2020-08-19 19:46:12 +00:00
[![GitHub release ](https://img.shields.io/github/release/docker/build-push-action.svg?style=flat-square )](https://github.com/docker/build-push-action/releases/latest)
2020-08-20 13:09:19 +00:00
[![GitHub marketplace ](https://img.shields.io/badge/marketplace-docker--build--push--images-blue?logo=github&style=flat-square )](https://github.com/marketplace/actions/docker-build-push-images)
2020-08-19 19:46:12 +00:00
[![CI workflow ](https://img.shields.io/github/workflow/status/docker/build-push-action/ci?label=ci&logo=github&style=flat-square )](https://github.com/docker/build-push-action/actions?workflow=ci)
[![Test workflow ](https://img.shields.io/github/workflow/status/docker/build-push-action/test?label=test&logo=github&style=flat-square )](https://github.com/docker/build-push-action/actions?workflow=test)
2020-08-15 22:36:41 +00:00
## About
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
GitHub Action to build and push Docker images.
2020-03-16 15:13:04 +00:00
2020-08-29 14:10:05 +00:00
> :bulb: See also:
> * [login](https://github.com/docker/login-action) action
> * [setup-buildx](https://github.com/docker/setup-buildx-action) action
> * [setup-qemu](https://github.com/docker/setup-qemu-action) action
2020-08-19 19:35:36 +00:00
2020-08-19 19:46:12 +00:00
![Screenshot ](.github/build-push-action.png )
2020-08-15 22:36:41 +00:00
___
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
* [Usage ](#usage )
* [Quick start ](#quick-start )
2020-08-18 20:54:44 +00:00
* [Multi-platform image ](#multi-platform-image )
2020-08-16 17:41:44 +00:00
* [Git context ](#git-context )
2020-08-29 14:10:05 +00:00
* [Leverage GitHub cache ](#leverage-github-cache )
2020-08-18 20:54:44 +00:00
* [Complete workflow ](#complete-workflow )
2020-08-15 22:36:41 +00:00
* [Customizing ](#customizing )
* [inputs ](#inputs )
* [outputs ](#outputs )
2020-08-20 15:28:17 +00:00
* [environment variables ](#environment-variables )
2020-08-20 15:25:55 +00:00
* [Keep up-to-date with GitHub Dependabot ](#keep-up-to-date-with-github-dependabot )
2020-08-15 22:36:41 +00:00
* [Limitation ](#limitation )
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
## Usage
2020-03-05 16:28:11 +00:00
2020-08-16 03:53:50 +00:00
This action uses our [setup-buildx ](https://github.com/docker/setup-buildx-action ) action that extends the
`docker build` command named [buildx ](https://github.com/docker/buildx ) with the full support of the features
2020-08-19 19:35:36 +00:00
provided by [Moby BuildKit ](https://github.com/moby/buildkit ) builder toolkit. This includes multi-arch build,
2020-08-16 03:53:50 +00:00
build-secrets, remote cache, etc. and different builder deployment/namespacing options.
2020-03-05 16:28:11 +00:00
2020-08-16 03:53:50 +00:00
### Quick start
2020-04-22 15:34:18 +00:00
```yaml
2020-08-15 22:36:41 +00:00
name: ci
on:
push:
branches: master
jobs:
2020-08-17 20:18:15 +00:00
main:
runs-on: ubuntu-latest
steps:
-
name: Checkout
uses: actions/checkout@v2
-
name: Set up QEMU
2020-08-29 14:10:05 +00:00
uses: docker/setup-qemu-action@master
2020-08-17 20:18:15 +00:00
with:
platforms: all
-
name: Set up Docker Buildx
id: buildx
2020-08-29 14:10:05 +00:00
uses: docker/setup-buildx-action@master
2020-08-17 20:18:15 +00:00
-
name: Login to DockerHub
2020-08-27 13:08:11 +00:00
uses: docker/login-action@v1
2020-08-17 20:18:15 +00:00
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
-
name: Build and push
id: docker_build
uses: docker/build-push-action@v2
with:
builder: ${{ steps.buildx.outputs.name }}
push: true
2020-08-18 20:54:44 +00:00
tags: user/app:latest
2020-08-17 20:18:15 +00:00
-
name: Image digest
run: echo ${{ steps.docker_build.outputs.digest }}
```
### Multi-platform image
```yaml
name: ci
on:
push:
branches: master
jobs:
multi:
2020-08-15 22:36:41 +00:00
runs-on: ubuntu-latest
steps:
-
name: Checkout
uses: actions/checkout@v2
-
name: Set up QEMU
2020-08-29 14:10:05 +00:00
uses: docker/setup-qemu-action@master
2020-08-15 22:36:41 +00:00
with:
platforms: all
-
name: Set up Docker Buildx
id: buildx
2020-08-29 14:10:05 +00:00
uses: docker/setup-buildx-action@master
2020-08-15 22:36:41 +00:00
-
name: Login to DockerHub
2020-08-27 13:08:11 +00:00
uses: docker/login-action@v1
2020-08-15 22:36:41 +00:00
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
-
name: Build and push
uses: docker/build-push-action@v2
with:
2020-08-16 01:21:48 +00:00
builder: ${{ steps.buildx.outputs.name }}
2020-08-18 20:54:44 +00:00
context: .
file: ./Dockerfile
platforms: linux/amd64,linux/arm64,linux/386
2020-08-16 03:53:50 +00:00
push: true
2020-08-15 22:36:41 +00:00
tags: |
user/app:latest
user/app:1.0.0
2020-04-22 15:34:18 +00:00
```
2020-08-16 17:41:44 +00:00
### Git context
You can build from Git directly without [`actions/checkout` ](https://github.com/actions/checkout/ ) action,
even in private repositories if your `context` is a valid Git url:
```yaml
name: ci
on:
push:
branches: master
jobs:
git-context:
runs-on: ubuntu-latest
steps:
-
name: Set up QEMU
2020-08-29 14:10:05 +00:00
uses: docker/setup-qemu-action@master
2020-08-16 17:41:44 +00:00
with:
platforms: all
-
name: Set up Docker Buildx
id: buildx
2020-08-29 14:10:05 +00:00
uses: docker/setup-buildx-action@master
2020-08-16 17:41:44 +00:00
with:
version: latest
-
name: Login to DockerHub
2020-08-27 13:08:11 +00:00
uses: docker/login-action@v1
2020-08-16 17:41:44 +00:00
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
-
name: Build and push
2020-08-18 20:54:44 +00:00
uses: docker/build-push-action@v2
2020-08-16 17:41:44 +00:00
with:
builder: ${{ steps.buildx.outputs.name }}
2020-08-18 20:54:44 +00:00
context: "${{ github.repositoryUrl }}#${{ github.ref }}"
2020-08-16 17:41:44 +00:00
platforms: linux/amd64,linux/arm64,linux/386
push: true
tags: |
name/app:latest
name/app:1.0.0
2020-08-18 20:54:44 +00:00
env:
GIT_AUTH_TOKEN: ${{ github.token }}
```
2020-08-29 14:10:05 +00:00
### Leverage GitHub cache
You can leverage [GitHub cache ](https://docs.github.com/en/actions/configuring-and-managing-workflows/caching-dependencies-to-speed-up-workflows )
using [@actions/cache ](https://github.com/actions/cache ) with this action.
```yaml
name: ci
on:
push:
branches: master
jobs:
main:
runs-on: ubuntu-latest
steps:
-
name: Checkout
uses: actions/checkout@v2
-
name: Set up QEMU
uses: docker/setup-qemu-action@master
with:
platforms: all
-
name: Set up Docker Buildx
id: buildx
uses: docker/setup-buildx-action@master
-
name: Cache Docker layers
uses: actions/cache@v2
with:
path: /tmp/.buildx-cache
key: ${{ runner.os }}-buildx-${{ github.sha }}
restore-keys: |
${{ runner.os }}-buildx-
-
name: Login to DockerHub
uses: docker/login-action@v1
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
-
name: Build and push
id: docker_build
uses: docker/build-push-action@v2
with:
builder: ${{ steps.buildx.outputs.name }}
push: true
tags: user/app:latest
cache-from: type=local,src=/tmp/.buildx-cache
cache-to: type=local,dest=/tmp/.buildx-cache
-
name: Image digest
run: echo ${{ steps.docker_build.outputs.digest }}
```
2020-08-18 20:54:44 +00:00
### Complete workflow
* On `pull_request` event, Docker image `name/app:edge` is **built** .
* On `push` event, Docker image `name/app:edge` is **built** and **pushed** to DockerHub.
* On `schedule` event, Docker image `name/app:nightly` is **built** and **pushed** to DockerHub.
* On `push tags` event, Docker image `name/app:<version>` and `name/app:latest` is **built** and **pushed** to DockerHub.
```yaml
name: ci
on:
schedule:
- cron: '0 10 * * *' # everyday at 10am
push:
branches: master
tags:
- 'v*.*.*'
pull_request:
branches: master
jobs:
docker:
runs-on: ubuntu-latest
steps:
-
name: Checkout
uses: actions/checkout@v2
-
name: Prepare
id: prep
run: |
DOCKER_IMAGE=name/app
VERSION=edge
if [[ $GITHUB_REF == refs/tags/* ]]; then
VERSION=${GITHUB_REF#refs/tags/v}
fi
if [ "${{ github.event_name }}" = "schedule" ]; then
VERSION=nightly
fi
TAGS="${DOCKER_IMAGE}:${VERSION}"
if [[ $VERSION =~ ^[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}$ ]]; then
TAGS="$TAGS,${DOCKER_IMAGE}:latest"
fi
echo ::set-output name=tags::${TAGS}
-
name: Set up QEMU
2020-08-29 14:10:05 +00:00
uses: docker/setup-qemu-action@master
2020-08-18 20:54:44 +00:00
with:
platforms: all
-
name: Set up Docker Buildx
id: buildx
2020-08-29 14:10:05 +00:00
uses: docker/setup-buildx-action@master
2020-08-18 20:54:44 +00:00
-
name: Login to DockerHub
if: github.event_name != 'pull_request'
2020-08-27 13:08:11 +00:00
uses: docker/login-action@v1
2020-08-18 20:54:44 +00:00
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_PASSWORD }}
-
name: Build and push
id: docker_build
uses: docker/build-push-action@v2
with:
builder: ${{ steps.buildx.outputs.name }}
context: .
file: ./Dockerfile
platforms: linux/amd64,linux/arm64,linux/386
push: ${{ github.event_name != 'pull_request' }}
tags: ${{ steps.prep.outputs.tags }}
2020-08-16 17:41:44 +00:00
```
2020-08-15 22:36:41 +00:00
## Customizing
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
### inputs
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
Following inputs can be used as `step.with` keys
2020-03-05 16:28:11 +00:00
2020-08-21 15:31:03 +00:00
| Name | Type | Description |
|---------------------|---------|------------------------------------|
| `builder` | String | Builder instance (see [setup-buildx ](https://github.com/docker/setup-buildx-action ) action) |
| `context` | String | Build's context is the set of files located in the specified [`PATH` or `URL` ](https://docs.docker.com/engine/reference/commandline/build/ ) (default `.` ) |
| `file` | String | Path to the Dockerfile (default `./Dockerfile` ) |
| `build-args` | List | List of build-time variables |
| `labels` | List | List of metadata for an image |
| `tags` | List | List of tags |
| `pull` | Bool | Always attempt to pull a newer version of the image (default `false` ) |
| `target` | String | Sets the target stage to build |
| `allow` | List | List of [extra privileged entitlement ](https://github.com/docker/buildx#--allowentitlement ) (eg. `network.host,security.insecure` ) |
| `no-cache` | Bool | Do not use cache when building the image (default `false` ) |
| `platforms` | List | List of [target platforms ](https://github.com/docker/buildx#---platformvaluevalue ) for build |
| `load` | Bool | [Load ](https://github.com/docker/buildx#--load ) is a shorthand for `--output=type=docker` (default `false` ) |
| `push` | Bool | [Push ](https://github.com/docker/buildx#--push ) is a shorthand for `--output=type=registry` (default `false` ) |
2020-08-29 15:15:26 +00:00
| `outputs` | CSV | List of [output destinations ](https://github.com/docker/buildx#-o---outputpath-typetypekeyvalue ) (format: `type=local,dest=path` ) |
| `cache-from` | CSV | List of [external cache sources ](https://github.com/docker/buildx#--cache-fromnametypetypekeyvalue ) (eg. `user/app:cache` , `type=local,src=path/to/dir` ) |
| `cache-to` | CSV | List of [cache export destinations ](https://github.com/docker/buildx#--cache-tonametypetypekeyvalue ) (eg. `user/app:cache` , `type=local,dest=path/to/dir` ) |
2020-08-17 00:32:27 +00:00
2020-08-29 15:15:26 +00:00
> `List` type can be a comma or newline-delimited string
2020-08-17 00:32:27 +00:00
> ```yaml
> tags: name/app:latest,name/app:1.0.0
> ```
> ```yaml
> tags: |
> name/app:latest
> name/app:1.0.0
> ```
2020-03-05 16:28:11 +00:00
2020-08-29 15:15:26 +00:00
> `CSV` type must be a newline-delimited string
> ```yaml
> cache-from: user/app:cache
> ```
> ```yaml
> cache-from: |
> user/app:cache
> type=local,src=path/to/dir
> ```
2020-08-15 22:36:41 +00:00
### outputs
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
Following outputs are available
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
| Name | Type | Description |
|---------------|---------|---------------------------------------|
| `digest` | String | Image content-addressable identifier also called a digest |
2020-03-05 16:28:11 +00:00
2020-08-16 17:41:44 +00:00
### environment variables
Following environment variables can be used as `step.env` keys
| Name | Description |
|--------------------------|---------------------------------------|
| `GIT_AUTH_HEADER` **¹** | Raw authorization header to authenticate against git repository |
| `GIT_AUTH_TOKEN` **¹** | `x-access-token` basic auth to authenticate against git repository |
> **¹** Only used if `input.context` is a valid git uri.
2020-08-20 15:25:55 +00:00
## Keep up-to-date with GitHub Dependabot
Since [Dependabot ](https://docs.github.com/en/github/administering-a-repository/keeping-your-actions-up-to-date-with-github-dependabot )
has [native GitHub Actions support ](https://docs.github.com/en/github/administering-a-repository/configuration-options-for-dependency-updates#package-ecosystem ),
to enable it on your GitHub repo all you need to do is add the `.github/dependabot.yml` file:
```yaml
version: 2
updates:
# Maintain dependencies for GitHub Actions
- package-ecosystem: "github-actions"
directory: "/"
schedule:
interval: "daily"
```
2020-08-15 22:36:41 +00:00
## Limitation
2020-03-05 16:28:11 +00:00
2020-08-15 22:36:41 +00:00
This action is only available for Linux [virtual environments ](https://help.github.com/en/articles/virtual-environments-for-github-actions#supported-virtual-environments-and-hardware-resources ).