103 lines
3.5 KiB
YAML
103 lines
3.5 KiB
YAML
name: Build & Deploy
|
|
|
|
on:
|
|
push:
|
|
branches:
|
|
- main
|
|
|
|
jobs:
|
|
deploy:
|
|
runs-on: docker
|
|
|
|
steps:
|
|
# --- Checkout ---
|
|
- name: Checkout repo
|
|
uses: actions/checkout@v3
|
|
|
|
# --- Tools ---
|
|
- name: Install tools
|
|
run: |
|
|
apt-get update
|
|
apt-get install -y \
|
|
docker.io \
|
|
openssh-client \
|
|
rsync
|
|
|
|
# --- Docker registry login ---
|
|
- name: Login to registry
|
|
env:
|
|
REGISTRY_USER: ${{ secrets.REGISTRY_USER }}
|
|
REGISTRY_PASS: ${{ secrets.REGISTRY_PASS }}
|
|
run: |
|
|
echo "$REGISTRY_PASS" | docker login registry.infra.mintel.me \
|
|
-u "$REGISTRY_USER" \
|
|
--password-stdin
|
|
|
|
# --- Build image ---
|
|
- name: Build image
|
|
run: |
|
|
docker build \
|
|
--pull \
|
|
--build-arg NEXT_PUBLIC_UMAMI_WEBSITE_ID=${{ secrets.NEXT_PUBLIC_UMAMI_WEBSITE_ID }} \
|
|
--build-arg NEXT_PUBLIC_UMAMI_SCRIPT_URL=${{ secrets.NEXT_PUBLIC_UMAMI_SCRIPT_URL }} \
|
|
--build-arg NEXT_PUBLIC_SENTRY_DSN=${{ secrets.SENTRY_DSN }} \
|
|
-t registry.infra.mintel.me/mintel/mb-grid-solutions.com:latest .
|
|
|
|
# --- Push image ---
|
|
- name: Push image
|
|
run: |
|
|
docker push registry.infra.mintel.me/mintel/mb-grid-solutions.com:latest
|
|
|
|
# --- SSH setup ---
|
|
- name: Setup SSH
|
|
run: |
|
|
mkdir -p ~/.ssh
|
|
printf "%s\n" "${{ secrets.ALPHA_SSH_KEY }}" > ~/.ssh/id_ed25519
|
|
chmod 600 ~/.ssh/id_ed25519
|
|
ssh-keyscan -H alpha.mintel.me >> ~/.ssh/known_hosts
|
|
|
|
# --- Sync files ---
|
|
- name: Sync files to server
|
|
run: |
|
|
# Use tar to bundle files and send them via SSH in a single connection
|
|
tar czf - docker-compose.yaml | \
|
|
ssh -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no -o IPQoS=0x00 deploy@alpha.mintel.me \
|
|
"mkdir -p /home/deploy/sites/mb-grid-solutions.com/ && tar xzf - -C /home/deploy/sites/mb-grid-solutions.com/"
|
|
|
|
# --- Deploy ---
|
|
- name: Deploy on server
|
|
env:
|
|
REGISTRY_USER: ${{ secrets.REGISTRY_USER }}
|
|
REGISTRY_PASS: ${{ secrets.REGISTRY_PASS }}
|
|
run: |
|
|
ssh -i ~/.ssh/id_ed25519 -o StrictHostKeyChecking=no -o IPQoS=0x00 deploy@alpha.mintel.me "
|
|
set -e
|
|
|
|
echo 'Logging in to registry on server...'
|
|
echo '$REGISTRY_PASS' | docker login registry.infra.mintel.me -u '$REGISTRY_USER' --password-stdin
|
|
|
|
cd /home/deploy/sites/mb-grid-solutions.com
|
|
|
|
echo 'Creating .env if needed...'
|
|
echo 'SENTRY_DSN=${{ secrets.SENTRY_DSN }}' > .env
|
|
echo 'SMTP_HOST=${{ secrets.SMTP_HOST }}' >> .env
|
|
echo 'SMTP_PORT=${{ secrets.SMTP_PORT }}' >> .env
|
|
echo 'SMTP_USER=${{ secrets.SMTP_USER }}' >> .env
|
|
echo 'SMTP_PASS=${{ secrets.SMTP_PASS }}' >> .env
|
|
echo 'SMTP_FROM=${{ secrets.SMTP_FROM }}' >> .env
|
|
echo 'CONTACT_RECIPIENT=${{ secrets.CONTACT_RECIPIENT }}' >> .env
|
|
|
|
echo 'Pulling latest image...'
|
|
docker compose pull app || echo 'Pull failed - continuing anyway...'
|
|
|
|
echo 'Force recreating and restarting app container...'
|
|
docker compose up -d --force-recreate --no-deps app
|
|
|
|
echo 'Pruning old images (keep last 24h)...'
|
|
docker image prune -f --filter 'until=24h'
|
|
|
|
echo 'Deployment finished. Checking status...'
|
|
docker compose ps app
|
|
docker compose logs --tail=20 app
|
|
"
|