Server: - Add a --cache-path allowlist so a server can be limited to the caches it is meant to purge, defaulting to any path as before. - Set socket permissions explicitly (--socket-mode, default 0660) instead of inheriting the service manager's umask, which left the socket unreachable. - Refuse to remove a socket another instance is still serving. - Read keys both raw and decoded, so keys nginx stored with escapes and keys a caller escaped by hand both purge. - Add an exact= parameter for literal keys containing glob punctuation. - Report purge failures as 500 rather than 502, and send error bodies through http.Error so a failure is not reported as a successful purge. - Graceful shutdown with systemd readiness notification. Purge: - Group purge arguments into PurgeRequest and report the number of entries removed. - Compile exclude globs once, and fail the purge when one is invalid rather than purging the keys it was meant to keep. - Cap header scanning and tolerate entries nginx evicts mid-walk. - Switch to filepath.WalkDir to avoid an Lstat per cache file. New: - service command to install, start, stop, and remove the system service. - service install takes --cache-path, writing the allowlist into the unit it installs, so an installed service is restricted from its first start. - Makefile, VERSION, and build identifiers stamped via ldflags. - Tests for the server handler and the service command. Build: - Update to Go 1.25, kong v1, GoReleaser v2, and current GitHub Actions. - Add vet and test steps to CI. - Rename purgeCmd.go/serverCmd.go to Go's file naming convention. Bump version to 0.2.0.
39 lines
1.1 KiB
Makefile
39 lines
1.1 KiB
Makefile
BINARY := nginx-cache-purge
|
|
# The build identifiers live in package main, so ldflags target it directly
|
|
# rather than an imported configuration package.
|
|
PACKAGE := main
|
|
# VERSION is the single source of truth for the version string. COMMIT and DATE
|
|
# are derived from git and the build clock.
|
|
VERSION ?= $(shell cat VERSION 2>/dev/null || echo dev)
|
|
COMMIT := $(shell git rev-parse --short HEAD 2>/dev/null)
|
|
DATE := $(shell date -u '+%Y-%m-%dT%H:%M:%SZ')
|
|
LDFLAGS := -s -w -X $(PACKAGE).Version=$(VERSION) -X $(PACKAGE).Commit=$(COMMIT) -X $(PACKAGE).Date=$(DATE)
|
|
|
|
.PHONY: all build test vet fmt snapshot release clean
|
|
|
|
all: build
|
|
|
|
## build: native static binary into dist/
|
|
build:
|
|
CGO_ENABLED=0 go build -trimpath -ldflags '$(LDFLAGS)' -o dist/$(BINARY) .
|
|
|
|
## test: run the unit tests
|
|
test:
|
|
go test ./...
|
|
|
|
vet:
|
|
go vet ./...
|
|
|
|
fmt:
|
|
gofmt -w .
|
|
|
|
## snapshot: local GoReleaser build without publishing (artifacts in dist/)
|
|
snapshot:
|
|
goreleaser release --snapshot --clean
|
|
|
|
## release: full GoReleaser release (CI runs this on a tag)
|
|
release:
|
|
goreleaser release --clean
|
|
|
|
clean:
|
|
rm -rf dist
|