Some checks failed
Build & Deploy KLZ Cables / deploy (push) Has been cancelled
155 lines
5.7 KiB
YAML
155 lines
5.7 KiB
YAML
name: Build & Deploy KLZ Cables
|
|
|
|
on:
|
|
push:
|
|
branches:
|
|
- main
|
|
|
|
jobs:
|
|
deploy:
|
|
runs-on: docker
|
|
|
|
steps:
|
|
- name: Checkout repo
|
|
uses: actions/checkout@v3
|
|
|
|
- name: Install tools
|
|
run: |
|
|
apt-get update
|
|
apt-get install -y \
|
|
docker.io \
|
|
openssh-client \
|
|
rsync
|
|
|
|
- name: Login to registry
|
|
env:
|
|
REGISTRY_USER: ${{ secrets.REGISTRY_USER }}
|
|
REGISTRY_PASS: ${{ secrets.REGISTRY_PASS }}
|
|
run: |
|
|
echo "$REGISTRY_PASS" | DOCKER_API_VERSION=1.44 docker login registry.infra.mintel.me -u "$REGISTRY_USER" --password-stdin
|
|
|
|
- name: Build image
|
|
run: |
|
|
DOCKER_API_VERSION=1.44 docker build \
|
|
--pull \
|
|
--build-arg NEXT_PUBLIC_UMAMI_WEBSITE_ID=${{ secrets.NEXT_PUBLIC_UMAMI_WEBSITE_ID }} \
|
|
--build-arg NEXT_PUBLIC_UMAMI_SCRIPT_URL=${{ secrets.NEXT_PUBLIC_UMAMI_SCRIPT_URL }} \
|
|
--build-arg NEXT_PUBLIC_SENTRY_DSN=${{ secrets.SENTRY_DSN }} \
|
|
-t registry.infra.mintel.me/mintel/klz-cables.com:latest .
|
|
|
|
- name: Push image
|
|
run: DOCKER_API_VERSION=1.44 docker push registry.infra.mintel.me/mintel/klz-cables.com:latest
|
|
|
|
- name: Setup SSH
|
|
run: |
|
|
mkdir -p ~/.ssh
|
|
printf "%s\n" "${{ secrets.ALPHA_SSH_KEY }}" > ~/.ssh/id_ed25519
|
|
chmod 600 ~/.ssh/id_ed25519
|
|
ssh-keyscan -H alpha.mintel.me >> ~/.ssh/known_hosts
|
|
|
|
- name: Prepare and Deploy
|
|
env:
|
|
REGISTRY_USER: ${{ secrets.REGISTRY_USER }}
|
|
REGISTRY_PASS: ${{ secrets.REGISTRY_PASS }}
|
|
NEXT_PUBLIC_UMAMI_WEBSITE_ID: ${{ secrets.NEXT_PUBLIC_UMAMI_WEBSITE_ID }}
|
|
NEXT_PUBLIC_UMAMI_SCRIPT_URL: ${{ secrets.NEXT_PUBLIC_UMAMI_SCRIPT_URL }}
|
|
SENTRY_DSN: ${{ secrets.SENTRY_DSN }}
|
|
REDIS_URL: ${{ secrets.REDIS_URL }}
|
|
REDIS_KEY_PREFIX: ${{ secrets.REDIS_KEY_PREFIX }}
|
|
run: |
|
|
echo "Preparing deployment files..."
|
|
|
|
COMPOSE_FILE=""
|
|
if [ -f "docker-compose.yml" ]; then
|
|
COMPOSE_FILE="docker-compose.yml"
|
|
elif [ -f "docker-compose.yaml" ]; then
|
|
COMPOSE_FILE="docker-compose.yaml"
|
|
else
|
|
echo "ERROR: No docker-compose file found!"
|
|
exit 1
|
|
fi
|
|
|
|
# Create a temporary directory for all files to sync
|
|
mkdir -p /tmp/klz-deploy
|
|
cp "$COMPOSE_FILE" /tmp/klz-deploy/docker-compose.yml
|
|
|
|
if [ -d "varnish" ]; then
|
|
cp -r varnish /tmp/klz-deploy/
|
|
fi
|
|
|
|
# Create environment file
|
|
cat > /tmp/klz-deploy/deploy.env << EOF
|
|
export REGISTRY_USER='${REGISTRY_USER}'
|
|
export REGISTRY_PASS='${REGISTRY_PASS}'
|
|
export NEXT_PUBLIC_UMAMI_WEBSITE_ID='${NEXT_PUBLIC_UMAMI_WEBSITE_ID}'
|
|
export NEXT_PUBLIC_UMAMI_SCRIPT_URL='${NEXT_PUBLIC_UMAMI_SCRIPT_URL}'
|
|
export SENTRY_DSN='${SENTRY_DSN}'
|
|
export REDIS_URL='${REDIS_URL}'
|
|
export REDIS_KEY_PREFIX='${REDIS_KEY_PREFIX}'
|
|
EOF
|
|
|
|
# Create deployment script
|
|
cat > /tmp/klz-deploy/deploy.sh << 'DEPLOY_EOF'
|
|
#!/bin/bash
|
|
set -e
|
|
|
|
# Load environment variables
|
|
source ./deploy.env
|
|
|
|
echo '=== Starting deployment ==='
|
|
|
|
echo '=== Creating .env ==='
|
|
cat > .env << EOF
|
|
NEXT_PUBLIC_UMAMI_WEBSITE_ID=${NEXT_PUBLIC_UMAMI_WEBSITE_ID}
|
|
NEXT_PUBLIC_UMAMI_SCRIPT_URL=${NEXT_PUBLIC_UMAMI_SCRIPT_URL}
|
|
SENTRY_DSN=${SENTRY_DSN}
|
|
REDIS_URL=${REDIS_URL}
|
|
REDIS_KEY_PREFIX=${REDIS_KEY_PREFIX}
|
|
EOF
|
|
|
|
echo '=== Logging into Docker registry ==='
|
|
echo "${REGISTRY_PASS}" | docker login registry.infra.mintel.me -u "${REGISTRY_USER}" --password-stdin
|
|
|
|
echo '=== Checking if infra network exists ==='
|
|
if ! docker network inspect infra >/dev/null 2>&1; then
|
|
echo 'Creating infra network...'
|
|
docker network create infra || true
|
|
fi
|
|
|
|
echo '=== Pulling latest image ==='
|
|
# Explicitly pull the image to ensure we get the latest version
|
|
docker pull registry.infra.mintel.me/mintel/klz-cables.com:latest
|
|
docker compose pull
|
|
|
|
echo '=== Restarting containers ==='
|
|
# Use --force-recreate to ensure containers are updated even if compose thinks they are up to date
|
|
docker compose up -d --force-recreate --remove-orphans
|
|
|
|
echo '=== Waiting for containers (30s) ==='
|
|
sleep 30
|
|
|
|
echo '=== Verifying health ==='
|
|
if curl -f -s http://localhost:80/health > /dev/null 2>&1; then
|
|
echo '✓ Application health check passed'
|
|
else
|
|
echo '✗ Application health check failed'
|
|
docker compose logs --tail=50 app
|
|
exit 1
|
|
fi
|
|
|
|
echo '=== Cleaning up ==='
|
|
docker image prune -f --filter 'until=24h'
|
|
echo '=== Deployment completed successfully ==='
|
|
DEPLOY_EOF
|
|
|
|
chmod +x /tmp/klz-deploy/deploy.sh
|
|
|
|
echo "Syncing and executing on server..."
|
|
# Use a single SSH connection to sync and execute
|
|
# We use tar to bundle everything and pipe it to SSH
|
|
# We use the same SSH options that worked in the previous Sync step
|
|
tar czf - -C /tmp/klz-deploy . | \
|
|
ssh -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no -o IPQoS=0x00 deploy@alpha.mintel.me \
|
|
"mkdir -p /home/deploy/sites/klz-cables.com/ && tar xzf - -C /home/deploy/sites/klz-cables.com/ && cd /home/deploy/sites/klz-cables.com/ && bash ./deploy.sh"
|
|
|
|
echo "Deployment process finished" |