|
3 | 3 | name: Deploy to production |
4 | 4 |
|
5 | 5 | on: |
6 | | - push: |
7 | | - branches: |
8 | | - - main |
9 | | - workflow_dispatch: |
| 6 | + push: |
| 7 | + branches: |
| 8 | + - main |
| 9 | + workflow_dispatch: |
10 | 10 |
|
11 | 11 | permissions: |
12 | | - id-token: write |
13 | | - contents: read |
14 | | - deployments: write |
15 | | - pull-requests: write |
| 12 | + id-token: write |
| 13 | + contents: read |
| 14 | + deployments: write |
| 15 | + pull-requests: write |
16 | 16 |
|
17 | 17 | concurrency: |
18 | | - group: ${{ github.workflow }}-${{ github.ref }} |
19 | | - cancel-in-progress: true |
| 18 | + group: ${{ github.workflow }}-${{ github.ref }} |
| 19 | + cancel-in-progress: true |
20 | 20 |
|
21 | 21 | env: |
22 | | - AWS_ACCESS_KEY_ID: ${{ secrets.AWS_ACCESS_KEY_ID }} |
23 | | - AWS_SECRET_ACCESS_KEY: ${{ secrets.AWS_SECRET_ACCESS_KEY }} |
24 | | - DATABASE_URL: ${{ secrets.PROD_DB_URL }} |
25 | | - # OIDC Configuration |
26 | | - OIDC_CLIENT_ID: ${{ secrets.OIDC_CLIENT_ID }} |
27 | | - OIDC_ISSUER_URL: ${{ secrets.OIDC_ISSUER_URL }} |
| 22 | + AWS_ACCESS_KEY_ID: ${{ secrets.AWS_ACCESS_KEY_ID }} |
| 23 | + AWS_SECRET_ACCESS_KEY: ${{ secrets.AWS_SECRET_ACCESS_KEY }} |
| 24 | + DATABASE_URL: ${{ secrets.PROD_DB_URL }} |
| 25 | + # OIDC Configuration |
| 26 | + OIDC_CLIENT_ID: ${{ secrets.OIDC_CLIENT_ID }} |
| 27 | + OIDC_ISSUER_URL: ${{ secrets.OIDC_ISSUER_URL }} |
28 | 28 |
|
29 | 29 | jobs: |
30 | | - deploy: |
31 | | - runs-on: ubuntu-latest |
| 30 | + deploy: |
| 31 | + runs-on: ubuntu-latest |
32 | 32 |
|
33 | | - environment: |
34 | | - name: production |
35 | | - url: https://zotmeet.com |
| 33 | + environment: |
| 34 | + name: production |
| 35 | + url: https://zotmeet.com |
36 | 36 |
|
37 | | - steps: |
38 | | - - name: Checkout repository |
39 | | - uses: actions/checkout@v4 |
| 37 | + steps: |
| 38 | + - name: Checkout repository |
| 39 | + uses: actions/checkout@v4 |
40 | 40 |
|
41 | | - - name: Setup Node.js and pnpm |
42 | | - uses: ./.github/actions/setup-node-and-pnpm |
| 41 | + - name: Setup Node.js and pnpm |
| 42 | + uses: ./.github/actions/setup-node-and-pnpm |
43 | 43 |
|
44 | | - - name: Install dependencies |
45 | | - run: pnpm install --frozen-lockfile |
| 44 | + - name: Install dependencies |
| 45 | + run: pnpm install --frozen-lockfile |
46 | 46 |
|
47 | | - - name: Migrate database |
48 | | - run: pnpm db:migrate |
| 47 | + - name: Migrate database |
| 48 | + run: pnpm db:migrate |
49 | 49 |
|
50 | | - - name: Deploy to production |
51 | | - run: STAGE=prod pnpm sst deploy --stage production |
| 50 | + # TODO (@KevinWu098): Remove this stage once SST fixes compat with Pulumi |
| 51 | + # https://github.com/anomalyco/sst/issues/6314 |
| 52 | + - name: Setup Pulumi |
| 53 | + uses: pulumi/actions@v5 |
| 54 | + with: |
| 55 | + pulumi-version: 3.138.0 # Any version < 3.214.0 works |
| 56 | + |
| 57 | + - name: Deploy to production |
| 58 | + run: STAGE=prod pnpm sst deploy --stage production |
0 commit comments