115 lines
No EOL
4 KiB
YAML
115 lines
No EOL
4 KiB
YAML
name: Deploy Backend and Backoffice Dev
|
|
|
|
on:
|
|
workflow_dispatch:
|
|
push:
|
|
branches:
|
|
- dev
|
|
|
|
jobs:
|
|
build-and-push:
|
|
runs-on: docker-ready
|
|
env:
|
|
DOCKER_API_VERSION: "1.43"
|
|
REGISTRY: pipe.gohorsejobs.com
|
|
defaults:
|
|
run:
|
|
shell: sh
|
|
steps:
|
|
- name: Install Dependencies
|
|
run: |
|
|
sed -i 's/dl-cdn.alpinelinux.org/mirror.leaseweb.com/g' /etc/apk/repositories
|
|
apk add --no-cache git docker-cli docker-cli-buildx nodejs
|
|
|
|
- name: Checkout code
|
|
uses: actions/checkout@v4
|
|
with:
|
|
fetch-depth: 1
|
|
|
|
- name: Set up Docker Buildx
|
|
run: |
|
|
docker buildx create --use --driver docker-container --name local-builder || docker buildx use local-builder
|
|
docker buildx inspect --bootstrap
|
|
|
|
- name: Login to Forgejo Registry
|
|
uses: docker/login-action@v3
|
|
with:
|
|
registry: ${{ env.REGISTRY }}
|
|
username: bohessefm
|
|
password: ${{ secrets.FORGEJO_TOKEN }}
|
|
|
|
- name: Build and Push Backend
|
|
uses: docker/build-push-action@v5
|
|
with:
|
|
context: ./backend
|
|
file: ./backend/Dockerfile
|
|
push: true
|
|
provenance: false
|
|
tags: |
|
|
${{ env.REGISTRY }}/bohessefm/gohorsejobs:latest
|
|
${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }}
|
|
|
|
- name: Build and Push Backoffice
|
|
uses: docker/build-push-action@v5
|
|
with:
|
|
context: ./backoffice
|
|
file: ./backoffice/Dockerfile
|
|
push: true
|
|
provenance: false
|
|
tags: |
|
|
${{ env.REGISTRY }}/bohessefm/backoffice:latest
|
|
${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }}
|
|
|
|
deploy-to-k3s:
|
|
needs: build-and-push
|
|
runs-on: docker-ready
|
|
defaults:
|
|
run:
|
|
shell: sh
|
|
steps:
|
|
- name: Install Tools
|
|
run: |
|
|
sed -i 's/dl-cdn.alpinelinux.org/mirror.leaseweb.com/g' /etc/apk/repositories
|
|
apk add --no-cache git curl
|
|
if [ ! -f /usr/local/bin/kubectl ]; then
|
|
KVER=$(curl -L -s https://dl.k8s.io/release/stable.txt)
|
|
curl -LO "https://dl.k8s.io/release/${KVER}/bin/linux/amd64/kubectl"
|
|
chmod +x kubectl
|
|
mv kubectl /usr/local/bin/
|
|
fi
|
|
|
|
- name: Checkout code
|
|
uses: actions/checkout@v4
|
|
|
|
- name: Deploy to K3s
|
|
run: |
|
|
mkdir -p $HOME/.kube
|
|
echo "${{ secrets.KUBECONFIG }}" > $HOME/.kube/config
|
|
chmod 600 $HOME/.kube/config
|
|
export KUBECONFIG=$HOME/.kube/config
|
|
|
|
# 1. Namespace
|
|
kubectl create namespace gohorsejobsdev --dry-run=client -o yaml | kubectl apply -f -
|
|
|
|
# 2. Secret para o K8s (O que você colocou no YAML como registry-auth)
|
|
kubectl -n gohorsejobsdev create secret docker-registry registry-auth \
|
|
--docker-server=${{ env.REGISTRY }} \
|
|
--docker-username=bohessefm \
|
|
--docker-password='${{ secrets.FORGEJO_TOKEN }}' \
|
|
--dry-run=client -o yaml | kubectl apply -f -
|
|
|
|
# 3. Secrets da aplicação
|
|
kubectl -n gohorsejobsdev delete secret backend-secrets --ignore-not-found
|
|
kubectl -n gohorsejobsdev create secret generic backend-secrets \
|
|
--from-literal=DATABASE_URL="${{ vars.DATABASE_URL }}" \
|
|
--from-literal=JWT_SECRET="${{ vars.JWT_SECRET }}" \
|
|
--from-literal=MTU="${{ vars.MTU }}"
|
|
|
|
# 4. Aplica manifestos
|
|
kubectl apply -f k8s/dev/ -n gohorsejobsdev
|
|
|
|
# 5. Força atualização usando o SHA para garantir que baixe a imagem nova
|
|
kubectl -n gohorsejobsdev set image deployment/gohorse-backend-dev backend=${{ env.REGISTRY }}/bohessefm/gohorsejobs:${{ github.sha }}
|
|
kubectl -n gohorsejobsdev set image deployment/gohorse-backoffice-dev backoffice=${{ env.REGISTRY }}/bohessefm/backoffice:${{ github.sha }}
|
|
|
|
kubectl -n gohorsejobsdev rollout status deployment gohorse-backend-dev |