2020-08-19 15:46:12 -04:00
[![GitHub release ](https://img.shields.io/github/release/docker/build-push-action.svg?style=flat-square )](https://github.com/docker/build-push-action/releases/latest)
2020-09-08 18:03:42 -04:00
[![GitHub marketplace ](https://img.shields.io/badge/marketplace-build--and--push--docker--images-blue?logo=github&style=flat-square )](https://github.com/marketplace/actions/build-and-push-docker-images)
2020-08-19 15:46:12 -04:00
[![CI workflow ](https://img.shields.io/github/workflow/status/docker/build-push-action/ci?label=ci&logo=github&style=flat-square )](https://github.com/docker/build-push-action/actions?workflow=ci)
[![Test workflow ](https://img.shields.io/github/workflow/status/docker/build-push-action/test?label=test&logo=github&style=flat-square )](https://github.com/docker/build-push-action/actions?workflow=test)
2020-09-08 17:34:53 -04:00
[![Codecov ](https://img.shields.io/codecov/c/github/docker/build-push-action?logo=codecov&style=flat-square )](https://codecov.io/gh/docker/build-push-action)
2020-08-19 15:46:12 -04:00
2020-08-15 18:36:41 -04:00
## About
2020-03-05 11:28:11 -05:00
2021-02-17 12:53:15 -05:00
GitHub Action to build and push Docker images with [Buildx ](https://github.com/docker/buildx ) with full support of the
features provided by [Moby BuildKit ](https://github.com/moby/buildkit ) builder toolkit. This includes multi-platform
build, secrets, remote cache, etc. and different builder deployment/namespacing options.
2020-03-16 11:13:04 -04:00
2020-08-19 15:46:12 -04:00
![Screenshot ](.github/build-push-action.png )
2020-08-15 18:36:41 -04:00
___
2020-03-05 11:28:11 -05:00
2020-08-15 18:36:41 -04:00
* [Usage ](#usage )
2020-09-02 04:07:11 -04:00
* [Git context ](#git-context )
* [Path context ](#path-context )
2020-09-12 14:40:12 -04:00
* [Advanced usage ](#advanced-usage )
2021-02-17 12:53:15 -05:00
* [Multi-platform image ](docs/advanced/multi-platform.md )
* [Secrets ](docs/advanced/secrets.md )
* [Isolated builders ](docs/advanced/isolated-builders.md )
* [Push to multi-registries ](docs/advanced/push-multi-registries.md )
2021-05-12 06:23:06 -04:00
* [Copy between registries ](docs/advanced/copy-between-registries.md )
2021-02-17 12:53:15 -05:00
* [Cache ](docs/advanced/cache.md )
* [Local registry ](docs/advanced/local-registry.md )
* [Export image to Docker ](docs/advanced/export-docker.md )
2021-05-21 11:05:16 -04:00
* [Share built image between jobs ](docs/advanced/share-image-jobs.md )
2021-09-01 10:47:54 -04:00
* [Test your image before pushing it ](docs/advanced/test-before-push.md )
2021-02-17 12:53:15 -05:00
* [Handle tags and labels ](docs/advanced/tags-labels.md )
* [Update DockerHub repo description ](docs/advanced/dockerhub-desc.md )
2020-08-15 18:36:41 -04:00
* [Customizing ](#customizing )
* [inputs ](#inputs )
* [outputs ](#outputs )
2020-09-21 12:22:47 -04:00
* [Troubleshooting ](#troubleshooting )
2020-08-20 11:25:55 -04:00
* [Keep up-to-date with GitHub Dependabot ](#keep-up-to-date-with-github-dependabot )
2020-03-05 11:28:11 -05:00
2020-08-15 18:36:41 -04:00
## Usage
2020-03-05 11:28:11 -05:00
2021-02-17 12:53:15 -05:00
By default, this action uses the [Git context ](#git-context ) so you don't need to use the
[`actions/checkout` ](https://github.com/actions/checkout/ ) action to checkout the repository because this will be
done directly by buildkit. The git reference will be based on the [event that triggered your workflow ](https://docs.github.com/en/actions/reference/events-that-trigger-workflows )
and will result in the following context: `https://github.com/<owner>/<repo>.git#<ref>` .
2020-03-05 11:28:11 -05:00
2021-12-27 18:49:32 -05:00
You can provide a subdirectory to the [Git context ](#git-context ) by using the following [Handlebars template ](https://handlebarsjs.com/guide/ ) expression `{{defaultContext}}` :
```yaml
-
name: Build and push
id: docker_build
uses: docker/build-push-action@v2
with:
context: {{defaultContext}}:docker
push: true
tags: user/app:latest
```
2021-07-13 13:33:34 -04:00
Be careful because **any file mutation in the steps that precede the build step will be ignored, including processing of the `.dockerignore` file** since
2021-02-17 12:53:15 -05:00
the context is based on the git reference. However, you can use the [Path context ](#path-context ) using the
[`context` input ](#inputs ) alongside the [`actions/checkout` ](https://github.com/actions/checkout/ ) action to remove
this restriction.
In the examples below we are using 3 other actions:
2020-09-02 04:07:11 -04:00
2021-02-17 12:53:15 -05:00
* [`setup-buildx` ](https://github.com/docker/setup-buildx-action ) action will create and boot a builder using by
2021-04-03 14:41:31 -04:00
default the `docker-container` [builder driver ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_create.md#driver ).
This is **not required but recommended** using it to be able to build multi-platform images, export cache, etc.
2021-02-17 12:53:15 -05:00
* [`setup-qemu` ](https://github.com/docker/setup-qemu-action ) action can be useful if you want
to add emulation support with QEMU to be able to build against more platforms.
2021-02-24 17:16:50 -05:00
* [`login` ](https://github.com/docker/login-action ) action will take care to log in against a Docker registry.
2021-02-17 12:53:15 -05:00
### Git context
2020-09-12 14:40:12 -04:00
2020-09-22 14:49:18 -04:00
```yaml
2020-08-15 18:36:41 -04:00
name: ci
on:
push:
2021-02-17 12:53:15 -05:00
branches:
2022-01-18 08:57:27 -05:00
- 'main'
2020-08-15 18:36:41 -04:00
jobs:
2021-02-17 12:53:15 -05:00
docker:
2020-08-17 16:18:15 -04:00
runs-on: ubuntu-latest
steps:
2020-09-04 23:18:00 -04:00
-
name: Set up QEMU
2020-09-08 18:32:40 -04:00
uses: docker/setup-qemu-action@v1
2020-08-17 16:18:15 -04:00
-
name: Set up Docker Buildx
2020-09-08 18:32:40 -04:00
uses: docker/setup-buildx-action@v1
2020-08-17 16:18:15 -04:00
-
name: Login to DockerHub
2020-08-27 09:08:11 -04:00
uses: docker/login-action@v1
2020-08-17 16:18:15 -04:00
with:
2020-09-10 12:46:50 -04:00
username: ${{ secrets.DOCKERHUB_USERNAME }}
password: ${{ secrets.DOCKERHUB_TOKEN }}
2020-08-17 16:18:15 -04:00
-
name: Build and push
id: docker_build
uses: docker/build-push-action@v2
with:
push: true
2020-08-18 16:54:44 -04:00
tags: user/app:latest
2020-09-22 14:49:18 -04:00
```
2020-08-17 16:18:15 -04:00
2021-02-17 12:53:15 -05:00
Building from the current repository automatically uses the [GitHub Token ](https://help.github.com/en/actions/configuring-and-managing-workflows/authenticating-with-the-github_token )
so it does not need to be passed. If you want to authenticate against another private repository, you have to use
a [secret ](docs/advanced/secrets.md ) named `GIT_AUTH_TOKEN` to be able to authenticate against it with buildx:
2020-09-02 04:07:11 -04:00
```yaml
-
name: Build and push
id: docker_build
uses: docker/build-push-action@v2
with:
push: true
tags: user/app:latest
secrets: |
2020-09-22 14:49:18 -04:00
GIT_AUTH_TOKEN=${{ secrets.MYTOKEN }}
2020-09-02 04:07:11 -04:00
```
### Path context
2020-09-22 14:49:18 -04:00
```yaml
name: ci
2020-09-21 12:22:47 -04:00
2020-09-22 14:49:18 -04:00
on:
push:
2021-02-17 12:53:15 -05:00
branches:
2022-01-18 08:57:27 -05:00
- 'main'
2020-09-21 12:22:47 -04:00
2020-09-22 14:49:18 -04:00
jobs:
2021-02-17 12:53:15 -05:00
docker:
2020-09-22 14:49:18 -04:00
runs-on: ubuntu-latest
steps:
-
name: Checkout
uses: actions/checkout@v2
-
name: Set up QEMU
uses: docker/setup-qemu-action@v1
-
name: Set up Docker Buildx
uses: docker/setup-buildx-action@v1
-
name: Login to DockerHub
uses: docker/login-action@v1
with:
username: ${{ secrets.DOCKERHUB_USERNAME }}
password: ${{ secrets.DOCKERHUB_TOKEN }}
-
name: Build and push
uses: docker/build-push-action@v2
with:
context: .
push: true
tags: user/app:latest
```
2020-09-02 04:07:11 -04:00
2020-09-12 14:40:12 -04:00
## Advanced usage
2021-02-17 12:53:15 -05:00
* [Multi-platform image ](docs/advanced/multi-platform.md )
* [Secrets ](docs/advanced/secrets.md )
* [Isolated builders ](docs/advanced/isolated-builders.md )
* [Push to multi-registries ](docs/advanced/push-multi-registries.md )
2021-05-12 06:23:06 -04:00
* [Copy between registries ](docs/advanced/copy-between-registries.md )
2021-02-17 12:53:15 -05:00
* [Cache ](docs/advanced/cache.md )
* [Local registry ](docs/advanced/local-registry.md )
* [Export image to Docker ](docs/advanced/export-docker.md )
2021-05-21 11:05:16 -04:00
* [Share built image between jobs ](docs/advanced/share-image-jobs.md )
2021-09-01 10:47:54 -04:00
* [Test your image before pushing it ](docs/advanced/test-before-push.md )
2021-02-17 12:53:15 -05:00
* [Handle tags and labels ](docs/advanced/tags-labels.md )
* [Update DockerHub repo description ](docs/advanced/dockerhub-desc.md )
2020-09-09 19:14:41 -04:00
2020-08-15 18:36:41 -04:00
## Customizing
2020-03-05 11:28:11 -05:00
2020-08-15 18:36:41 -04:00
### inputs
2020-03-05 11:28:11 -05:00
2020-08-15 18:36:41 -04:00
Following inputs can be used as `step.with` keys
2020-03-05 11:28:11 -05:00
2020-10-22 15:50:22 -04:00
> `List` type is a newline-delimited string
> ```yaml
> cache-from: |
> user/app:cache
> type=local,src=path/to/dir
> ```
> `CSV` type is a comma-delimited string
> ```yaml
> tags: name/app:latest,name/app:1.0.0
> ```
2020-10-20 13:04:54 -04:00
| Name | Type | Description |
|---------------------|----------|------------------------------------|
2021-11-16 01:19:27 -05:00
| `allow` | List/CSV | List of [extra privileged entitlement ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#allow ) (e.g., `network.host,security.insecure` ) |
2020-10-20 13:04:54 -04:00
| `builder` | String | Builder instance (see [setup-buildx ](https://github.com/docker/setup-buildx-action ) action) |
2021-04-06 07:54:58 -04:00
| `build-args` | List | List of build-time variables |
2021-11-16 01:19:27 -05:00
| `cache-from` | List | List of [external cache sources ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#cache-from ) (e.g., `type=local,src=path/to/dir` ) |
| `cache-to` | List | List of [cache export destinations ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#cache-to ) (e.g., `type=local,dest=path/to/dir` ) |
2022-01-18 08:57:27 -05:00
| `cgroup-parent` ¹ | String | Optional [parent cgroup ](https://docs.docker.com/engine/reference/commandline/build/#use-a-custom-parent-cgroup---cgroup-parent ) for the container used in the build |
2020-10-20 13:04:54 -04:00
| `context` | String | Build's context is the set of files located in the specified [`PATH` or `URL` ](https://docs.docker.com/engine/reference/commandline/build/ ) (default [Git context ](#git-context )) |
2020-12-18 10:05:47 -05:00
| `file` | String | Path to the Dockerfile. (default `{context}/Dockerfile` ) |
2020-10-20 13:04:54 -04:00
| `labels` | List | List of metadata for an image |
2021-04-06 07:54:58 -04:00
| `load` | Bool | [Load ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#load ) is a shorthand for `--output=type=docker` (default `false` ) |
2021-04-06 08:49:15 -04:00
| `network` | String | Set the networking mode for the `RUN` instructions during build |
2020-10-20 13:04:54 -04:00
| `no-cache` | Bool | Do not use cache when building the image (default `false` ) |
2021-04-06 07:54:58 -04:00
| `outputs` | List | List of [output destinations ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#output ) (format: `type=local,dest=path` ) |
2021-04-03 14:41:31 -04:00
| `platforms` | List/CSV | List of [target platforms ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#platform ) for build |
2021-04-06 07:54:58 -04:00
| `pull` | Bool | Always attempt to pull a newer version of the image (default `false` ) |
2021-04-03 14:41:31 -04:00
| `push` | Bool | [Push ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#push ) is a shorthand for `--output=type=registry` (default `false` ) |
2021-11-16 01:19:27 -05:00
| `secrets` | List | List of secrets to expose to the build (e.g., `key=string` , `GIT_AUTH_TOKEN=mytoken` ) |
| `secret-files` | List | List of secret files to expose to the build (e.g., `key=filename` , `MY_SECRET=./secret.txt` ) |
2022-01-18 08:57:27 -05:00
| `shm-size` ¹ | String | Size of [`/dev/shm` ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#-size-of-devshm---shm-size ) (e.g., `2g` ) |
2020-10-28 14:40:11 -04:00
| `ssh` | List | List of SSH agent socket or keys to expose to the build |
2021-04-06 07:54:58 -04:00
| `tags` | List/CSV | List of tags |
| `target` | String | Sets the target stage to build |
2022-01-18 08:57:27 -05:00
| `ulimit` ¹ | List | [Ulimit ](https://github.com/docker/buildx/blob/master/docs/reference/buildx_build.md#-set-ulimits---ulimit ) options (e.g., `nofile=1024:1024` ) |
2022-01-24 06:20:36 -05:00
| `github-token` | String | GitHub Token used to authenticate against a repository for Git context (default `${{ github.token }}` ) |
2022-01-18 08:57:27 -05:00
> ¹ `cgroup-parent`, `shm-size` and `ulimit` are only available using `moby/buildkit:master`
> as builder image atm:
> ```yaml
> - name: Set up Docker Buildx
> uses: docker/setup-buildx-action@v1
> with:
> driver-opts: |
> image=moby/buildkit:master
> ```
2020-10-20 13:04:54 -04:00
2020-08-15 18:36:41 -04:00
### outputs
2020-03-05 11:28:11 -05:00
2020-08-15 18:36:41 -04:00
Following outputs are available
2020-03-05 11:28:11 -05:00
2021-08-16 17:44:13 -04:00
| Name | Type | Description |
|-------------------|---------|---------------------------------------|
| `digest` | String | Image content-addressable identifier also called a digest |
| `metadata` | JSON | Build result metadata |
2020-03-05 11:28:11 -05:00
2020-09-21 12:22:47 -04:00
## Troubleshooting
2020-09-21 15:06:04 -04:00
See [TROUBLESHOOTING.md ](TROUBLESHOOTING.md )
2020-09-21 12:22:47 -04:00
2020-08-20 11:25:55 -04:00
## Keep up-to-date with GitHub Dependabot
Since [Dependabot ](https://docs.github.com/en/github/administering-a-repository/keeping-your-actions-up-to-date-with-github-dependabot )
has [native GitHub Actions support ](https://docs.github.com/en/github/administering-a-repository/configuration-options-for-dependency-updates#package-ecosystem ),
to enable it on your GitHub repo all you need to do is add the `.github/dependabot.yml` file:
```yaml
version: 2
updates:
# Maintain dependencies for GitHub Actions
- package-ecosystem: "github-actions"
directory: "/"
schedule:
interval: "daily"
```