name: Build & Deploy KLZ Cables on: push: branches: - main jobs: deploy: runs-on: docker steps: - name: Checkout repo uses: actions/checkout@v3 - name: Install tools run: | apt-get update apt-get install -y docker.io openssh-client - name: Login to registry env: REGISTRY_USER: ${{ secrets.REGISTRY_USER }} REGISTRY_PASS: ${{ secrets.REGISTRY_PASS }} run: | echo "$REGISTRY_PASS" | docker login registry.infra.mintel.me -u "$REGISTRY_USER" --password-stdin - name: Build image run: | docker build \ --pull \ --build-arg NEXT_PUBLIC_UMAMI_WEBSITE_ID=${{ secrets.NEXT_PUBLIC_UMAMI_WEBSITE_ID }} \ --build-arg NEXT_PUBLIC_UMAMI_SCRIPT_URL=${{ secrets.NEXT_PUBLIC_UMAMI_SCRIPT_URL }} \ --build-arg NEXT_PUBLIC_SENTRY_DSN=${{ secrets.SENTRY_DSN }} \ -t registry.infra.mintel.me/mintel/klz-cables.com:latest . - name: Push image run: docker push registry.infra.mintel.me/mintel/klz-cables.com:latest - name: Setup SSH run: | mkdir -p ~/.ssh printf "%s\n" "${{ secrets.ALPHA_SSH_KEY }}" > ~/.ssh/id_ed25519 chmod 600 ~/.ssh/id_ed25519 ssh-keyscan -H alpha.mintel.me >> ~/.ssh/known_hosts - name: Sync files to server run: | ssh -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no deploy@alpha.mintel.me \ "mkdir -p /home/deploy/sites/klz-cables.com && chmod 775 /home/deploy/sites/klz-cables.com" scp -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no \ docker-compose.yml \ deploy@alpha.mintel.me:/home/deploy/sites/klz-cables.com/docker-compose.yml # varnish optional if [ -d "./varnish" ]; then scp -r -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no \ varnish/ deploy@alpha.mintel.me:/home/deploy/sites/klz-cables.com/ fi # Rechte-Check + Nachweis im Log ssh -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no deploy@alpha.mintel.me \ "chmod 664 /home/deploy/sites/klz-cables.com/docker-compose.yml && \ ls -la /home/deploy/sites/klz-cables.com/ && \ stat /home/deploy/sites/klz-cables.com/docker-compose.yml" - name: Deploy on server env: REGISTRY_USER: ${{ secrets.REGISTRY_USER }} REGISTRY_PASS: ${{ secrets.REGISTRY_PASS }} run: | ssh -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no deploy@alpha.mintel.me " set -e echo '$REGISTRY_PASS' | docker login registry.infra.mintel.me -u '$REGISTRY_USER' --password-stdin cd /home/deploy/sites/klz-cables.com echo 'SENTRY_DSN=${{ secrets.SENTRY_DSN }}' > .env docker compose pull app docker compose up -d --force-recreate app docker image prune -f --filter 'until=24h' docker compose ps app docker compose logs --tail=20 app "