Azure Devops
文章目录
- 项目地址
- 一、Azure Boards
- 1.1 Scrum 结构
- 1. 创建Epic
- 2. 创建features
- 3. 添加items
- 4. 总结
- 二、Pipeline
- 2.1 流程
- 1. Feature分支开发
- 2. PR合并到dev分支
- 3. CI/CD 部署到 Dev 环境(自动)
- 4. 发布准备
- 5. 提交生产版本(合并到 main 并打 Tag)
- 6. 部署到生产环境(CD)
- 7. 总结
- 2.2 一个完整的aks部署
项目地址
- 教程作者:
- 教程地址:
- 代码仓库地址:
- 所用到的框架和插件:
dbt
airflow
一、Azure Boards
1.1 Scrum 结构
1. 创建Epic
- Epic是核心业务模块名称,例如,用户管理,商品和类目管理,支付系统,后台管理,消息和通知服务
2. 创建features
- 添加feauture,需要关联Epic,feature主要是Epic下的功能,例如,在Epic是用户管理模块下,feature是 用户注册和登录,身份和权限认证,用户资料管理,用户角色管理
Epic: 用户与账户管理
├── Feature: 用户注册与登录
├── Feature: 用户资料管理
├── Feature: 地址管理
├── Feature: 权限与角色管理
├── Feature: 通知偏好设置
├── Feature: 第三方登录(可选)
├── Feature: 登录日志与安全审计
└── Feature: 实名认证(可选)
3. 添加items
- 添加一个feature下的items,这里举例feature是用户注册和登录功能
- 添加最小的item这里是
创建用户注册的api功能
,并且将该item连接到他的父类Feature下
3. 创建一个tasks, 在上面的页面下,添加新的links,为Child,例如创建用户注册api需要的table,需要的controller等
4. 创建多个tasks在一个item下
4. 总结
以上的任务一般是Devops团队或者Leader用来创建,作为开发只需要关注,Work Items下分配给自己的任务
二、Pipeline
2.1 流程
[Feature 分支开发]↓
[Pull Request ➜ develop 分支]↓ (自动 CI: 构建 + 单测 + 静态分析)
[合并 develop ➜ Dev 环境自动部署]↓
[功能验收后 ➜ 创建 release 分支]↓ (CI: 全流程 + 安全扫描 + E2E测试)
[合并 release ➜ main + tag ➜ 触发生产部署]↓
[生产环境部署 + 审批 + 蓝绿发布 + 监控]
1. Feature分支开发
- 从dev分支拉去代码到本地
- 进行本地开发和测试
- 完成后提交代码远程feature分支
2. PR合并到dev分支
- 创建pull request
- Review 通过后合并
- 自动触发CI:
①恢复依赖(dotnet restore/npm install)
②编译环境(dotnet build/npm run build)
③单元测试
④SonarQube 分析
3. CI/CD 部署到 Dev 环境(自动)
- YAML pipeline 检测到 develop 分支更新,自动触发
①构建发布包
②可选 Docker 镜像构建并推送 ACR
③部署至 Azure Dev 环境(App Service 或 AKS Dev 命名空间)
④环境变量通过 Azure Key Vault 注入
4. 发布准备
- 功能开发完成后,从 develop 创建 release 分支
- 触发完整 CI 流程:
①单元测试
②静态分析(Sonar)
③安全漏洞扫描(Snyk, CodeQL)
④集成测试
⑤E2E 自动化测试(Playwright / Selenium)
5. 提交生产版本(合并到 main 并打 Tag)
- 触发 main 分支生产部署流程
- CI 构建发布包 → 存入 Artifact
- 自动或手动部署 Production
- 启用审批流程(部署前审核)
支持:
蓝绿部署(App Service deployment slots)
滚动更新(AKS)
6. 部署到生产环境(CD)
- 审批通过后,部署至生产环境:
- 环境名称:Production
- 审批人:Tech Lead / PM
步骤:
恢复变量
应用 Key Vault 中的连接字符串等密钥
部署
可回滚上一个构建版本(Azure Pipelines 支持)
7. 总结
类型 | 工具 | 用途 |
---|---|---|
CI | Azure Pipelines / GitHub Actions | 编译、测试、发布 Artifact |
CD | Azure Release / multi-stage YAML | 多环境部署 |
静态分析 | SonarQube | C# / JS 代码规范和复杂度分析 |
安全扫描 | Snyk / CodeQL | 检测依赖和代码漏洞 |
Secret 管理 | Azure Key Vault | 安全存储数据库连接字符串等 |
基础设施 IaC | Terraform / Bicep | 管理 Redis、Cosmos、App Service |
测试 | MSTest / xUnit / Playwright | 单测、集成测试、E2E |
审批 | Azure DevOps Environments | 生产前手动批准发布 |
2.2 一个完整的aks部署
- 部署product服务到aks
trigger:branches:include:- dev- qa- uat- staging- prodresources:
- repo: selfvariables:- name: dockerRegistryServiceConnectionvalue: '525b95a9-e717-4679-b26e-222b52619223'- name: imageRepositoryvalue: 'products-microservice'- name: containerRegistryvalue: 'harshaecommerceregistry.azurecr.io'- name: dockerfilePathvalue: '$(Build.SourcesDirectory)/ProductsMicroService.API/Dockerfile'- name: tagvalue: '$(Build.BuildId)'- name: linuxImageName value: 'ubuntu-latest'- name: windowsImageNamevalue: 'windows-latest'- name: imageRepositoryvalue: products-microservice- name: aksClusterNamevalue: 'ecommerce-aks-cluster'- name: devAksServiceConnectionNamevalue: 'dev-ecommerce-aks-cluster-dev-1728475525366'- name: qaAksServiceConnectionNamevalue: 'qa-ecommerce-aks-cluster-qa-1728475742545'- name: uatAksServiceConnectionNamevalue: 'uat-ecommerce-aks-cluster-uat-1728475843682'- name: stagingAksServiceConnectionNamevalue: 'staging-ecommerce-aks-cluster-staging-1728475932481'- name: prodAksServiceConnectionNamevalue: 'prod-ecommerce-aks-cluster-prod-1728475982025'- name: devKubernetesNamespacevalue: 'dev'- name: qaKubernetesNamespacevalue: 'qa'- name: uatKubernetesNamespacevalue: 'uat'- name: stagingKubernetesNamespacevalue: 'staging'- name: prodKubernetesNamespacevalue: 'prod'stages:
- stage: BuilddisplayName: Build and push stagejobs:- job: BuilddisplayName: Docker Buildpool:vmImage: $(linuxImageName)steps:- task: Docker@2displayName: Build and push an image to container registryinputs:command: buildAndPushrepository: $(imageRepository)dockerfile: $(dockerfilePath)containerRegistry: $(dockerRegistryServiceConnection)tags: |$(tag)buildContext: $(Build.SourcesDirectory)- stage: TestdisplayName: Test and publish results stagejobs:- job: RunTestdisplayName: Run Unit testspool:vmImage: $(windowsImageName)steps:- checkout: selfdisplayName: Checkout source code- task: NuGetToolInstaller@1displayName: Install NuGetTool- task: NuGetCommand@2displayName: Restore NuGet Packagesinputs:command: 'restore'restoreSolution: '**/*.sln'- task: MSBuild@1displayName: Build solutioninputs:solution: '**/*.sln'msbuildArchitecture: 'x64'platform: 'Any CPU'configuration: 'Debug'- task: VSTest@3displayName: Test solutioninputs:testSelector: 'testAssemblies'testAssemblyVer2: |**\ProductsUnitTests.dll!**\*TestAdapter.dll!**\obj\**searchFolder: '$(System.DefaultWorkingDirectory)'runTestsInIsolation: truecodeCoverageEnabled: true- stage: DeployToDevdisplayName: Deploy to DevdependsOn: Testcondition: and(succeeded('Build'), eq(variables['Build.SourceBranch'], 'refs/heads/dev'))jobs:- deployment: DeploymentToDevdisplayName: Deployment to Dev Environmentenvironment: devstrategy:runOnce:deploy:steps:- checkout: selfdisplayName: Checkout source code- script: |echo "Listing contents of k8s"ls -l $(Build.SourcesDirectory)/k8s/devdisplayName: 'List Files in k8s/dev Directory'- script: |find $(Build.SourcesDirectory)/k8s/dev -type f \( -name "*.yaml" -o -name "*.yml" \) -exec sed -i 's/__TAG__/$(tag)/g' {} +displayName: 'Replace image tag in all deployment files'- task: Kubernetes@1displayName: Deploy to dev namespace in kubernetesinputs:kubernetesServiceEndpoint: $(devAksServiceConnectionName)kubernetesCluster: $(aksClusterName)namespace: $(devKubernetesNamespace)command: applyarguments: '-f $(Build.SourcesDirectory)/k8s/dev/.'- stage: DeployToQAdisplayName: Deploy to QAdependsOn: Testcondition: and(succeeded('Build'), eq(variables['Build.SourceBranch'], 'refs/heads/qa'))jobs:- deployment: DeploymentToQAdisplayName: Deployment to QA Environmentenvironment: qastrategy:runOnce:deploy:steps:- checkout: selfdisplayName: Checkout source code- script: |echo "Listing contents of k8s"ls -l $(Build.SourcesDirectory)/k8s/qadisplayName: 'List Files in k8s/qa Directory'- script: |find $(Build.SourcesDirectory)/k8s/qa -type f \( -name "*.yaml" -o -name "*.yml" \) -exec sed -i 's/__TAG__/$(tag)/g' {} +displayName: 'Replace image tag in all deployment files'- task: Kubernetes@1displayName: Deploy to qa namespace in kubernetesinputs:kubernetesServiceEndpoint: $(qaAksServiceConnectionName)kubernetesCluster: $(aksClusterName)namespace: $(qaKubernetesNamespace)command: applyarguments: '-f $(Build.SourcesDirectory)/k8s/qa/.'- stage: DeployToUATdisplayName: Deploy to UATdependsOn: Testcondition: and(succeeded('Build'), eq(variables['Build.SourceBranch'], 'refs/heads/uat'))jobs:- deployment: DeploymentToUATdisplayName: Deployment to UAT Environmentenvironment: uatstrategy:runOnce:deploy:steps:- checkout: selfdisplayName: Checkout source code- script: |echo "Listing contents of k8s"ls -l $(Build.SourcesDirectory)/k8s/uatdisplayName: 'List Files in k8s/uat Directory'- script: |find $(Build.SourcesDirectory)/k8s/uat -type f \( -name "*.yaml" -o -name "*.yml" \) -exec sed -i 's/__TAG__/$(tag)/g' {} +displayName: 'Replace image tag in all deployment files'- task: Kubernetes@1displayName: Deploy to uat namespace in kubernetesinputs:kubernetesServiceEndpoint: $(uatAksServiceConnectionName)kubernetesCluster: $(aksClusterName)namespace: $(uatKubernetesNamespace)command: applyarguments: '-f $(Build.SourcesDirectory)/k8s/uat/.'- stage: DeployToStagingdisplayName: Deploy to StagingdependsOn: Testcondition: and(succeeded('Build'), eq(variables['Build.SourceBranch'], 'refs/heads/staging'))jobs:- deployment: DeploymentToStagingdisplayName: Deployment to Staging Environmentenvironment: stagingstrategy:runOnce:deploy:steps:- checkout: selfdisplayName: Checkout source code- script: |echo "Listing contents of k8s"ls -l $(Build.SourcesDirectory)/k8s/stagingdisplayName: 'List Files in k8s/staging Directory'- script: |find $(Build.SourcesDirectory)/k8s/staging -type f \( -name "*.yaml" -o -name "*.yml" \) -exec sed -i 's/__TAG__/$(tag)/g' {} +displayName: 'Replace image tag in all deployment files'- task: Kubernetes@1displayName: Deploy to staging namespace in kubernetesinputs:kubernetesServiceEndpoint: $(stagingAksServiceConnectionName)kubernetesCluster: $(aksClusterName)namespace: $(stagingKubernetesNamespace)command: applyarguments: '-f $(Build.SourcesDirectory)/k8s/staging/.'- stage: DeployToProductiondisplayName: Deploy to ProductiondependsOn: Testcondition: and(succeeded('Build'), eq(variables['Build.SourceBranch'], 'refs/heads/prod'))jobs:- deployment: DeploymentToProductiondisplayName: Deployment to Production Environmentenvironment: prodstrategy:runOnce:deploy:steps:- checkout: selfdisplayName: Checkout source code- script: |echo "Listing contents of k8s"ls -l $(Build.SourcesDirectory)/k8s/proddisplayName: 'List Files in k8s/prod Directory'- script: |find $(Build.SourcesDirectory)/k8s/prod -type f \( -name "*.yaml" -o -name "*.yml" \) -exec sed -i 's/__TAG__/$(tag)/g' {} +displayName: 'Replace image tag in all deployment files'- task: Kubernetes@1displayName: Deploy to prod namespace in kubernetesinputs:kubernetesServiceEndpoint: $(prodAksServiceConnectionName)kubernetesCluster: $(aksClusterName)namespace: $(prodKubernetesNamespace)command: applyarguments: '-f $(Build.SourcesDirectory)/k8s/prod/.'