named cicd
size e2-standard-2
in us-west1-a
using debian 10 OS image
allow http https
note IP address = set DNS A record
gcloud beta compute --project "intense-cortex-271814" ssh --zone "us-west1-a" "cicd"
sudo su
apt update && apt install -y git
exit # from root
git clone
cd my-jenkins
sudo su
exit # from root
sudo usermod -aG docker $USER
rm -rf ~/.kube
gcloud container clusters get-credentials andromeda --zone us-west1-a --project intense-cortex-271814
check ~/.kube
check ~/.config/gcloud
check cmd-path: in ~/.kube/config
gcloud beta compute --project "intense-cortex-271814" scp --zone "us-west1-a" ~/.kube/config cicd://home/ubuntu/
gcloud beta compute --project "intense-cortex-271814" ssh --zone "us-west1-a" "cicd"
mkdir ~/.kube
mv ~/config ~/.kube
cd ~/my-jenkins/
find and replace it your specific detail
encode the service account json using base64
cat svcaccount.json | base64 | tr -d "\n"
- GKE_SERVICE_ACCOUNT in docker-compose.yaml to make sure it's valid for k8s cluster
- D_USER=lvnilesh
- D_PASS=token get one from dockerhub
- GH_PAT=token get one from github
- AWS_ACCESS_KEY_ID=id get one from AWS
- AWS_SECRET_ACCESS_KEY=secret get one from AWS
docker-compose up -d
wait for 1 minute and
docker-compose exec cicd cat /var/jenkins_home/secrets/initialAdminPassword
open https://subdomain.domain.TLD in a browser
finish through the user creation process
cd ~/my-jenkins
docker-compose exec cicd bash
mkdir -p /google/google-cloud-sdk/bin/
ln -s /usr/bin/gcloud /google/google-cloud-sdk/bin/
PS: location of gcloud in shell (/google/google-cloud-sdk/bin/) is different from the standard (/usr/bin) in the jenkins runner
gcloud auth login
follow instructions on the terminal
gcloud config set project intense-cortex-271814
# export KUBECONFIG=/kube/config
alias k=kubectl
system wide using a personal access token
per repo using username/pass