使用 GitHub Actions 驗證建置設定

建置檢查 可讓您在不實際執行建置的情況下驗證您的 docker build 設定。

使用 docker/build-push-action 執行檢查

若要使用 build-push-action 在 GitHub Actions 工作流程中執行建置檢查,請將 call 輸入參數設定為 check。設定此參數後,如果偵測到建置設定有任何檢查警告,工作流程將會失敗。

name: ci

on:
  push:

jobs:
  docker:
    runs-on: ubuntu-latest
    steps:
      - name: Login to Docker Hub
        uses: docker/login-action@v3
        with:
          username: ${{ secrets.DOCKERHUB_USERNAME }}
          password: ${{ secrets.DOCKERHUB_TOKEN }}
      
      - name: Set up Docker Buildx
        uses: docker/setup-buildx-action@v3

      - name: Validate build configuration
        uses: docker/build-push-action@v6
        with:
          call: check

      - name: Build and push
        uses: docker/build-push-action@v6
        with:
          push: true
          tags: user/app:latest

使用 docker/bake-action 執行檢查

如果您使用 Bake 和 docker/bake-action 來執行建置,則不需要在 GitHub Actions 工作流程設定中指定任何特殊輸入。您可以定義一個呼叫 check 方法的 Bake 目標,並在您的 CI 中叫用該目標。

target "build" {
  dockerfile = "Dockerfile"
  args = {
    FOO = "bar"
  }
}
target "validate-build" {
  inherits = ["build"]
  call = "check"
}
name: ci

on:
  push:

env:
  IMAGE_NAME: user/app

jobs:
  docker:
    runs-on: ubuntu-latest
    steps:
      - name: Checkout
        uses: actions/checkout@v4

      - name: Login to Docker Hub
        uses: docker/login-action@v3
        with:
          username: ${{ vars.DOCKERHUB_USERNAME }}
          password: ${{ secrets.DOCKERHUB_TOKEN }}

      - name: Set up Docker Buildx
        uses: docker/setup-buildx-action@v3

      - name: Validate build configuration
        uses: docker/bake-action@v5
        with:
          targets: validate-build

      - name: Build
        uses: docker/bake-action@v5
        with:
          targets: build
          push: true