest(path string) string {
if _, err := os.Stat(path); errors.Is(err, os.ErrNotExist) {
return ""
}

fi, err := os.Open(path)
if err != nil {
log.Fatal(err)
}
defer fi.Close()

h := sha256.New()
if _, err := io.Copy(h, fi); err != nil {
log.Fatal(err)
}

return hex.EncodeToString(h.Sum(nil))
}

// GetDigest retrieves the digest of a file from a file with the same name but with a ".digest" extension
func GetDigest(path string) string {
digestPath := path + ".digest"

if _, err := os.Stat(digestPath); errors.Is(err, os.ErrNotExist) {
return ""
}

digest, err := os.ReadFile(digestPath)
if err != nil {
log.Fatal(err)
}

return string(digest)
}

// VerifyDigest verifies the integrity of a file by comparing its calculated digest with the stored digest
func VerifyDigest(path string) bool {
return CalculateDigest(path) == GetDigest(path)
}

// SaveDigest calculates the digest of a file at the given path and saves it to a file with the same name but with a ".digest" extension.
func SaveDigest(path string) {
digest := CalculateDigest(path)

digestPath := path + ".digest"

err := os.WriteFile(digestPath, []byte(digest), 0666)
if err != nil {
log.Fatal(err)
}
}
24 changes: 24 additions & 0 deletions gitops/git/git.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -12,12 +12,14 @@ governing permissions and limitations under the License.
package git

import (
"bufio"
"fmt"
"io/ioutil"
"log"
"os"
oe "os/exec"
"path/filepath"
"strings"

"github.com/adobe/rules_gitops/gitops/exec"
)
Expand DownExpand Up@@ -114,6 +116,28 @@ func (r *Repo) Commit(message, gitopsPath string) bool {
return true
}

// RestoreFile restores the specified file in the repository to its original state
func (r *Repo) RestoreFile(fileName string) {
exec.Mustex(r.Dir, "git", "checkout", "--", fileName)
}

// GetChangedFiles returns a list of files that have been changed in the repository
func (r *Repo) GetChangedFiles() []string {
s, err := exec.Ex(r.Dir, "git", "diff", "--name-only")
if err != nil {
log.Fatalf("ERROR: %s", err)
}
var files []string
sc := bufio.NewScanner(strings.NewReader(s))
for sc.Scan() {
files = append(files, sc.Text())
}
if err := sc.Err(); err != nil {
log.Fatalf("ERROR: %s", err)
}
return files
}

// IsClean returns true if there is no local changes (nothing to commit)
func (r *Repo) IsClean() bool {
cmd := oe.Command("git", "status", "--porcelain")
Expand Down
2 changes: 2 additions & 0 deletions gitops/prer/BUILD
Original file line numberDiff line numberDiff line change
Expand Up@@ -21,11 +21,13 @@ go_library(
"//gitops/analysis:go_default_library",
"//gitops/bazel:go_default_library",
"//gitops/commitmsg:go_default_library",
"//gitops/digester:go_default_library",
"//gitops/exec:go_default_library",
"//gitops/git:go_default_library",
"//gitops/git/bitbucket:go_default_library",
"//gitops/git/github:go_default_library",
"//gitops/git/gitlab:go_default_library",
"//templating/fasttemplate:go_default_library",
"//vendor/github.com/golang/protobuf/proto:go_default_library",
],
)
Expand Down
52 changes: 52 additions & 0 deletions gitops/prer/create_gitops_prs.go
Original file line numberDiff line numberDiff line change
Expand Up@@ -25,11 +25,13 @@ import (
"github.com/adobe/rules_gitops/gitops/analysis"
"github.com/adobe/rules_gitops/gitops/bazel"
"github.com/adobe/rules_gitops/gitops/commitmsg"
"github.com/adobe/rules_gitops/gitops/digester"
"github.com/adobe/rules_gitops/gitops/exec"
"github.com/adobe/rules_gitops/gitops/git"
"github.com/adobe/rules_gitops/gitops/git/bitbucket"
"github.com/adobe/rules_gitops/gitops/git/github"
"github.com/adobe/rules_gitops/gitops/git/gitlab"
"github.com/adobe/rules_gitops/templating/fasttemplate"

proto "github.com/golang/protobuf/proto"
)
Expand DownExpand Up@@ -71,6 +73,7 @@ var (
gitopsKind SliceFlags
gitopsRuleName SliceFlags
gitopsRuleAttr SliceFlags
stamp = flag.Bool("stamp", false, "Stamp results of gitops targets with volatile information")
dryRun = flag.Bool("dry_run", false, "Do not create PRs, just print what would be done")
)

Expand DownExpand Up@@ -101,6 +104,40 @@ func bazelQuery(query string) *analysis.CqueryResult {
return qr
}

func getGitStatusDict(workdir *git.Repo, gitCommit, branchName string) map[string]interface{} {
utcDate, err := exec.Ex("", "date", "-u")
if err != nil {
log.Fatal(err)
}
utcDate = strings.TrimSpace(utcDate)

ctx := map[string]interface{}{
"GIT_REVISION": gitCommit,
"UTC_DATE": utcDate,
"GIT_BRANCH": branchName,
}

return ctx
}

func stampFile(fullPath string, ctx map[string]interface{}) {
template, err := os.ReadFile(fullPath)
if err != nil {
log.Fatal(err)
}

outf, err := os.OpenFile(fullPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0666)
if err != nil {
log.Fatal(err)
}
defer outf.Close()

_, err = fasttemplate.Execute(string(template), "{{", "}}", outf, ctx)
if err != nil {
log.Fatal(err)
}
}

func main() {
flag.Parse()
if *workspace != "" {
Expand DownExpand Up@@ -187,6 +224,21 @@ func main() {
bin := bazel.TargetToExecutable(target)
exec.Mustex("", bin, "--nopush", "--nobazel", "--deployment_root", gitopsdir)
}
if *stamp {
changedFiles := workdir.GetChangedFiles()
if len(changedFiles) > 0 {
ctx := getGitStatusDict(workdir, *gitCommit, *branchName)
for _, filePath := range changedFiles {
fullPath := gitopsdir + "/" + filePath
if digester.VerifyDigest(fullPath) {
workdir.RestoreFile(fullPath)
} else {
digester.SaveDigest(fullPath)
stampFile(fullPath, ctx)
}
}
}
}
if workdir.Commit(fmt.Sprintf("GitOps for release branch %s from %s commit %s\n%s", *releaseBranch, *branchName, *gitCommit, commitmsg.Generate(targets)), *gitopsPath) {
log.Println("branch", branch, "has changes, push is required")
updatedGitopsTargets = append(updatedGitopsTargets, targets...)
Expand Down