runners/.forgejo/workflows/build.yml
2025-09-08 15:27:11 +02:00

41 lines
1.1 KiB
YAML

name: Create OCI image(s)
on:
workflow_dispatch:
push:
branches:
- main
env:
registry: git.amarth.cloud
owner: amarth
image: default
tag: latest
jobs:
build:
name: Build and push images
runs-on: default
steps:
- name: Install dependencies
run: |
nix-env -iA nixpkgs.nodejs nixpkgs.podman nixpkgs.kvmtool
# configure container policy to accept insecure registry
mkdir -p ~/.config/containers
echo '{ "default": [ {"type":"insecureAcceptAnything"} ] }' > ~/.config/containers/policy.json
- uses: actions/checkout@v4
- name: Log into registry
run: |
echo "${{ secrets.PACKAGE_TOKEN }}" | podman login --username "${{ forge.actor }}" --password-stdin ${{ env.registry }}
- name: Create image
run: |
nix-build src/${{ env.image }}.nix
podman load < result
- name: Push image
run: |
podman push localhost/${{ env.image }}:${{ env.tag }} ${{ env.registry }}/${{ forge.repo }}/${{ env.image }}:${{ env.tag }}