Skip to content

Commit

Permalink
improve cicd v2
Browse files Browse the repository at this point in the history
  • Loading branch information
extreme4all committed Jan 24, 2024
1 parent e850d90 commit ea7a514
Show file tree
Hide file tree
Showing 2 changed files with 68 additions and 34 deletions.
51 changes: 34 additions & 17 deletions .github/workflows/hetzner-dvp-workflow.yml
Original file line number Diff line number Diff line change
Expand Up @@ -16,15 +16,15 @@ permissions: write-all
env:
VALUE_FILE: bd-web-dvp/deployment.yaml
REGISTRY: quay.io/bot_detector/bd-web

ENVIRONMENT: dvp

# A workflow run is made up of one or more jobs that can run sequentially or in parallel
jobs:
# This workflow contains a single job called "build"
# This workflow contains two jobs: build_image and update_image_version
build_image:
# The type of runner that the job will run on
runs-on: [self-hosted,hetzner]

runs-on: [self-hosted, "hetzner"]
if: github.repository_owner == 'Bot-detector'
# Steps represent a sequence of tasks that will be executed as part of the job
steps:
# Checks-out your repository under $GITHUB_WORKSPACE, so your job can access it
Expand All @@ -35,35 +35,52 @@ jobs:
id: vars
run: |
echo "GIT_HASH=$(git rev-parse --short "$GITHUB_SHA")" >> $GITHUB_OUTPUT
echo "REGISTRY=$REGISTRY" >> $GITHUB_OUTPUT
echo "VALUE_FILE=$VALUE_FILE" >> $GITHUB_OUTPUT
# Runs a command using the runners shell
- name: docker build
run: docker build . --file Dockerfile --network=host -t "$REGISTRY:${{ steps.vars.outputs.GIT_HASH }}"
- name: login to registry
run: echo "${{ secrets.QUAY_REGISTERY_PASSWORD }}" | docker login -u="bot_detector+quay_robot" quay.io --password-stdin
- name: Docker Build
run: |
docker build . --file Dockerfile --network=host -t "${REGISTRY}:${{ steps.vars.outputs.GIT_HASH }}" --target production --build-arg api_port=5000 --build-arg root_path=""
- name: Login to Quay registry
run: echo "${{ secrets.QUAY_REGISTERY_PASSWORD }}" | docker login -u "bot_detector+quay_robot" quay.io --password-stdin

- name: Tag image
run: |
docker tag "${REGISTRY}:${{ steps.vars.outputs.GIT_HASH }}" "${REGISTRY}:${ENVIRONMENT}"
- name: Docker Push image to Quay registry
run: |
docker push "${REGISTRY}:${{ steps.vars.outputs.GIT_HASH }}"
docker push "${REGISTRY}:${ENVIRONMENT}"
- name: docker push image to registry
run: docker push "$REGISTRY:${{ steps.vars.outputs.GIT_HASH }}"
update_image_version:
runs-on: [self-hosted, "hetzner"]
if: github.repository_owner == 'Bot-detector'
needs: build_image # This ensures that the build_image job is completed before running this job

steps:
- name: Checkout Target Repository
uses: actions/checkout@v3
with:
repository: Bot-detector/bot-detector-k8s

- name: Set vars
id: vars
run: |
echo "GIT_HASH=$(git rev-parse --short "$GITHUB_SHA")" >> $GITHUB_OUTPUT
- name: Update Image Version
uses: fjogeleit/yaml-update-action@main
with:
repository: Bot-detector/bot-detector-k8s
valueFile: "${{ steps.vars.outputs.VALUE_FILE }}"
token: ${{ secrets.HETZNER_ACTIONS_RUNNER_TOKEN }}
valueFile: ${{ env.VALUE_FILE }}
token: "${{ secrets.HETZNER_ACTIONS_RUNNER_TOKEN }}"
commitChange: true
branch: "${{ steps.vars.outputs.GIT_HASH }}-${{ steps.vars.outputs.VALUE_FILE }}"
title: "${{ steps.vars.outputs.GIT_HASH }}_${{ env.VALUE_FILE }}"
branch: "${{ steps.vars.outputs.GIT_HASH }}_${{ env.VALUE_FILE }}"
targetBranch: develop
masterBranchName: develop
createPR: true
changes: |
{
"spec.template.spec.containers[0].image":"${{ steps.vars.outputs.REGISTRY }}:${{ steps.vars.outputs.GIT_HASH }}"
"spec.template.spec.containers[0].image": "${{ env.REGISTRY }}:${{ steps.vars.outputs.GIT_HASH }}"
}
51 changes: 34 additions & 17 deletions .github/workflows/hetzner-prd-workflow.yml
Original file line number Diff line number Diff line change
Expand Up @@ -16,15 +16,15 @@ permissions: write-all
env:
VALUE_FILE: bd-web-prd/deployment.yaml
REGISTRY: quay.io/bot_detector/bd-web

ENVIRONMENT: prd

# A workflow run is made up of one or more jobs that can run sequentially or in parallel
jobs:
# This workflow contains a single job called "build"
# This workflow contains two jobs: build_image and update_image_version
build_image:
# The type of runner that the job will run on
runs-on: [self-hosted,hetzner]

runs-on: [self-hosted, "hetzner"]
if: github.repository_owner == 'Bot-detector'
# Steps represent a sequence of tasks that will be executed as part of the job
steps:
# Checks-out your repository under $GITHUB_WORKSPACE, so your job can access it
Expand All @@ -35,35 +35,52 @@ jobs:
id: vars
run: |
echo "GIT_HASH=$(git rev-parse --short "$GITHUB_SHA")" >> $GITHUB_OUTPUT
echo "REGISTRY=$REGISTRY" >> $GITHUB_OUTPUT
echo "VALUE_FILE=$VALUE_FILE" >> $GITHUB_OUTPUT
# Runs a command using the runners shell
- name: docker build
run: docker build . --file Dockerfile --network=host --target production -t "$REGISTRY:${{ steps.vars.outputs.GIT_HASH }}"
- name: login to registry
run: echo "${{ secrets.QUAY_REGISTERY_PASSWORD }}" | docker login -u="bot_detector+quay_robot" quay.io --password-stdin
- name: Docker Build
run: |
docker build . --file Dockerfile --network=host -t "${REGISTRY}:${{ steps.vars.outputs.GIT_HASH }}" --target production --build-arg api_port=5000 --build-arg root_path=""
- name: Login to Quay registry
run: echo "${{ secrets.QUAY_REGISTERY_PASSWORD }}" | docker login -u "bot_detector+quay_robot" quay.io --password-stdin

- name: Tag image
run: |
docker tag "${REGISTRY}:${{ steps.vars.outputs.GIT_HASH }}" "${REGISTRY}:${ENVIRONMENT}"
- name: Docker Push image to Quay registry
run: |
docker push "${REGISTRY}:${{ steps.vars.outputs.GIT_HASH }}"
docker push "${REGISTRY}:${ENVIRONMENT}"
- name: docker push image to registry
run: docker push "$REGISTRY:${{ steps.vars.outputs.GIT_HASH }}"
update_image_version:
runs-on: [self-hosted, "hetzner"]
if: github.repository_owner == 'Bot-detector'
needs: build_image # This ensures that the build_image job is completed before running this job

steps:
- name: Checkout Target Repository
uses: actions/checkout@v3
with:
repository: Bot-detector/bot-detector-k8s

- name: Set vars
id: vars
run: |
echo "GIT_HASH=$(git rev-parse --short "$GITHUB_SHA")" >> $GITHUB_OUTPUT
- name: Update Image Version
uses: fjogeleit/yaml-update-action@main
with:
repository: Bot-detector/bot-detector-k8s
valueFile: "${{ steps.vars.outputs.VALUE_FILE }}"
token: ${{ secrets.HETZNER_ACTIONS_RUNNER_TOKEN }}
valueFile: ${{ env.VALUE_FILE }}
token: "${{ secrets.HETZNER_ACTIONS_RUNNER_TOKEN }}"
commitChange: true
branch: "${{ steps.vars.outputs.GIT_HASH }}-${{ steps.vars.outputs.VALUE_FILE }}"
title: "${{ steps.vars.outputs.GIT_HASH }}_${{ env.VALUE_FILE }}"
branch: "${{ steps.vars.outputs.GIT_HASH }}_${{ env.VALUE_FILE }}"
targetBranch: develop
masterBranchName: develop
createPR: true
changes: |
{
"spec.template.spec.containers[0].image":"${{ steps.vars.outputs.REGISTRY }}:${{ steps.vars.outputs.GIT_HASH }}"
"spec.template.spec.containers[0].image": "${{ env.REGISTRY }}:${{ steps.vars.outputs.GIT_HASH }}"
}

0 comments on commit ea7a514

Please sign in to comment.