-
Notifications
You must be signed in to change notification settings - Fork 0
83 lines (67 loc) · 2.52 KB
/
Copy pathcicd.yaml
File metadata and controls
83 lines (67 loc) · 2.52 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
name: Docker Build and Push
on:
push:
branches:
- main
- develop
- feat/env
pull_request:
branches:
- main
- feat/env
env:
IMAGE_NAME: ${{ secrets.DOCKER_USERNAME }}/front
IMAGE_TAG: latest
jobs:
build-and-push:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- name: Docker Hub Login
uses: docker/login-action@v3
with:
username: ${{ secrets.DOCKER_USERNAME }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Build and Push Image
run: |
docker build \
--build-arg NEXT_PUBLIC_API_URL=${{ secrets.NEXT_PUBLIC_API_URL }} \
--build-arg NEXT_PUBLIC_SOCKET_URL=${{ secrets.NEXT_PUBLIC_SOCKET_URL }} \
--build-arg NEXT_PUBLIC_AWS_REGION=${{ secrets.AWS_REGION }} \
--build-arg NEXT_PUBLIC_AWS_ACCESS_KEY_ID=${{ secrets.AWS_ACCESS_KEY_ID }} \
--build-arg NEXT_PUBLIC_AWS_SECRET_ACCESS_KEY=${{ secrets.AWS_SECRET_ACCESS_KEY }} \
--build-arg NEXT_PUBLIC_AWS_S3_BUCKET=${{ secrets.AWS_S3_BUCKET }} \
--build-arg NEXT_PUBLIC_CLOUDFRONT_DOMAIN=${{ secrets.CLOUDFRONT_DOMAIN }} \
-t $IMAGE_NAME:$IMAGE_TAG .
docker push $IMAGE_NAME:$IMAGE_TAG
deploy:
needs: build-and-push
runs-on: ubuntu-latest
steps:
- name: Set up SSH
uses: webfactory/ssh-agent@v0.9.0
with:
ssh-private-key: ${{ secrets.SSH_PRIVATE_KEY }}
- name: Add known_hosts
run: |
mkdir -p ~/.ssh
ssh-keyscan -H ${{ secrets.SERVER_HOST }} >> ~/.ssh/known_hosts
- name: Deploy to EC2
run: |
ssh ${{ secrets.SERVER_USER }}@${{ secrets.SERVER_HOST }} 'bash -s' <<EOF
set -e
DOCKER_USERNAME=${{ secrets.DOCKER_USERNAME }}
DOCKER_TOKEN=${{ secrets.DOCKER_TOKEN }}
IMAGE_NAME=\$DOCKER_USERNAME/front:latest
echo ">>> Docker Hub login"
echo "\$DOCKER_TOKEN" | docker login -u "\$DOCKER_USERNAME" --password-stdin
echo ">>> Pull latest image: \$IMAGE_NAME"
docker pull "\$IMAGE_NAME"
echo ">>> Move to app directory"
mkdir -p /home/${{ secrets.SERVER_USER }}/app
echo ">>> docker compose down (if exists)"
docker compose /home/${{ secrets.SERVER_USER }}/app/docker-compose.yml down || true
echo ">>> docker compose up -d"
docker compose /home/${{ secrets.SERVER_USER }}/app/docker-compose.yml up -d
echo ">>> Deployed!"
EOF