new: add ios build process

This commit is contained in:
Hiddify
2024-03-11 19:05:19 +01:00
parent c6d4027532
commit 41abe791f7

View File

@@ -58,29 +58,34 @@ jobs:
fail-fast: false fail-fast: false
matrix: matrix:
include: include:
- platform: android-apk # - platform: android-apk
os: ubuntu-latest # os: ubuntu-latest
targets: apk # targets: apk
- platform: android-aab # - platform: android-aab
os: ubuntu-latest # os: ubuntu-latest
targets: aab # targets: aab
- platform: windows # - platform: windows
os: windows-2019 # os: windows-2019
aarch: amd64 # aarch: amd64
targets: exe,msix # targets: exe,msix
- platform: linux # - platform: linux
os: ubuntu-22.04 # os: ubuntu-22.04
aarch: amd64 # aarch: amd64
targets: AppImage,deb,rpm # targets: AppImage,deb,rpm
- platform: macos # - platform: macos
# os: macos-13
# aarch: universal
# targets: dmg,pkg
- platform: ios
os: macos-13 os: macos-13
aarch: universal aarch: universal
targets: dmg,pkg filename: hiddify-ios
targets: ipa
runs-on: ${{ matrix.os }} runs-on: ${{ matrix.os }}
steps: steps:
- name: checkout - name: checkout
@@ -132,40 +137,54 @@ jobs:
[IO.File]::WriteAllBytes("windows\sign.pfx", [Convert]::FromBase64String("${{ secrets.WINDOWS_SIGNING_KEY }}")) [IO.File]::WriteAllBytes("windows\sign.pfx", [Convert]::FromBase64String("${{ secrets.WINDOWS_SIGNING_KEY }}"))
(Get-Content "windows\packaging\msix\make_config.yaml") -replace '^certificate_password:.*$', 'certificate_password: ${{ secrets.WINDOWS_SIGNING_PASSWORD }}' | Set-Content "windows\packaging\msix\make_config.yaml" (Get-Content "windows\packaging\msix\make_config.yaml") -replace '^certificate_password:.*$', 'certificate_password: ${{ secrets.WINDOWS_SIGNING_PASSWORD }}' | Set-Content "windows\packaging\msix\make_config.yaml"
- name: Import Apple Codesign Certificates
- name: Setup Apple certificate and provisioning profile
if: ${{ inputs.upload-artifact && startsWith(matrix.os,'macos') }} if: ${{ inputs.upload-artifact && startsWith(matrix.os,'macos') }}
env: uses: apple-actions/import-codesign-certs@v2
BUILD_CERTIFICATE_BASE64: ${{ secrets.APPLE_BUILD_CERTIFICATE_BASE64 }} with:
P12_PASSWORD: ${{ secrets.APPLE_CERTIFICATE_P12_PASSWORD }} p12-file-base64: ${{ secrets.CERTIFICATES_P12 }}
BUILD_PROVISION_PROFILE_BASE64: ${{ secrets.APPLE_BUILD_PROVISION_PROFILE_BASE64 }} p12-password: ${{ secrets.CERTIFICATES_P12_PASSWORD }}
BUILD_PACKET_TUNNEL_PROVISION_PROFILE_BASE64: ${{ secrets.APPLE_BUILD_PACKET_TUNNEL_PROVISION_PROFILE_BASE64 }} - name: Download Provisioning Profile
KEYCHAIN_PASSWORD: ${{ secrets.APPLE_KEYCHAIN_PASSWORD }} if: ${{ inputs.upload-artifact && startsWith(matrix.os,'macos') }}
run: | uses: Apple-Actions/download-provisioning-profiles@v1
# create variables with:
CERTIFICATE_PATH=$RUNNER_TEMP/build_certificate.p12 bundle-id: app.hiddify.com
PP_PATH=$RUNNER_TEMP/build_pp.mobileprovision issuer-id: ${{ secrets.APPSTORE_ISSUER_ID }}
PP_PACKET_TUNNEL_PATH=$RUNNER_TEMP/build_pppt.mobileprovision api-key-id: ${{ secrets.APPSTORE_KEY_ID }}
KEYCHAIN_PATH=$RUNNER_TEMP/app-signing.keychain-db api-private-key: ${{ secrets.APPSTORE_PRIVATE_KEY }}
# import certificate and provisioning profile from secrets # - name: Setup Apple certificate and provisioning profile
echo -n "$BUILD_CERTIFICATE_BASE64" | base64 --decode -o $CERTIFICATE_PATH # if: ${{ inputs.upload-artifact && startsWith(matrix.os,'macos') }}
echo -n "$BUILD_PROVISION_PROFILE_BASE64" | base64 --decode -o $PP_PATH # env:
echo -n "$BUILD_PACKET_TUNNEL_PROVISION_PROFILE_BASE64" | base64 --decode -o $PP_PACKET_TUNNEL_PATH # BUILD_CERTIFICATE_BASE64: ${{ secrets.APPLE_BUILD_CERTIFICATE_BASE64 }}
# P12_PASSWORD: ${{ secrets.APPLE_CERTIFICATE_P12_PASSWORD }}
# BUILD_PROVISION_PROFILE_BASE64: ${{ secrets.APPLE_BUILD_PROVISION_PROFILE_BASE64 }}
# BUILD_PACKET_TUNNEL_PROVISION_PROFILE_BASE64: ${{ secrets.APPLE_BUILD_PACKET_TUNNEL_PROVISION_PROFILE_BASE64 }}
# KEYCHAIN_PASSWORD: ${{ secrets.APPLE_KEYCHAIN_PASSWORD }}
# run: |
# # create variables
# CERTIFICATE_PATH=$RUNNER_TEMP/build_certificate.p12
# PP_PATH=$RUNNER_TEMP/build_pp.mobileprovision
# PP_PACKET_TUNNEL_PATH=$RUNNER_TEMP/build_pppt.mobileprovision
# KEYCHAIN_PATH=$RUNNER_TEMP/app-signing.keychain-db
# create temporary keychain # # import certificate and provisioning profile from secrets
security create-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH # echo -n "$BUILD_CERTIFICATE_BASE64" | base64 --decode -o $CERTIFICATE_PATH
security set-keychain-settings -lut 21600 $KEYCHAIN_PATH # echo -n "$BUILD_PROVISION_PROFILE_BASE64" | base64 --decode -o $PP_PATH
security unlock-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH # echo -n "$BUILD_PACKET_TUNNEL_PROVISION_PROFILE_BASE64" | base64 --decode -o $PP_PACKET_TUNNEL_PATH
# import certificate to keychain # # create temporary keychain
security import $CERTIFICATE_PATH -P "$P12_PASSWORD" -A -t cert -f pkcs12 -k $KEYCHAIN_PATH # security create-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
security list-keychain -d user -s $KEYCHAIN_PATH # security set-keychain-settings -lut 21600 $KEYCHAIN_PATH
# security unlock-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
# apply provisioning profile # # import certificate to keychain
mkdir -p ~/Library/MobileDevice/Provisioning\ Profiles # security import $CERTIFICATE_PATH -P "$P12_PASSWORD" -A -t cert -f pkcs12 -k $KEYCHAIN_PATH
cp $PP_PATH ~/Library/MobileDevice/Provisioning\ Profiles # security list-keychain -d user -s $KEYCHAIN_PATH
cp $PP_PACKET_TUNNEL_PATH ~/Library/MobileDevice/Provisioning\ Profiles
# # apply provisioning profile
# mkdir -p ~/Library/MobileDevice/Provisioning\ Profiles
# cp $PP_PATH ~/Library/MobileDevice/Provisioning\ Profiles
# cp $PP_PACKET_TUNNEL_PATH ~/Library/MobileDevice/Provisioning\ Profiles
- name: Build ${{ matrix.platform }} - name: Build ${{ matrix.platform }}
env: env:
@@ -363,3 +382,13 @@ jobs:
releaseName: ${{ env.TAG_NAME }} releaseName: ${{ env.TAG_NAME }}
releaseFiles: ./hiddify-android-market.aab releaseFiles: ./hiddify-android-market.aab
track: 'beta' track: 'beta'
- name: 'Upload app to TestFlight'
uses: apple-actions/upload-testflight-build@v1
with:
app-path: 'dist/out/Hiddify-iOS.ipa'
issuer-id: ${{ secrets.APPSTORE_ISSUER_ID }}
api-key-id: ${{ secrets.APPSTORE_API_KEY_ID }}
api-private-key: ${{ secrets.APPSTORE_API_PRIVATE_KEY }}