commit 705d2dfbe36c199b6d3095f1158fd0e0acc85a72 Author: zware Date: Wed Jan 31 22:12:40 2024 -0600 Initial Commit: Gitea runner setup This play will setup a VM to run and host the act_runner service, that is used to facilitate gitea action. diff --git a/files/act_config.yaml b/files/act_config.yaml new file mode 100644 index 0000000..fddd0e8 --- /dev/null +++ b/files/act_config.yaml @@ -0,0 +1,89 @@ +# Example configuration file, it's safe to copy this as the default config file without any modification. + +# You don't have to copy this file to your instance, +# just run `./act_runner generate-config > config.yaml` to generate a config file. + +log: + # The level of logging, can be trace, debug, info, warn, error, fatal + level: info + +runner: + # Where to store the registration result. + file: .runner + # Execute how many tasks concurrently at the same time. + capacity: 1 + # Extra environment variables to run jobs. + envs: + A_TEST_ENV_NAME_1: a_test_env_value_1 + A_TEST_ENV_NAME_2: a_test_env_value_2 + # Extra environment variables to run jobs from a file. + # It will be ignored if it's empty or the file doesn't exist. + env_file: .env + # The timeout for a job to be finished. + # Please note that the Gitea instance also has a timeout (3h by default) for the job. + # So the job could be stopped by the Gitea instance if it's timeout is shorter than this. + timeout: 3h + # Whether skip verifying the TLS certificate of the Gitea instance. + insecure: false + # The timeout for fetching the job from the Gitea instance. + fetch_timeout: 5s + # The interval for fetching the job from the Gitea instance. + fetch_interval: 2s + # The labels of a runner are used to determine which jobs the runner can run, and how to run them. + # Like: ["macos-arm64:host", "ubuntu-latest:docker://node:16-bullseye", "ubuntu-22.04:docker://node:16-bullseye"] + # If it's empty when registering, it will ask for inputting labels. + # If it's empty when execute `deamon`, will use labels in `.runner` file. + labels: [] + +cache: + # Enable cache server to use actions/cache. + enabled: true + # The directory to store the cache data. + # If it's empty, the cache data will be stored in $HOME/.cache/actcache. + dir: "/tmp/actcache" + # The host of the cache server. + # It's not for the address to listen, but the address to connect from job containers. + # So 0.0.0.0 is a bad choice, leave it empty to detect automatically. + host: "" + # The port of the cache server. + # 0 means to use a random available port. + port: 0 + # The external cache server URL. Valid only when enable is true. + # If it's specified, act_runner will use this URL as the ACTIONS_CACHE_URL rather than start a server by itself. + # The URL should generally end with "/". + external_server: "" + +container: + # Specifies the network to which the container will connect. + # Could be host, bridge or the name of a custom network. + # If it's empty, act_runner will create a network automatically. + network: "" + # Whether to use privileged mode or not when launching task containers (privileged mode is required for Docker-in-Docker). + privileged: false + # And other options to be used when the container is started (eg, --add-host=my.gitea.url:host-gateway). + options: + # The parent directory of a job's working directory. + # If it's empty, /workspace will be used. + workdir_parent: + # Volumes (including bind mounts) can be mounted to containers. Glob syntax is supported, see https://github.com/gobwas/glob + # You can specify multiple volumes. If the sequence is empty, no volumes can be mounted. + # For example, if you only allow containers to mount the `data` volume and all the json files in `/src`, you should change the config to: + # valid_volumes: + # - data + # - /src/*.json + # If you want to allow any volume, please use the following configuration: + # valid_volumes: + # - '**' + valid_volumes: [] + # overrides the docker client host with the specified one. + # If it's empty, act_runner will find an available docker host automatically. + # If it's "-", act_runner will find an available docker host automatically, but the docker host won't be mounted to the job containers and service containers. + # If it's not empty or "-", the specified docker host will be used. An error will be returned if it doesn't work. + docker_host: "" + # Pull docker image(s) even if already present + force_pull: false + +host: + # The parent directory of a job's working directory. + # If it's empty, $HOME/.cache/act/ will be used. + workdir_parent: diff --git a/files/act_runner.service b/files/act_runner.service new file mode 100644 index 0000000..5d569a8 --- /dev/null +++ b/files/act_runner.service @@ -0,0 +1,16 @@ +[Unit] +Description=Gitea Actions runner +Documentation=https://gitea.com/gitea/act_runner +After=docker.service + +[Service] +ExecStart=/usr/local/bin/act_runner daemon --config /etc/act_runner/config.yaml +ExecReload=/bin/kill -s HUP $MAINPID +WorkingDirectory=/var/lib/act_runner +TimeoutSec=0 +RestartSec=10 +Restart=always +User=act-runner + +[Install] +WantedBy=multi-user.target diff --git a/inventory.yaml b/inventory.yaml new file mode 100644 index 0000000..124a2d2 --- /dev/null +++ b/inventory.yaml @@ -0,0 +1,3 @@ +all: + hosts: + act-runner1: diff --git a/main.yaml b/main.yaml new file mode 100644 index 0000000..b6ac0bf --- /dev/null +++ b/main.yaml @@ -0,0 +1,70 @@ +--- +- name: Gitea Runner (act_runner) Setup + hosts: all + become_user: root + become: true + # gather_facts: false + vars: + act_version: 0.2.6 + token: + tasks: + - name: include role + ansible.builtin.include_role: + name: ../../default-buildout + + - name: Add User + ansible.builtin.user: + name: act-runner + append: true + groups: + - docker + generate_ssh_key: false + create_home: false + state: present + + - name: Download Act runner + ansible.builtin.get_url: + url: "https://dl.gitea.com/act_runner/{{ act_version }}/act_runner-{{ act_version }}-linux-amd64" + dest: /usr/local/bin/act_runner + owner: root + group: root + mode: 0655 + + - name: Create runner dir + ansible.builtin.file: + path: "{{ item.path }}" + state: directory + owner: "{{ item.user }}" + group: "{{ item.user }}" + mode: 0655 + loop: + - { "path": "/etc/act_runner/", "user": "act-runner" } + - { "path":"/var/lib/act_runner", "user":"act-runner" } + + - name: Create runner config + ansible.builtin.copy: + src: act_config.yaml + dest: /etc/act_runner/config.yaml + owner: root + group: root + mode: 0655 + + - name: Copy service file + ansible.builtin.copy: + src: act_runner.service + dest: /etc/systemd/system/act_runner.service + owner: root + group: root + mode: 0655 + + - name: Register act_runner with gitea + ansible.builtin.command: + cmd: /usr/local/bin/act_runner register --no-interactive --instance https://gitea.zwarebear.com --token {{ token }} + chdir: /var/lib/act_runner + creates: /etc/act_runner/.runner + + - name: Enable and Start service + ansible.builtin.systemd: + name: act_runner + state: started + enabled: true