diff --git a/.github/workflows/docker-image-arm64.yml b/.github/workflows/docker-image-arm64.yml index 8e4656aa7..a6ee231ee 100644 --- a/.github/workflows/docker-image-arm64.yml +++ b/.github/workflows/docker-image-arm64.yml @@ -1,26 +1,45 @@ -name: Publish Docker image (Multi Registries) +name: Publish Docker image (Multi Registries, native amd64+arm64) on: push: tags: - '*' + jobs: - push_to_registries: - name: Push Docker image to multiple registries - runs-on: ubuntu-latest + build_single_arch: + name: Build & push (${{ matrix.arch }}) [native] + strategy: + fail-fast: false + matrix: + include: + - arch: amd64 + platform: linux/amd64 + runner: ubuntu-latest + - arch: arm64 + platform: linux/arm64 + runner: ubuntu-24.04-arm + runs-on: ${{ matrix.runner }} + permissions: packages: write contents: read + steps: - - name: Check out the repo + - name: Check out (shallow) uses: actions/checkout@v4 + with: + fetch-depth: 1 - - name: Save version info + - name: Resolve tag & write VERSION run: | - git describe --tags > VERSION + git fetch --tags --force --depth=1 + echo "TAG=${GITHUB_REF#refs/tags/}" >> $GITHUB_ENV + echo "$TAG" > VERSION + echo "Building tag: $TAG for ${{ matrix.arch }}" - - name: Set up QEMU - uses: docker/setup-qemu-action@v3 + + - name: Normalize GHCR repository + run: echo "GHCR_REPOSITORY=${GITHUB_REPOSITORY,,}" >> $GITHUB_ENV - name: Set up Docker Buildx uses: docker/setup-buildx-action@v3 @@ -31,26 +50,85 @@ jobs: username: ${{ secrets.DOCKERHUB_USERNAME }} password: ${{ secrets.DOCKERHUB_TOKEN }} - - name: Log in to the Container registry + - name: Log in to GHCR uses: docker/login-action@v3 with: registry: ghcr.io username: ${{ github.actor }} password: ${{ secrets.GITHUB_TOKEN }} - - name: Extract metadata (tags, labels) for Docker + - name: Extract metadata (labels) id: meta uses: docker/metadata-action@v5 with: images: | calciumion/new-api - ghcr.io/${{ github.repository }} + ghcr.io/${{ env.GHCR_REPOSITORY }} - - name: Build and push Docker images - uses: docker/build-push-action@v5 + - name: Build & push single-arch (to both registries) + uses: docker/build-push-action@v6 with: context: . - platforms: linux/amd64,linux/arm64 + platforms: ${{ matrix.platform }} push: true - tags: ${{ steps.meta.outputs.tags }} - labels: ${{ steps.meta.outputs.labels }} \ No newline at end of file + tags: | + calciumion/new-api:${{ env.TAG }}-${{ matrix.arch }} + calciumion/new-api:latest-${{ matrix.arch }} + ghcr.io/${{ env.GHCR_REPOSITORY }}:${{ env.TAG }}-${{ matrix.arch }} + ghcr.io/${{ env.GHCR_REPOSITORY }}:latest-${{ matrix.arch }} + labels: ${{ steps.meta.outputs.labels }} + cache-from: type=gha + cache-to: type=gha,mode=max + provenance: false + sbom: false + + create_manifests: + name: Create multi-arch manifests (Docker Hub + GHCR) + needs: [build_single_arch] + runs-on: ubuntu-latest + if: startsWith(github.ref, 'refs/tags/') + steps: + - name: Extract tag + run: echo "TAG=${GITHUB_REF#refs/tags/}" >> $GITHUB_ENV + + - name: Log in to Docker Hub + uses: docker/login-action@v3 + with: + username: ${{ secrets.DOCKERHUB_USERNAME }} + password: ${{ secrets.DOCKERHUB_TOKEN }} + + - name: Create & push manifest (Docker Hub - version) + run: | + docker buildx imagetools create \ + -t calciumion/new-api:${TAG} \ + calciumion/new-api:${TAG}-amd64 \ + calciumion/new-api:${TAG}-arm64 + + - name: Create & push manifest (Docker Hub - latest) + run: | + docker buildx imagetools create \ + -t calciumion/new-api:latest \ + calciumion/new-api:latest-amd64 \ + calciumion/new-api:latest-arm64 + + # ---- GHCR ---- + - name: Log in to GHCR + uses: docker/login-action@v3 + with: + registry: ghcr.io + username: ${{ github.actor }} + password: ${{ secrets.GITHUB_TOKEN }} + + - name: Create & push manifest (GHCR - version) + run: | + docker buildx imagetools create \ + -t ghcr.io/${GHCR_REPOSITORY}:${TAG} \ + ghcr.io/${GHCR_REPOSITORY}:${TAG}-amd64 \ + ghcr.io/${GHCR_REPOSITORY}:${TAG}-arm64 + + - name: Create & push manifest (GHCR - latest) + run: | + docker buildx imagetools create \ + -t ghcr.io/${GHCR_REPOSITORY}:latest \ + ghcr.io/${GHCR_REPOSITORY}:latest-amd64 \ + ghcr.io/${GHCR_REPOSITORY}:latest-arm64