diff-pr.sh 5.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230
  1. #!/bin/bash
  2. set -eo pipefail
  3. shopt -s dotglob
  4. # make sure we can GTFO
  5. trap 'echo >&2 Ctrl+C captured, exiting; exit 1' SIGINT
  6. usage() {
  7. cat <<-EOUSAGE
  8. usage: $0 [PR number] [repo[:tag]]
  9. ie: $0 1024
  10. $0 9001 debian php django
  11. EOUSAGE
  12. }
  13. # TODO flags parsing
  14. allFiles=
  15. listTarballContents=1
  16. findCopies='20%'
  17. uninterestingTarballContent=(
  18. # "config_diff_2017_01_07.log"
  19. 'var/log/YaST2/'
  20. # "ks-script-mqmz_080.log"
  21. # "ks-script-ycfq606i.log"
  22. 'var/log/anaconda/'
  23. # "2016-12-20/"
  24. 'var/lib/yum/history/'
  25. 'var/lib/dnf/history/'
  26. # "a/f8c032d2be757e1a70f00336b55c434219fee230-acl-2.2.51-12.el7-x86_64/var_uuid"
  27. 'var/lib/yum/yumdb/'
  28. 'var/lib/dnf/yumdb/'
  29. # "b42ff584.0"
  30. 'etc/pki/tls/rootcerts/'
  31. )
  32. # prints "$2$1$3$1...$N"
  33. join() {
  34. local sep="$1"; shift
  35. local out; printf -v out "${sep//%/%%}%s" "$@"
  36. echo "${out#$sep}"
  37. }
  38. uninterestingTarballGrep="^([.]?/)?($(join '|' "${uninterestingTarballContent[@]}"))"
  39. if [ "$#" -eq 0 ]; then
  40. usage >&2
  41. exit 1
  42. fi
  43. pull="$1" # PR number
  44. shift
  45. #dir="$(dirname "$(readlink -f "$BASH_SOURCE")")"
  46. tempDir="$(mktemp -d)"
  47. trap "rm -rf '$tempDir'" EXIT
  48. cd "$tempDir"
  49. git clone --quiet \
  50. https://github.com/docker-library/official-images.git \
  51. oi
  52. git -C oi fetch --quiet \
  53. origin "pull/$pull/merge":pull
  54. images=( "$@" )
  55. if [ "${#images[@]}" -eq 0 ]; then
  56. images=( $(git -C oi/library diff --name-only master...pull -- . | xargs -n1 basename) )
  57. fi
  58. export BASHBREW_CACHE="${BASHBREW_CACHE:-${XDG_CACHE_HOME:-$HOME/.cache}/bashbrew}"
  59. export BASHBREW_LIBRARY="$PWD/oi/library"
  60. export BASHBREW_ARCH='amd64' # TODO something smarter with arches
  61. # "bashbrew cat" template for duplicating something like "bashbrew list --uniq" but with architectures too
  62. archesListTemplate='
  63. {{- range $e := $.Entries -}}
  64. {{- range .Architectures -}}
  65. {{- $.RepoName -}}:{{- $e.Tags | last -}}
  66. {{- " @ " -}}
  67. {{- . -}}
  68. {{- "\n" -}}
  69. {{- end -}}
  70. {{- end -}}
  71. '
  72. # ... and SharedTags
  73. sharedTagsListTemplate='
  74. {{- range $group := .Manifest.GetSharedTagGroups -}}
  75. {{- range $tag := $group.SharedTags -}}
  76. {{- join ":" $.RepoName $tag -}}
  77. {{- " -- " -}}
  78. {{- range $i, $e := $group.Entries -}}
  79. {{- if gt $i 0 -}}
  80. {{- ", " -}}
  81. {{- end -}}
  82. {{- join ":" $.RepoName ($e.Tags | last) -}}
  83. {{- end -}}
  84. {{- "\n" -}}
  85. {{- end -}}
  86. {{- end -}}
  87. '
  88. # TODO something less hacky than "git archive" hackery, like a "bashbrew archive" or "bashbrew context" or something
  89. template='
  90. {{- range $.Entries -}}
  91. {{- if .HasArchitecture arch -}}
  92. {{- $from := $.DockerFrom . -}}
  93. git -C "$BASHBREW_CACHE/git" archive --format=tar
  94. {{- " " -}}
  95. {{- "--prefix=" -}}
  96. {{- $.RepoName -}}
  97. _
  98. {{- .Tags | last -}}
  99. {{- "/" -}}
  100. {{- " " -}}
  101. {{- .ArchGitCommit arch -}}
  102. {{- ":" -}}
  103. {{- $dir := .ArchDirectory arch -}}
  104. {{- (eq $dir ".") | ternary "" $dir -}}
  105. {{- "\n" -}}
  106. {{- end -}}
  107. {{- end -}}
  108. '
  109. copy-tar() {
  110. local src="$1"; shift
  111. local dst="$1"; shift
  112. if [ "$allFiles" ]; then
  113. mkdir -p "$dst"
  114. cp -al "$src"/*/ "$dst/"
  115. return
  116. fi
  117. # "Dockerfile*" at the end here ensures we capture "Dockerfile.builder" style repos in a useful way too (busybox, hello-world)
  118. for d in "$src"/*/Dockerfile*; do
  119. dDir="$(dirname "$d")"
  120. dDirName="$(basename "$dDir")"
  121. IFS=$'\n'
  122. files=(
  123. "$(basename "$d")"
  124. $(awk '
  125. toupper($1) == "COPY" || toupper($1) == "ADD" {
  126. for (i = 2; i < NF; i++) {
  127. print $i
  128. }
  129. }
  130. ' "$d")
  131. # some extra files which are likely interesting if they exist, but no big loss if they do not
  132. ' *.manifest' # debian/ubuntu "package versions" list
  133. ' *.ks' # fedora "kickstart" (rootfs build script)
  134. ' build*.txt' # ubuntu "build-info.txt", debian "build-command.txt"
  135. # usefulness yet to be proven:
  136. #' *.log'
  137. #' {MD5,SHA1,SHA256}SUMS'
  138. #' *.{md5,sha1,sha256}'
  139. # (the space prefix is removed below and is used to ignore non-matching globs so that bad "Dockerfile" entries appropriately lead to failure)
  140. )
  141. unset IFS
  142. mkdir -p "$dst/$dDirName"
  143. for origF in "${files[@]}"; do
  144. f="${origF# }" # trim off leading space (indicates we don't care about failure)
  145. [ "$f" = "$origF" ] && failureMatters=1 || failureMatters=
  146. globbed=( $(cd "$dDir" && eval "echo $f") )
  147. for g in "${globbed[@]}"; do
  148. if [ -z "$failureMatters" ] && [ ! -e "$dDir/$g" ]; then
  149. continue
  150. fi
  151. mkdir -p "$(dirname "$dst/$dDirName/$g")"
  152. cp -alT "$dDir/$g" "$dst/$dDirName/$g"
  153. if [ "$listTarballContents" ]; then
  154. case "$g" in
  155. *.tar.*|*.tgz)
  156. tar -tf "$dst/$dDirName/$g" \
  157. | grep -vE "$uninterestingTarballGrep" \
  158. | sort \
  159. > "$dst/$dDirName/$g 'tar -t'"
  160. ;;
  161. esac
  162. fi
  163. done
  164. done
  165. done
  166. }
  167. mkdir temp
  168. git -C temp init --quiet
  169. bashbrew list "${images[@]}" | sort -V > temp/_bashbrew-list || :
  170. bashbrew cat --format "$archesListTemplate" "${images[@]}" | sort -V > temp/_bashbrew-arches || :
  171. bashbrew cat --format "$sharedTagsListTemplate" "${images[@]}" | grep -vE '^$' | sort -V > temp/_bashbrew-shared-tags || :
  172. for image in "${images[@]}"; do
  173. if script="$(bashbrew cat -f "$template" "$image")"; then
  174. mkdir tar
  175. ( eval "$script" | tar -xiC tar )
  176. copy-tar tar temp
  177. rm -rf tar
  178. fi
  179. done
  180. git -C temp add . || :
  181. git -C temp commit --quiet --allow-empty -m 'initial' || :
  182. git -C oi checkout --quiet pull
  183. git -C temp rm --quiet -rf . || :
  184. bashbrew list "${images[@]}" | sort -V > temp/_bashbrew-list || :
  185. bashbrew cat --format "$archesListTemplate" "${images[@]}" | sort -V > temp/_bashbrew-arches || :
  186. bashbrew cat --format "$sharedTagsListTemplate" "${images[@]}" | grep -vE '^$' | sort -V > temp/_bashbrew-shared-tags || :
  187. script="$(bashbrew cat -f "$template" "${images[@]}")"
  188. mkdir tar
  189. ( eval "$script" | tar -xiC tar )
  190. copy-tar tar temp
  191. rm -rf tar
  192. git -C temp add .
  193. git -C temp diff --minimal --find-copies="$findCopies" --find-copies-harder --irreversible-delete --staged