-
Notifications
You must be signed in to change notification settings - Fork 7
86 lines (71 loc) · 3.02 KB
/
Copy pathprod-deploy.yml
File metadata and controls
86 lines (71 loc) · 3.02 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
name: 'PROD: Deploy'
run-name: PROD - Deploy
on:
workflow_dispatch:
jobs:
deploy:
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@v4
- name: Setup Node.js
uses: actions/setup-node@v4
with:
node-version: '22'
cache: 'npm'
- name: Install dependencies
run: sudo npm install
- name: Create .env file
env:
ENV_FILE_CONTENT: ${{ secrets.PROD_ENV_FILE_CONTENT }}
run: |
echo "$ENV_FILE_CONTENT" > .env
echo ".env file created successfully!"
- name: Build project
run: sudo npm run build
- name: Copy build to server
env:
PRIVATE_KEY: ${{ secrets.PROD_SERVER_SSH_PRIVATE_KEY }}
HOST: ${{ secrets.PROD_SERVER_HOST }}
USER: ${{ secrets.PROD_SERVER_USER }}
PORT: ${{ secrets.PROD_SERVER_SSH_PORT }}
run: |
# Setup SSH key
echo "$PRIVATE_KEY" > private_key.pem
chmod 600 private_key.pem
# Create compressed archive of build folder
echo "Creating compressed archive..."
tar -czf build.tar.gz -C build .
ls -lh build.tar.gz
# Create target directory if it doesn't exist
ssh -p $PORT -i private_key.pem -o StrictHostKeyChecking=no -o UserKnownHostsFile=/dev/null $USER@$HOST "
mkdir -p /opt/apps/smyth-docs/build
"
# Transfer compressed file to server
echo "Transferring compressed file..."
scp -P $PORT -i private_key.pem -o StrictHostKeyChecking=no -o UserKnownHostsFile=/dev/null build.tar.gz $USER@$HOST:/tmp/build.tar.gz
# Upload .env file to server for inspection (comment out after use)
echo "Uploading .env file..."
scp -P $PORT -i private_key.pem -o StrictHostKeyChecking=no -o UserKnownHostsFile=/dev/null .env $USER@$HOST:/tmp/.env
# Extract and move files on server
echo "Extracting files on server..."
ssh -p $PORT -i private_key.pem -o StrictHostKeyChecking=no -o UserKnownHostsFile=/dev/null $USER@$HOST "
rm -rf /opt/apps/smyth-docs/build/*
cd /opt/apps/smyth-docs/build
tar -xzf /tmp/build.tar.gz
rm -f /tmp/build.tar.gz
"
# Cleanup
rm -f private_key.pem build.tar.gz
echo "Build copied to server successfully!"
- name: Run deploy script
env:
PRIVATE_KEY: ${{ secrets.PROD_SERVER_SSH_PRIVATE_KEY }}
HOST: ${{ secrets.PROD_SERVER_HOST }}
USER: ${{ secrets.PROD_SERVER_USER }}
PORT: ${{ secrets.PROD_SERVER_SSH_PORT }}
run: |
echo "$PRIVATE_KEY" > private_key.pem
chmod 600 private_key.pem
ssh -p $PORT -i private_key.pem -o StrictHostKeyChecking=no -o UserKnownHostsFile=/dev/null $USER@$HOST "/opt/git/smyth-docs/deploy-docs.sh smyth-docs origin/main"
rm -f private_key.pem