forked from buildfarm/buildfarm
-
Notifications
You must be signed in to change notification settings - Fork 0
/
BUILD
265 lines (237 loc) · 7.45 KB
/
BUILD
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
load("@buildifier_prebuilt//:rules.bzl", "buildifier")
load("@rules_oci//oci:defs.bzl", "oci_image", "oci_image_index", "oci_push", "oci_tarball")
load("@rules_pkg//:pkg.bzl", "pkg_tar")
load("//:jvm_flags.bzl", "server_jvm_flags", "worker_jvm_flags")
load("//container:defs.bzl", "oci_image_env")
package(default_visibility = ["//visibility:public"])
# Made available for formatting
buildifier(
name = "buildifier",
)
# == Docker Image Creation ==
# When deploying buildfarm, you may want to include additional dependencies within your deployment.
# These dependencies can enable features related to the observability and runtime of the system.
# For example, "debgging tools", "introspection tools", and "exeution wrappers" are examples of dependencies
# that many need included within deployed containers. This BUILD file creates docker images that bundle
# additional dependencies alongside the buildfarm agents.
ARCH = [
# keep sorted
# "aarch64", # TODO
"amd64",
]
DEFAULT_IMAGE_LABELS = {
"org.opencontainers.image.source": "https://github.com/bazelbuild/bazel-buildfarm",
}
DEFAULT_PACKAGE_DIR = "app/build_buildfarm"
# == Execution Wrappers ==
# Execution wrappers are programs that buildfarm chooses to use when running REAPI actions. They are used for
# both sandboxing, as well as changing runtime behavior of actions. Buildfarm workers can be configured
# to use execution wrappers directly through a configuration called "execution policy". Execution wrappers
# can be stacked (i.e. actions can run under multiple wrappers). Buildfarm may also choose different
# execution wrappers dynamically based on exec_properties. In order to have them available to the worker, they should
# be provided to a java_image as a "runtime_dep". Buildfarm workers will warn about any missing execution wrappers
# during startup and what features are unavailable due to their absence.
# == Execution Wrapper Compatibility ==
# "process-wrapper" and "linux-sandbox" are sourced directly from bazel. Users may want to ensure that the same
# bazel version is used in buildfarm agents as is used by bazel clients. There has not been any known issues due
# to version mismatch, but we state the possibility here. Some execution wrappers will not be compatible with all
# operating systems. We make a best effort and ensure they all work in the below images.
pkg_tar(
name = "execution_wrappers",
srcs = [
":as-nobody",
":delay",
":linux-sandbox.binary",
":macos-wrapper",
":process-wrapper.binary",
":skip_sleep.binary",
":skip_sleep.preload",
],
package_dir = DEFAULT_PACKAGE_DIR,
tags = ["container"],
)
pkg_tar(
name = "telemetry_tools",
srcs = [
":opentelemetry-javaagent",
],
package_dir = DEFAULT_PACKAGE_DIR,
tags = ["container"],
)
genrule(
name = "process-wrapper.binary",
srcs = ["@bazel//src/main/tools:process-wrapper"],
outs = ["process-wrapper"],
cmd = "cp $< $@;",
)
genrule(
name = "linux-sandbox.binary",
srcs = ["@bazel//src/main/tools:linux-sandbox"],
outs = ["linux-sandbox"],
cmd = "cp $< $@;",
)
genrule(
name = "tini.binary",
srcs = ["@tini//file"],
outs = ["tini"],
cmd = "cp $< $@ && chmod +x $@",
)
genrule(
name = "opentelemetry-javaagent",
srcs = ["@opentelemetry//jar"],
outs = ["opentelemetry-javaagent.jar"],
cmd = "cp $< $@;",
)
cc_binary(
name = "as-nobody",
srcs = select({
"//config:windows": ["as-nobody-windows.c"],
"//conditions:default": ["as-nobody.c"],
}),
)
genrule(
name = "skip_sleep.binary",
srcs = ["@skip_sleep"],
outs = ["skip_sleep"],
cmd = "cp $< $@;",
)
genrule(
name = "skip_sleep.preload",
srcs = ["@skip_sleep//:skip_sleep_preload"],
outs = ["skip_sleep_preload.so"],
cmd = "cp $< $@;",
)
# The delay wrapper is only intended to be used with the "skip_sleep" wrapper.
sh_binary(
name = "delay",
srcs = ["delay.sh"],
)
sh_binary(
name = "macos-wrapper",
srcs = ["macos-wrapper.sh"],
)
pkg_tar(
name = "layer_tini_amd64",
srcs = ["@tini//file"],
mode = "0555",
remap_paths = {"/downloaded": "/tini"},
tags = ["container"],
)
pkg_tar(
name = "layer_buildfarm_server",
srcs = ["//src/main/java/build/buildfarm:buildfarm-server_deploy.jar"],
package_dir = DEFAULT_PACKAGE_DIR,
tags = ["container"],
)
pkg_tar(
name = "layer_buildfarm_worker",
srcs = ["//src/main/java/build/buildfarm:buildfarm-shard-worker_deploy.jar"],
package_dir = DEFAULT_PACKAGE_DIR,
tags = ["container"],
)
pkg_tar(
name = "layer_minimal_config",
srcs = ["@build_buildfarm//examples:example_configs"],
package_dir = DEFAULT_PACKAGE_DIR,
tags = ["container"],
)
pkg_tar(
name = "layer_logging_config",
srcs = ["@build_buildfarm//src/main/java/build/buildfarm:configs"],
package_dir = DEFAULT_PACKAGE_DIR + "/src/main/java/build/buildfarm",
tags = ["container"],
)
oci_image_env(
name = "env_server",
configpath = "/" + DEFAULT_PACKAGE_DIR + "/config.minimal.yml",
jvm_args = server_jvm_flags(),
)
oci_image(
name = "buildfarm-server_linux_amd64",
base = "@amazon_corretto_java_image_base",
entrypoint = [
"java",
"-jar",
"/" + DEFAULT_PACKAGE_DIR + "/buildfarm-server_deploy.jar",
],
env = ":env_server",
labels = DEFAULT_IMAGE_LABELS,
tags = ["container"],
tars = [
# do not sort
":layer_logging_config",
":layer_minimal_config",
":telemetry_tools",
":layer_buildfarm_server",
],
)
oci_image_env(
name = "env_worker",
configpath = "/" + DEFAULT_PACKAGE_DIR + "/config.minimal.yml",
jvm_args = worker_jvm_flags(),
)
oci_image(
name = "buildfarm-worker_linux_amd64",
base = "@ubuntu_mantic",
entrypoint = [
# do not sort
"/tini",
"--",
"java",
"-jar",
"/" + DEFAULT_PACKAGE_DIR + "/buildfarm-shard-worker_deploy.jar",
],
env = ":env_worker",
labels = DEFAULT_IMAGE_LABELS,
tags = ["container"],
tars = [
# do not sort
":layer_tini_amd64",
":layer_logging_config",
":layer_minimal_config",
":execution_wrappers",
":telemetry_tools",
":layer_buildfarm_worker",
],
)
[
oci_image_index(
name = "buildfarm-%s" % image,
images = [
":buildfarm-%s_linux_%s" % (image, arch)
for arch in ARCH
],
tags = ["container"],
)
for image in [
"server",
"worker",
]
]
######
# Helpers to write to the local Docker Desktop's registry
# Usage: `bazel run //:tarball_server_amd64 && docker run --rm buildfarm-server:amd64`
######
[
[
oci_tarball(
name = "tarball_%s_%s" % (image, arch),
image = ":buildfarm-%s_linux_%s" % (image, arch),
repo_tags = ["buildfarm-%s:%s" % (image, arch)],
tags = ["container"],
),
# Below targets push public docker images to bazelbuild dockerhub.
oci_push(
name = "public_push_buildfarm-%s" % image,
image = ":buildfarm-%s" % image,
repository = "index.docker.io/bazelbuild/buildfarm-%s" % image,
# Specify the tag with `bazel run public_push_buildfarm-server public_push_buildfarm-worker -- --tag latest`
tags = ["container"],
),
]
for arch in ARCH
for image in [
"server",
"worker",
]
]