55 pull_request :
66 branches :
77 - main
8- - ' release-*'
8+ - " release-*"
99 - ray-jobs-feature
10+ - kueue-integration
1011 paths-ignore :
11- - ' docs/**'
12- - ' **.adoc'
13- - ' **.md'
14- - ' LICENSE'
12+ - " docs/**"
13+ - " **.adoc"
14+ - " **.md"
15+ - " LICENSE"
1516
1617concurrency :
1718 group : ${{ github.head_ref }}-${{ github.workflow }}
1819 cancel-in-progress : true
1920
2021env :
2122 CODEFLARE_OPERATOR_IMG : " quay.io/project-codeflare/codeflare-operator:dev"
23+ KUEUE_VERSION : " v0.13.4"
2224
2325jobs :
2426 kubernetes :
3335 - name : Checkout common repo code
3436 uses : actions/checkout@v4
3537 with :
36- repository : ' project-codeflare/codeflare-common'
37- ref : ' main'
38- path : ' common'
38+ repository : " project-codeflare/codeflare-common"
39+ ref : " main"
40+ path : " common"
3941
4042 - name : Checkout CodeFlare operator repository
4143 uses : actions/checkout@v4
4648 - name : Set Go
4749 uses : actions/setup-go@v5
4850 with :
49- go-version-file : ' ./codeflare-operator/go.mod'
51+ go-version-file : " ./codeflare-operator/go.mod"
5052 cache-dependency-path : " ./codeflare-operator/go.sum"
5153
5254 - name : Set up gotestfmt
5759 - name : Set up specific Python version
5860 uses : actions/setup-python@v5
5961 with :
60- python-version : ' 3.11 '
61- cache : ' pip' # caching pip dependencies
62+ python-version : " 3.12 "
63+ cache : " pip" # caching pip dependencies
6264
6365 - name : Setup NVidia GPU environment for KinD
6466 uses : ./common/github-actions/nvidia-gpu-setup
7173 - name : Install NVidia GPU operator for KinD
7274 uses : ./common/github-actions/nvidia-gpu-operator
7375
76+ - name : Wait for nodes to be ready
77+ run : |
78+ echo "Waiting for all nodes to be ready..."
79+ kubectl wait --for=condition=Ready nodes --all --timeout=300s
80+
81+ echo "Checking node status..."
82+ kubectl get nodes -o wide
83+
84+ echo "Checking for CNI readiness..."
85+ for i in {1..30}; do
86+ if kubectl get nodes -o jsonpath='{range .items[*]}{.metadata.name}{"\t"}{.status.conditions[?(@.type=="Ready")].status}{"\n"}{end}' | grep -v "True"; then
87+ echo "Waiting for CNI to initialize (attempt $i/30)..."
88+ sleep 10
89+ else
90+ echo "All nodes are ready!"
91+ break
92+ fi
93+ done
94+
95+ # Final verification
96+ kubectl describe nodes | grep -E "Ready|NetworkReady|RuntimeReady|PodCIDR"
97+
7498 - name : Deploy CodeFlare stack
7599 id : deploy
76100 run : |
@@ -82,6 +106,30 @@ jobs:
82106 kubectl wait --timeout=120s --for=condition=Available=true deployment -n openshift-operators codeflare-operator-manager
83107 cd ..
84108
109+ - name : Verify CodeFlare deployment
110+ run : |
111+ # Wait for Kueue to be ready
112+ echo "Waiting for Kueue controller to be ready..."
113+ kubectl wait --for=condition=Available --timeout=300s deployment -n kueue-system kueue-controller-manager || {
114+ echo "Kueue deployment status:"
115+ kubectl get all -n kueue-system
116+ exit 1
117+ }
118+
119+ # Wait for KubeRay to be ready
120+ echo "Waiting for KubeRay operator to be ready..."
121+ kubectl wait --for=condition=Available --timeout=300s deployment -n default kuberay-operator || {
122+ echo "KubeRay deployment status:"
123+ kubectl get all -n default
124+ exit 1
125+ }
126+
127+ # Verify webhook certificates
128+ echo "Checking CodeFlare operator webhook certificates..."
129+ kubectl get secret -n openshift-operators codeflare-operator-webhook-server-cert -o jsonpath='{.data.ca\.crt}' | base64 -d | openssl x509 -noout -text || {
130+ echo "Warning: Webhook certificate might be missing or invalid"
131+ }
132+
85133 - name : Add user to KinD
86134 uses : ./common/github-actions/kind-add-user
87135 with :
@@ -93,16 +141,18 @@ jobs:
93141 kubectl create clusterrolebinding sdk-user-list-ingresses --clusterrole=list-ingresses --user=sdk-user
94142 kubectl create clusterrole namespace-creator --verb=get,list,create,delete,patch --resource=namespaces
95143 kubectl create clusterrolebinding sdk-user-namespace-creator --clusterrole=namespace-creator --user=sdk-user
96- kubectl create clusterrole raycluster-creator --verb=get,list,create,delete,patch --resource=rayclusters
144+ kubectl create clusterrole raycluster-creator --verb=get,list,create,delete,patch,watch --resource=rayclusters
97145 kubectl create clusterrolebinding sdk-user-raycluster-creator --clusterrole=raycluster-creator --user=sdk-user
98- kubectl create clusterrole appwrapper -creator --verb=get,list,create,delete,patch --resource=appwrappers
99- kubectl create clusterrolebinding sdk-user-appwrapper -creator --clusterrole=appwrapper -creator --user=sdk-user
146+ kubectl create clusterrole rayjob -creator --verb=get,list,create,delete,patch,watch,update --resource=rayjobs,rayjobs/status
147+ kubectl create clusterrolebinding sdk-user-rayjob -creator --clusterrole=rayjob -creator --user=sdk-user
100148 kubectl create clusterrole resourceflavor-creator --verb=get,list,create,delete --resource=resourceflavors
101149 kubectl create clusterrolebinding sdk-user-resourceflavor-creator --clusterrole=resourceflavor-creator --user=sdk-user
102150 kubectl create clusterrole clusterqueue-creator --verb=get,list,create,delete,patch --resource=clusterqueues
103151 kubectl create clusterrolebinding sdk-user-clusterqueue-creator --clusterrole=clusterqueue-creator --user=sdk-user
104152 kubectl create clusterrole localqueue-creator --verb=get,list,create,delete,patch --resource=localqueues
105153 kubectl create clusterrolebinding sdk-user-localqueue-creator --clusterrole=localqueue-creator --user=sdk-user
154+ kubectl create clusterrole workload-creator --verb=get,list,watch --resource=workloads
155+ kubectl create clusterrolebinding sdk-user-workload-creator --clusterrole=workload-creator --user=sdk-user
106156 kubectl create clusterrole list-secrets --verb=get,list --resource=secrets
107157 kubectl create clusterrolebinding sdk-user-list-secrets --clusterrole=list-secrets --user=sdk-user
108158 kubectl create clusterrole pod-creator --verb=get,list,watch --resource=pods
@@ -111,30 +161,72 @@ jobs:
111161 kubectl create clusterrolebinding sdk-user-service-reader --clusterrole=service-reader --user=sdk-user
112162 kubectl create clusterrole port-forward-pods --verb=create --resource=pods/portforward
113163 kubectl create clusterrolebinding sdk-user-port-forward-pods-binding --clusterrole=port-forward-pods --user=sdk-user
164+ kubectl create clusterrole node-reader --verb=get,list --resource=nodes
165+ kubectl create clusterrolebinding sdk-user-node-reader --clusterrole=node-reader --user=sdk-user
114166 kubectl config use-context sdk-user
115167
168+ - name : Verify cluster readiness before tests
169+ run : |
170+ echo "=== Pre-test cluster verification ==="
171+ echo "Current context:"
172+ kubectl config current-context
173+
174+ echo -e "\nNode status:"
175+ kubectl get nodes -o wide
176+
177+ echo -e "\nSystem pods status:"
178+ kubectl get pods -A | grep -E "(kube-system|ray-system|kueue-system|openshift-operators)" || true
179+
180+ echo -e "\nChecking for any pods in error state:"
181+ kubectl get pods -A --field-selector=status.phase!=Running,status.phase!=Succeeded | grep -v "NAMESPACE" || echo "No pods in error state"
182+
183+ echo -e "\nKueue resources:"
184+ kubectl get resourceflavors,clusterqueues,localqueues -A || true
185+
186+ echo -e "\nRay CRDs:"
187+ kubectl get crd | grep ray || true
188+
116189 - name : Run e2e tests
117190 run : |
118- export CODEFLARE_TEST_OUTPUT_DIR=${{ env.TEMP_DIR }}
191+ export CODEFLARE_TEST_OUTPUT_DIR="${{ runner.temp }}/test-logs"
192+ mkdir -p ${CODEFLARE_TEST_OUTPUT_DIR}
119193 echo "CODEFLARE_TEST_OUTPUT_DIR=${CODEFLARE_TEST_OUTPUT_DIR}" >> $GITHUB_ENV
120194
121195 set -euo pipefail
122196 pip install poetry
123197 poetry install --with test,docs
124198 echo "Running e2e tests..."
125- poetry run pytest -v -s ./tests/e2e -m 'kind and nvidia_gpu' > ${CODEFLARE_TEST_OUTPUT_DIR}/pytest_output.log 2>&1
199+ poetry run pytest -v -s ./tests/e2e -m 'kind and nvidia_gpu' > ${CODEFLARE_TEST_OUTPUT_DIR}/e2e-pytest_output.log 2>&1
200+ env :
201+ GRPC_DNS_RESOLVER : " native"
202+
203+ - name : Run RayJob e2e tests
204+ run : |
205+ set -euo pipefail
206+ echo "Running RayJob e2e tests..."
207+ # Set environment variable to prevent default queue assignment for non-Kueue tests
208+ export DISABLE_DEFAULT_KUEUE_QUEUE=true
209+
210+ # Run only the tests that are designed for Kueue integration
211+ poetry run pytest -v -s ./tests/e2e/rayjob/ -x > ${CODEFLARE_TEST_OUTPUT_DIR}/rayjob_pytest_output.log 2>&1
126212 env :
127213 GRPC_DNS_RESOLVER : " native"
128214
129215 - name : Switch to kind-cluster context to print logs
130216 if : always() && steps.deploy.outcome == 'success'
131217 run : kubectl config use-context kind-cluster
132218
133- - name : Print Pytest output log
219+ - name : Print RayJob E2E Pytest output log
220+ if : always() && steps.deploy.outcome == 'success'
221+ run : |
222+ echo "Printing RayJob Pytest output logs"
223+ cat ${CODEFLARE_TEST_OUTPUT_DIR}/rayjob_pytest_output.log || echo "No RayJob test output found"
224+
225+ - name : Print E2E Pytest output log
134226 if : always() && steps.deploy.outcome == 'success'
135227 run : |
136- echo "Printing Pytest output logs"
137- cat ${CODEFLARE_TEST_OUTPUT_DIR}/pytest_output.log
228+ echo "Printing E2E Pytest output logs"
229+ cat ${CODEFLARE_TEST_OUTPUT_DIR}/e2e- pytest_output.log || echo "No E2E test output found"
138230
139231 - name : Print CodeFlare operator logs
140232 if : always() && steps.deploy.outcome == 'success'
@@ -152,7 +244,7 @@ jobs:
152244 uses : ./common/github-actions/kind-export-logs
153245 if : always() && steps.deploy.outcome == 'success'
154246 with :
155- output-directory : ${CODEFLARE_TEST_OUTPUT_DIR}
247+ output-directory : ${{ env. CODEFLARE_TEST_OUTPUT_DIR } }
156248
157249 - name : Upload logs
158250 uses : actions/upload-artifact@v4
@@ -162,3 +254,4 @@ jobs:
162254 retention-days : 10
163255 path : |
164256 ${{ env.CODEFLARE_TEST_OUTPUT_DIR }}/**/*.log
257+ if-no-files-found : warn
0 commit comments