Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
@@ -0,0 +1,70 @@
base_images:
cerberus:
name: cerberus
namespace: chaos
tag: cerberus-prow
ocp-qe-perfscale-ci:
name: ocp-qe-perfscale-ci
namespace: ci
tag: latest
build_root:
image_stream_tag:
name: ci-tools-build-root
namespace: ci
tag: latest
releases:
latest:
candidate:
product: ocp
stream: nightly
version: "4.22"
resources:
'*':
limits:
memory: 4Gi
requests:
cpu: 100m
memory: 200Mi
tests:
- as: jetlag
capabilities:
- intranet
cron: 0 17 * * 0
Comment thread
HughNhan marked this conversation as resolved.
Comment thread
HughNhan marked this conversation as resolved.
restrict_network_access: false
steps:
cluster_profile: metal-perfscale-jetlag
env:
CRUCIBLE: "true"
test:
- ref: openshift-qe-installer-bm-regulus
- ref: openshift-qe-orion-regulus
workflow: openshift-qe-installer-bm-deploy
timeout: 8h0m0s
- always_run: false
as: no-jetlag
capabilities:
- intranet
restrict_network_access: false
steps:
cluster_profile: metal-perfscale-jetlag
test:
- ref: openshift-qe-installer-bm-load-kubeconfig
- ref: openshift-qe-cluster-health
- ref: openshift-qe-installer-bm-regulus
- ref: openshift-qe-orion-regulus
timeout: 6h0m0s
- always_run: false
as: orion-only
capabilities:
- intranet
restrict_network_access: false
steps:
cluster_profile: metal-perfscale-jetlag
test:
- ref: openshift-qe-orion-regulus
timeout: 1h0m0s
zz_generated_metadata:
branch: main
org: openshift-eng
repo: ocp-qe-perfscale-ci
variant: metal-telco-x86-regulus
Original file line number Diff line number Diff line change
Expand Up @@ -2966,3 +2966,88 @@ periodics:
- name: result-aggregator
secret:
secretName: result-aggregator
- agent: kubernetes
cluster: build10
cron: 0 17 * * 0
decorate: true
decoration_config:
skip_cloning: true
timeout: 8h0m0s
extra_refs:
- base_ref: main
org: openshift-eng
repo: ocp-qe-perfscale-ci
labels:
capability/intranet: intranet
ci-operator.openshift.io/cloud: metal-perfscale-jetlag
ci-operator.openshift.io/cloud-cluster-profile: metal-perfscale-jetlag
ci-operator.openshift.io/variant: metal-telco-x86-regulus
ci.openshift.io/generator: prowgen
job-release: "4.22"
pj-rehearse.openshift.io/can-be-rehearsed: "true"
name: periodic-ci-openshift-eng-ocp-qe-perfscale-ci-main-metal-telco-x86-regulus-jetlag
spec:
containers:
- args:
- --gcs-upload-secret=/secrets/gcs/service-account.json
- --image-import-pull-secret=/etc/pull-secret/.dockerconfigjson
- --lease-server-credentials-file=/etc/boskos/credentials
- --report-credentials-file=/etc/report/credentials
- --secret-dir=/secrets/ci-pull-credentials
- --target=jetlag
- --variant=metal-telco-x86-regulus
command:
- ci-operator
env:
- name: HTTP_SERVER_IP
valueFrom:
fieldRef:
fieldPath: status.podIP
image: quay-proxy.ci.openshift.org/openshift/ci:ci_ci-operator_latest
imagePullPolicy: Always
name: ""
ports:
- containerPort: 8080
name: http
resources:
requests:
cpu: 10m
volumeMounts:
- mountPath: /etc/boskos
name: boskos
readOnly: true
- mountPath: /secrets/ci-pull-credentials
name: ci-pull-credentials
readOnly: true
- mountPath: /secrets/gcs
name: gcs-credentials
readOnly: true
- mountPath: /secrets/manifest-tool
name: manifest-tool-local-pusher
readOnly: true
- mountPath: /etc/pull-secret
name: pull-secret
readOnly: true
- mountPath: /etc/report
name: result-aggregator
readOnly: true
serviceAccountName: ci-operator
volumes:
- name: boskos
secret:
items:
- key: credentials
path: credentials
secretName: boskos-credentials
- name: ci-pull-credentials
secret:
secretName: ci-pull-credentials
- name: manifest-tool-local-pusher
secret:
secretName: manifest-tool-local-pusher
- name: pull-secret
secret:
secretName: registry-pull-credentials
- name: result-aggregator
secret:
secretName: result-aggregator
Original file line number Diff line number Diff line change
Expand Up @@ -4991,6 +4991,180 @@ presubmits:
secret:
secretName: result-aggregator
trigger: (?m)^/test( | .* )(metal-rhoso-x86-weekly-compact-6nodes|remaining-required),?($|\s.*)
- agent: kubernetes
always_run: false
branches:
- ^main$
- ^main-
cluster: build11
context: ci/prow/metal-telco-x86-regulus-no-jetlag
decorate: true
decoration_config:
skip_cloning: true
timeout: 6h0m0s
labels:
capability/intranet: intranet
ci-operator.openshift.io/cloud: metal-perfscale-jetlag
ci-operator.openshift.io/cloud-cluster-profile: metal-perfscale-jetlag
ci-operator.openshift.io/variant: metal-telco-x86-regulus
ci.openshift.io/generator: prowgen
job-release: "4.22"
pj-rehearse.openshift.io/can-be-rehearsed: "true"
name: pull-ci-openshift-eng-ocp-qe-perfscale-ci-main-metal-telco-x86-regulus-no-jetlag
rerun_command: /test metal-telco-x86-regulus-no-jetlag
spec:
containers:
- args:
- --gcs-upload-secret=/secrets/gcs/service-account.json
- --image-import-pull-secret=/etc/pull-secret/.dockerconfigjson
- --lease-server-credentials-file=/etc/boskos/credentials
- --report-credentials-file=/etc/report/credentials
- --secret-dir=/secrets/ci-pull-credentials
- --target=no-jetlag
- --variant=metal-telco-x86-regulus
command:
- ci-operator
env:
- name: HTTP_SERVER_IP
valueFrom:
fieldRef:
fieldPath: status.podIP
image: quay-proxy.ci.openshift.org/openshift/ci:ci_ci-operator_latest
imagePullPolicy: Always
name: ""
ports:
- containerPort: 8080
name: http
resources:
requests:
cpu: 10m
volumeMounts:
- mountPath: /etc/boskos
name: boskos
readOnly: true
- mountPath: /secrets/ci-pull-credentials
name: ci-pull-credentials
readOnly: true
- mountPath: /secrets/gcs
name: gcs-credentials
readOnly: true
- mountPath: /secrets/manifest-tool
name: manifest-tool-local-pusher
readOnly: true
- mountPath: /etc/pull-secret
name: pull-secret
readOnly: true
- mountPath: /etc/report
name: result-aggregator
readOnly: true
serviceAccountName: ci-operator
volumes:
- name: boskos
secret:
items:
- key: credentials
path: credentials
secretName: boskos-credentials
- name: ci-pull-credentials
secret:
secretName: ci-pull-credentials
- name: manifest-tool-local-pusher
secret:
secretName: manifest-tool-local-pusher
- name: pull-secret
secret:
secretName: registry-pull-credentials
- name: result-aggregator
secret:
secretName: result-aggregator
trigger: (?m)^/test( | .* )(metal-telco-x86-regulus-no-jetlag|remaining-required),?($|\s.*)
- agent: kubernetes
always_run: false
branches:
- ^main$
- ^main-
cluster: build11
context: ci/prow/metal-telco-x86-regulus-orion-only
decorate: true
decoration_config:
skip_cloning: true
timeout: 1h0m0s
labels:
capability/intranet: intranet
ci-operator.openshift.io/cloud: metal-perfscale-jetlag
ci-operator.openshift.io/cloud-cluster-profile: metal-perfscale-jetlag
ci-operator.openshift.io/variant: metal-telco-x86-regulus
ci.openshift.io/generator: prowgen
job-release: "4.22"
pj-rehearse.openshift.io/can-be-rehearsed: "true"
name: pull-ci-openshift-eng-ocp-qe-perfscale-ci-main-metal-telco-x86-regulus-orion-only
rerun_command: /test metal-telco-x86-regulus-orion-only
spec:
containers:
- args:
- --gcs-upload-secret=/secrets/gcs/service-account.json
- --image-import-pull-secret=/etc/pull-secret/.dockerconfigjson
- --lease-server-credentials-file=/etc/boskos/credentials
- --report-credentials-file=/etc/report/credentials
- --secret-dir=/secrets/ci-pull-credentials
- --target=orion-only
- --variant=metal-telco-x86-regulus
command:
- ci-operator
env:
- name: HTTP_SERVER_IP
valueFrom:
fieldRef:
fieldPath: status.podIP
image: quay-proxy.ci.openshift.org/openshift/ci:ci_ci-operator_latest
imagePullPolicy: Always
name: ""
ports:
- containerPort: 8080
name: http
resources:
requests:
cpu: 10m
volumeMounts:
- mountPath: /etc/boskos
name: boskos
readOnly: true
- mountPath: /secrets/ci-pull-credentials
name: ci-pull-credentials
readOnly: true
- mountPath: /secrets/gcs
name: gcs-credentials
readOnly: true
- mountPath: /secrets/manifest-tool
name: manifest-tool-local-pusher
readOnly: true
- mountPath: /etc/pull-secret
name: pull-secret
readOnly: true
- mountPath: /etc/report
name: result-aggregator
readOnly: true
serviceAccountName: ci-operator
volumes:
- name: boskos
secret:
items:
- key: credentials
path: credentials
secretName: boskos-credentials
- name: ci-pull-credentials
secret:
secretName: ci-pull-credentials
- name: manifest-tool-local-pusher
secret:
secretName: manifest-tool-local-pusher
- name: pull-secret
secret:
secretName: registry-pull-credentials
- name: result-aggregator
secret:
secretName: result-aggregator
trigger: (?m)^/test( | .* )(metal-telco-x86-regulus-orion-only|remaining-required),?($|\s.*)
- agent: kubernetes
always_run: false
branches:
Expand Down
Comment thread
HughNhan marked this conversation as resolved.
Original file line number Diff line number Diff line change
Expand Up @@ -159,7 +159,20 @@ install-regulus() {
install-regulus

# ─────────────────────────────────────────────────────────────────────────────
# Generate Regulus lab.config
# Read ES credentials from mounted secret (optional - will be empty if not present)
# Disable tracing to avoid exposing credentials in CI logs
# ─────────────────────────────────────────────────────────────────────────────
[[ $- == *x* ]] && _WAS_TRACING=true || _WAS_TRACING=false
set +x
ES_PASSWORD=$(cat "/secret/perfscale-prod/password" 2>/dev/null || echo "")
ES_USER=$(cat "/secret/perfscale-prod/username" 2>/dev/null || echo "")
ES_HOST=$(cat "/secret/perfscale-prod/host" 2>/dev/null || echo "")
ES_PROTOCOL="https"
export ES_PASSWORD ES_USER ES_HOST ES_PROTOCOL
$_WAS_TRACING && set -x

# ─────────────────────────────────────────────────────────────────────────────
# Generate Regulus lab.config
# ─────────────────────────────────────────────────────────────────────────────
vars=(
KUBECONFIG
Expand All @@ -183,12 +196,20 @@ vars=(
TREX_SRIOV_INTERFACE_2
TREX_DPDK_NIC_MODEL
REM_DPDK_CONFIG
ES_PROTOCOL
ES_HOST
ES_USER
ES_PASSWORD
)

if [ -e /tmp/lab.config ]; then
rm /tmp/lab.config
fi

# Disable tracing during lab.config generation (contains credentials)
[[ $- == *x* ]] && _WAS_TRACING=true || _WAS_TRACING=false
set +x
umask 077
cat > /tmp/lab.config <<EOF
# This file was generated by openshift-qe-installer-bm-regulus-commands.sh
# It will be sourced by other Regulus scripts to import environment values.
Expand All @@ -212,6 +233,7 @@ for v in "${vars[@]}"; do
safe_val=${val//\"/\\\"}
printf 'export %s="%s"\n' "$v" "$safe_val" >> /tmp/lab.config
done
$_WAS_TRACING && set -x

# ───────────────────────────────────────────────────────────────────────────
# Launch Regulus (tests are listed in regulus_repo/jobs.config)
Expand Down
Loading