APP = dna-cms

BUILD_NUMBER   ?= 1
PROJECT_GROUP  ?= dna
PROJECT    ?= cms

BASE_AWS_PROFILE    = gdb-infra-dev
BASE_AWS_ACCOUNT_ID = 483193324480
BASE_AWS_REGION     = us-east-1
BASE_ECR_REGISTRY   = $(BASE_AWS_ACCOUNT_ID).dkr.ecr.$(BASE_AWS_REGION).amazonaws.com

AWS_PROFILE    ?= gdb-whitelist-dev
AWS_ACCOUNT_ID ?= 814622134907
AWS_REGION     ?= us-east-1

ECR_REGISTRY        ?= $(AWS_ACCOUNT_ID).dkr.ecr.$(AWS_REGION).amazonaws.com
ECR_REPOSITORY_NAME ?= $(PROJECT_GROUP)/$(PROJECT)
ECR_REGISTRY_URI    ?= $(ECR_REGISTRY)/$(ECR_REPOSITORY_NAME)

REVISION  ?= $(shell git rev-parse --short=8 HEAD)
BUILDTIME ?= $(shell date -u +"%Y%m%d%H%M%S")
VERSION   ?= build-$(BUILDTIME).$(REVISION)
SEMVER    ?= $(shell cat VERSION )

VENV := ./venv

POSTGRES_IMAGE ?= postgres:13.5

TEST_IMAGE = ${ECR_REGISTRY}/${ECR_REPOSITORY_NAME}:${SEMVER}-testing

PYTHON    = $(VENV)/bin/python
PIP       = $(VENV)/bin/pip
PYTEST    = $(VENV)/bin/pytest
PYLINT    = $(VENV)/bin/pylint
TWINE     = $(VENV)/bin/twine
YAPF      = $(VENV)/bin/yapf
ISORT     = $(VENV)/bin/isort
MYPY      = $(VENV)/bin/mypy
PIP_AUDIT = $(VENV)/bin/pip-audit
FLAKE     = $(VENV)/bin/flake8
BANDIT    = $(VENV)/bin/bandit
BLACK     = $(VENV)/bin/black

.DEFAULT_GOAL := help

## -
## help - this message
.PHONY: help
help: Makefile
	@echo "Application: ${APP}\n"
	@echo "Run command:\n  make <target>\n"
	@grep -E -h '^## .*' $(MAKEFILE_LIST) | sed -n 's/^##//p'  | column -t -s '-' |  sed -e 's/^/ /'

## -
## Local commands:

$(VENV)/bin/activate:
	python -m venv $(VENV)/

##   venv - create local virtual env
venv: $(VENV)/bin/activate
	@echo "Creating virtual environment"
	$(PIP) install -r requirements/base.txt

##   testenv - create local virtual env (tests.txt dependencies)
.PHONY:testenv
testenv: venv
	@echo "Installing requirements"
	$(PIP) install -r requirements/tests.txt

##   devenv - create local virtual env (dev.txt dependencies)
.PHONY:devenv
devenv: venv
	@echo "Installing dev requirements"
	$(PIP) install -r requirements/dev.txt

##   test - run tests locally
.PHONY:test
test: testenv
	@echo "Run tests"
	$(PYTEST) -vv --junitxml=./report.xml --cov=. --cov-report=xml ./src/

##   checkstyle - run checkstyle locally
.PHONY:checkstyle
checkstyle: testenv
	@echo "Run checkstyle"
	$(ISORT) -rc -w 120 --check-only --quiet ./src/
	$(FLAKE) ./src/ --max-line-length=120 --ignore=E203,E501,W503 --max-complexity=17 > flake8-report.txt || cat flake8-report.txt
	@cat flake8-report.txt
##   dependencies-check - run safety locally
.PHONY:dependencies-check
dependencies-check: testenv
	@echo "Run dependencies check"
	## ignore due to https://github.com/pypa/pip-audit/issues/450
	$(PIP_AUDIT) -r requirements/base.txt --ignore-vuln GHSA-r9hx-vwmv-q579

##   dependencies-check - run bandit locally
.PHONY:owasp
owasp: testenv
	@echo "Run owasp check"
	$(BANDIT) -f json -o bandit-report.json -x /app/src/tests/ -r /app/src/

##   static-typing - run mypy locally
.PHONY:static-typing
static-typing: testenv
	@echo "Run static-typing check"
	$(MYPY) ./src/

##   static-typing - run safety and bandit locally
.PHONY:security
security: dependencies-check owasp

##   prettify - run prettify locally
.PHONY:prettify
prettify: testenv
	$(BLACK) ./src/ --exclude='/(\.eggs|\.git|\.hg|\.mypy_cache|\.nox|\.tox|\.venv|venv|_build|buck-out|build|dist|migrations|.pytest_cache)/' --line-length=120 --target-version=py38
	$(ISORT) -rc -w 120 ./src/

.PHONY:python/clean
python/clean:
	py3clean .

.PHONY:pre-commit
pre-commit: docker/image/build docker/prettify docker/checkstyle docker/security docker/test

## -
## Version management

##   version/patch - increment version patch
.PHONY: version/patch
version/patch:
	@bumpversion \
		--config-file .bumpversion.cfg \
		--current-version ${SEMVER} \
		patch VERSION

##   version/minor - increment version minor
.PHONY: version/minor
version/minor:
	@bumpversion \
		--config-file .bumpversion.cfg \
		--current-version ${SEMVER} \
		minor VERSION

##   version/major - increment version major
.PHONY: version/major
version/major:
	@bumpversion \
		--config-file .bumpversion.cfg \
		--current-version ${SEMVER} \
		major VERSION

## -
## Docker commands:

##   docker/build-local - build using docker-compose for local testing
.PHONY:docker/build-local
docker/build-local: docker/login/base
	docker-compose build

##   docker/up-local - start dev environment
.PHONY:docker/up-local
docker/up-local: docker/login/base
	docker-compose up -d

##   docker/login/base - login to AWS ECR registry using docker, aws configuration need to be set first
.PHONY:docker/login/base
docker/login/base:
	@aws ecr get-login \
		--profile ${BASE_AWS_PROFILE} \
		--no-include-email \
		--region ${BASE_AWS_REGION} | awk '{print $$6}' | \
		docker login -u AWS --password-stdin https://$(BASE_ECR_REGISTRY) || aws ecr get-login-password \
			--profile ${BASE_AWS_PROFILE} \
			--region ${BASE_AWS_REGION} | \
			docker login --username AWS --password-stdin https://$(BASE_ECR_REGISTRY)

##   docker/login - login to AWS ECR registry using docker, aws configuration need to be set first
.PHONY:docker/login
docker/login:
	@aws ecr get-login \
		--profile ${AWS_PROFILE} \
		--no-include-email \
		--region ${AWS_REGION} | awk '{print $$6}' | \
		docker login -u AWS --password-stdin https://$(ECR_REGISTRY) || aws ecr get-login-password \
			--profile ${AWS_PROFILE} \
			--region ${AWS_REGION} | \
			docker login --username AWS --password-stdin https://$(ECR_REGISTRY)

##   docker/base/image/pull - pull base image from ECR
docker/base/image/pull: docker/login/base
	docker pull $(BASE_ECR_REGISTRY)/python:3.10-slim-runner
	docker pull $(BASE_ECR_REGISTRY)/python:3.10-slim-builder

##   docker/image/build - build lambda package for each environment and put all of them into one docker container
.PHONY: docker/image/build
docker/image/build: docker/login/base
	@echo "Building docker image"
	docker build \
		--build-arg VERSION=$(VERSION) \
		--build-arg REVISION=$(REVISION) \
		--build-arg BUILDTIME=$(BUILDTIME) \
		--target main \
		-t $(ECR_REGISTRY_URI):$(VERSION) \
		-t $(ECR_REGISTRY_URI):$(REVISION) .
	docker build \
		--build-arg VERSION=$(VERSION) \
		--build-arg REVISION=$(REVISION) \
		--build-arg BUILDTIME=$(BUILDTIME) \
		--target test \
		-t $(TEST_IMAGE) .

##   docker/image/push - push an image to a registry
.PHONY: docker/image/push
docker/image/push: docker/login
	@echo "Pushing docker image"
	docker push $(ECR_REGISTRY_URI):$(VERSION)
	docker push $(ECR_REGISTRY_URI):$(REVISION)

##   docker/test/dependencies - start dependencies
.PHONY: docker/test/dependencies
docker/test/dependencies:
	@echo "Create network if not exist"
	@docker network create test || exit 0
	@echo "Start postgres"
	@docker run -d \
		--env-file .env.sample \
		--mount type=tmpfs,tmpfs-size=1024M,destination=/var/lib/postgresql/data \
		--network test \
		--name postgres \
		-e POSTGRES_USER=postgres \
		-e POSTGRES_PASSWORD=pass \
		-e POSTGRES_DB=pg_db_test \
		--rm \
		$(POSTGRES_IMAGE)
	@sleep 10
	@docker logs --tail 10 postgres

##   docker/test/exec - run tests with docker
.PHONY:docker/test/exec
docker/test/exec: docker/image/build
	@echo "Run tests"
	@docker run --rm \
		--network test \
		--env-file .env.sample \
		-v $(PWD):/app \
		$(TEST_IMAGE) make VENV=/venv test

##   docker/test - run tests with docker
.PHONY:docker/test
docker/test: docker/test/dependencies docker/test/exec docker/clean

##   docker/clean - mocked command to support existing pipeline in jenkins
.PHONY:docker/clean
docker/clean:
	@echo "Nothing to clean inside docker, stopping containers if running"
	@docker stop postgres || exit 0
	@docker network rm test || exit 0
	@docker volume prune -f

##   docker/<local target> - universal docker wrapper for local targets
docker/%:
	docker run --rm \
		--env-file .env.sample \
		-v $(PWD):/app \
		$(TEST_IMAGE) make VENV=/venv $*
