ajustes
This commit is contained in:
parent
9c720c2bf7
commit
aaa31ae804
1 changed files with 32 additions and 61 deletions
|
|
@ -10,87 +10,57 @@ jobs:
|
||||||
build-and-push:
|
build-and-push:
|
||||||
runs-on: docker-ready
|
runs-on: docker-ready
|
||||||
env:
|
env:
|
||||||
DOCKER_API_VERSION: "1.43"
|
|
||||||
REGISTRY: pipe.gohorsejobs.com
|
REGISTRY: pipe.gohorsejobs.com
|
||||||
defaults:
|
|
||||||
run:
|
|
||||||
shell: sh
|
|
||||||
steps:
|
steps:
|
||||||
- name: Install Dependencies
|
- name: Install Dependencies
|
||||||
run: |
|
run: |
|
||||||
sed -i 's/dl-cdn.alpinelinux.org/mirror.leaseweb.com/g' /etc/apk/repositories
|
sed -i 's/dl-cdn.alpinelinux.org/mirror.leaseweb.com/g' /etc/apk/repositories
|
||||||
apk add --no-cache git docker-cli docker-cli-buildx nodejs
|
apk add --no-cache git docker-cli docker-cli-buildx
|
||||||
|
|
||||||
- name: Checkout code
|
- name: Checkout code
|
||||||
uses: actions/checkout@v4
|
uses: actions/checkout@v4
|
||||||
with:
|
with:
|
||||||
fetch-depth: 1
|
fetch-depth: 1
|
||||||
|
|
||||||
# --- BACKEND ---
|
# Autenticação Definitiva (Gera o config.json da forma correta)
|
||||||
- name: Build Backend
|
- name: Login to Forgejo Registry
|
||||||
|
uses: docker/login-action@v3
|
||||||
|
with:
|
||||||
|
registry: ${{ env.REGISTRY }}
|
||||||
|
username: bohessefm
|
||||||
|
password: ${{ secrets.FORGEJO_TOKEN }}
|
||||||
|
|
||||||
|
# Build e Push do Backend (O push: true aqui é muito mais estável que o comando manual)
|
||||||
|
- name: Build and Push Backend
|
||||||
uses: docker/build-push-action@v5
|
uses: docker/build-push-action@v5
|
||||||
with:
|
with:
|
||||||
context: ./backend
|
context: ./backend
|
||||||
file: ./backend/Dockerfile
|
file: ./backend/Dockerfile
|
||||||
load: true
|
push: true
|
||||||
provenance: false
|
provenance: false
|
||||||
tags: ${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }}
|
tags: |
|
||||||
|
${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }}
|
||||||
|
${{ env.REGISTRY }}/bohessefm/gohorsejobs:latest
|
||||||
|
|
||||||
- name: Push Backend (Forced Auth)
|
# Build e Push do Backoffice
|
||||||
run: |
|
- name: Build and Push Backoffice
|
||||||
docker tag ${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }} ${{ env.REGISTRY }}/bohessefm/gohorsejobs:latest
|
|
||||||
|
|
||||||
# Injeção 1: Push da Tag SHA
|
|
||||||
AUTH=$(echo -n "bohessefm:${{ secrets.FORGEJO_TOKEN }}" | base64 | tr -d '\n')
|
|
||||||
mkdir -p $HOME/.docker
|
|
||||||
echo "{\"auths\":{\"${{ env.REGISTRY }}\":{\"auth\":\"$AUTH\"}}}" > $HOME/.docker/config.json
|
|
||||||
docker push ${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }}
|
|
||||||
|
|
||||||
sleep 2
|
|
||||||
|
|
||||||
# Injeção 2: Push da Tag Latest (Garante que não perdeu a sessão)
|
|
||||||
echo "{\"auths\":{\"${{ env.REGISTRY }}\":{\"auth\":\"$AUTH\"}}}" > $HOME/.docker/config.json
|
|
||||||
docker push ${{ env.REGISTRY }}/bohessefm/gohorsejobs:latest
|
|
||||||
|
|
||||||
# --- BACKOFFICE ---
|
|
||||||
- name: Build Backoffice
|
|
||||||
uses: docker/build-push-action@v5
|
uses: docker/build-push-action@v5
|
||||||
with:
|
with:
|
||||||
context: ./backoffice
|
context: ./backoffice
|
||||||
file: ./backoffice/Dockerfile
|
file: ./backoffice/Dockerfile
|
||||||
load: true
|
push: true
|
||||||
provenance: false
|
provenance: false
|
||||||
tags: ${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }}
|
tags: |
|
||||||
|
${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }}
|
||||||
- name: Push Backoffice (Forced Auth)
|
${{ env.REGISTRY }}/bohessefm/backoffice:latest
|
||||||
run: |
|
|
||||||
docker tag ${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }} ${{ env.REGISTRY }}/bohessefm/backoffice:latest
|
|
||||||
|
|
||||||
# Injeção 3: Push da Tag SHA
|
|
||||||
AUTH=$(echo -n "bohessefm:${{ secrets.FORGEJO_TOKEN }}" | base64 | tr -d '\n')
|
|
||||||
mkdir -p $HOME/.docker
|
|
||||||
echo "{\"auths\":{\"${{ env.REGISTRY }}\":{\"auth\":\"$AUTH\"}}}" > $HOME/.docker/config.json
|
|
||||||
docker push ${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }}
|
|
||||||
|
|
||||||
sleep 2
|
|
||||||
|
|
||||||
# Injeção 4: Push da Tag Latest
|
|
||||||
echo "{\"auths\":{\"${{ env.REGISTRY }}\":{\"auth\":\"$AUTH\"}}}" > $HOME/.docker/config.json
|
|
||||||
docker push ${{ env.REGISTRY }}/bohessefm/backoffice:latest
|
|
||||||
|
|
||||||
deploy-to-k3s:
|
deploy-to-k3s:
|
||||||
needs: build-and-push
|
needs: build-and-push
|
||||||
runs-on: docker-ready
|
runs-on: docker-ready
|
||||||
env:
|
|
||||||
REGISTRY: pipe.gohorsejobs.com
|
|
||||||
defaults:
|
|
||||||
run:
|
|
||||||
shell: sh
|
|
||||||
steps:
|
steps:
|
||||||
- name: Install Tools (Git & Kubectl)
|
- name: Install Kubectl
|
||||||
run: |
|
run: |
|
||||||
sed -i 's/dl-cdn.alpinelinux.org/mirror.leaseweb.com/g' /etc/apk/repositories
|
apk add --no-cache curl
|
||||||
apk add --no-cache git curl
|
|
||||||
K8S_VERSION=$(curl -L -s https://dl.k8s.io/release/stable.txt)
|
K8S_VERSION=$(curl -L -s https://dl.k8s.io/release/stable.txt)
|
||||||
curl -L -o /usr/local/bin/kubectl "https://dl.k8s.io/release/${K8S_VERSION}/bin/linux/amd64/kubectl"
|
curl -L -o /usr/local/bin/kubectl "https://dl.k8s.io/release/${K8S_VERSION}/bin/linux/amd64/kubectl"
|
||||||
chmod +x /usr/local/bin/kubectl
|
chmod +x /usr/local/bin/kubectl
|
||||||
|
|
@ -105,15 +75,17 @@ jobs:
|
||||||
chmod 600 $HOME/.kube/config
|
chmod 600 $HOME/.kube/config
|
||||||
export KUBECONFIG=$HOME/.kube/config
|
export KUBECONFIG=$HOME/.kube/config
|
||||||
|
|
||||||
# Ajuste Namespace e Secrets (Sintaxe robusta)
|
# Namespace
|
||||||
kubectl create namespace gohorsejobsdev --dry-run=client -o yaml | kubectl apply -f -
|
kubectl create namespace gohorsejobsdev --dry-run=client -o yaml | kubectl apply -f -
|
||||||
|
|
||||||
|
# Registry Secret (Usando aspas duplas para evitar erro de parse)
|
||||||
kubectl -n gohorsejobsdev delete secret forgejo-registry --ignore-not-found
|
kubectl -n gohorsejobsdev delete secret forgejo-registry --ignore-not-found
|
||||||
kubectl -n gohorsejobsdev create secret docker-registry forgejo-registry \
|
kubectl -n gohorsejobsdev create secret docker-registry forgejo-registry \
|
||||||
--docker-server="${{ env.REGISTRY }}" \
|
--docker-server="${{ env.REGISTRY }}" \
|
||||||
--docker-username="bohessefm" \
|
--docker-username="bohessefm" \
|
||||||
--docker-password="${{ secrets.FORGEJO_TOKEN }}"
|
--docker-password="${{ secrets.FORGEJO_TOKEN }}"
|
||||||
|
|
||||||
|
# Backend Secrets
|
||||||
kubectl -n gohorsejobsdev delete secret backend-secrets --ignore-not-found
|
kubectl -n gohorsejobsdev delete secret backend-secrets --ignore-not-found
|
||||||
kubectl -n gohorsejobsdev create secret generic backend-secrets \
|
kubectl -n gohorsejobsdev create secret generic backend-secrets \
|
||||||
--from-literal=MTU="${{ vars.MTU }}" \
|
--from-literal=MTU="${{ vars.MTU }}" \
|
||||||
|
|
@ -121,14 +93,13 @@ jobs:
|
||||||
--from-literal=AMQP_URL="${{ vars.AMQP_URL }}" \
|
--from-literal=AMQP_URL="${{ vars.AMQP_URL }}" \
|
||||||
--from-literal=DATABASE_URL="${{ vars.DATABASE_URL }}"
|
--from-literal=DATABASE_URL="${{ vars.DATABASE_URL }}"
|
||||||
|
|
||||||
|
# Aplicar Manifestos
|
||||||
kubectl apply -f k8s/dev/ -n gohorsejobsdev
|
kubectl apply -f k8s/dev/ -n gohorsejobsdev
|
||||||
|
|
||||||
# Set image usando o SHA para garantir que baixe a nova
|
# Update Images com SHA para garantir o rollout
|
||||||
kubectl -n gohorsejobsdev set image deployment/gohorse-backend-dev backend=${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }}
|
kubectl -n gohorsejobsdev set image deployment/gohorse-backend-dev backend=pipe.gohorsejobs.com/bohessefm/gohorsejobs:${{ github.sha }}
|
||||||
kubectl -n gohorsejobsdev set image deployment/gohorse-backoffice-dev backoffice=${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }}
|
kubectl -n gohorsejobsdev set image deployment/gohorse-backoffice-dev backoffice=pipe.gohorsejobs.com/bohessefm/backoffice:${{ github.sha }}
|
||||||
|
|
||||||
# Force Restart
|
# Restart forçado
|
||||||
kubectl delete pod -n gohorsejobsdev -l app=gohorse-backend-dev --force --grace-period=0 || true
|
kubectl delete pod -n gohorsejobsdev -l app=gohorse-backend-dev --force --grace-period=0 || true
|
||||||
kubectl delete pod -n gohorsejobsdev -l app=gohorse-backoffice-dev --force --grace-period=0 || true
|
kubectl delete pod -n gohorsejobsdev -l app=gohorse-backoffice-dev --force --grace-period=0 || true
|
||||||
|
|
||||||
echo "Deploy finalizado com sucesso!"
|
|
||||||
Loading…
Reference in a new issue