Skip to content

WIP: nightlies

WIP: nightlies #5

Workflow file for this run

name: Nightlies
on:
push:
# schedule:
# - cron: "0 0 * * *"
defaults:
run:
shell: bash
jobs:
build-debs:
strategy:
matrix:
debian_version:
- bullseye
- bookworm
runs-on: ubuntu-latest
outputs:
artifact_id: ${{ steps.upload.outputs.artifact-id }}
steps:
- name: Install dependencies
run: |
apt-get update && apt-get install --yes devscripts podman git git-lfs
- uses: actions/checkout@v4
- uses: actions/checkout@v4
with:
repository: "freedomofpress/securedrop-builder"
path: "securedrop-builder"
lfs: true
- name: Build packages
run: |
git config --global --add safe.directory '*'
NIGHTLY=1 DEBIAN_VERSION=${{ matrix.debian_version }} BUILDER=securedrop-builder \
./scripts/build-debs.sh
- uses: actions/upload-artifact@v4
id: upload
with:
name: build-${{ matrix.debian_version }}
path: build
if-no-files-found: error
commit-and-push:
runs-on: ubuntu-latest
container: debian:bookworm
needs:
- build-debs
steps:
- name: Install dependencies
run: |
apt-get update && apt-get install --yes git git-lfs
- uses: actions/download-artifact@v4
with:
pattern: "*${{ matrix.debian_version }}"
- uses: actions/checkout@v4
with:
repository: "freedomofpress/securedrop-apt-test"
path: "securedrop-apt-test"
lfs: true
- name: Commit and push
run: |
cd securedrop-apt-test
mv -v ../build-bullseye/*.deb workstation/bullseye-nightlies/
mv -v ../build-bookworm/*.deb workstation/bookworm-nightlies/
git add .
git commit -m "Automated SecureDrop workstation build"