Modi: Inactive FCM Code (#61) #70
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
name: Deploy Workflow | |
on: | |
push: | |
branches: | |
- main | |
env: | |
AWS_REGION: ap-northeast-2 | |
IMAGE_TAG: latest | |
ECR_REPOSITORY: ${{ secrets.ECR_REPOSITORY }} | |
defaults: | |
run: | |
working-directory: ./ppap | |
jobs: | |
deploy: | |
runs-on: ubuntu-latest | |
steps: | |
- name: get Github Action Public IP | |
id: ip | |
uses: haythem/[email protected] | |
- name: Checkout code | |
uses: actions/checkout@v4 | |
- name: Configure AWS credentials | |
uses: aws-actions/configure-aws-credentials@v4 | |
with: | |
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY }} | |
aws-secret-access-key: ${{ secrets.AWS_SECRETS_KEY }} | |
aws-region: ${{ env.AWS_REGION }} | |
- name: Login to Amazon ECR | |
uses: aws-actions/amazon-ecr-login@v2 | |
id: login-ecr | |
- name: docker build | |
env: | |
REGISTRY: ${{ steps.login-ecr.outputs.registry }} | |
run: | | |
docker build -t $REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG -f DockerFileProd . | |
docker push $REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG | |
- name: add Github Actions IP to Security group | |
env: | |
AWS_ACCESS_KEY_ID: ${{ secrets.AWS_ACCESS_KEY }} | |
AWS_SECRET_ACCESS_KEY: ${{ secrets.AWS_SECRETS_KEY }} | |
AWS_DEFAULT_REGION: ap-northeast-2 | |
run: | | |
aws ec2 authorize-security-group-ingress --group-name ${{ secrets.AWS_SG_NAME }} --protocol tcp --port 22 --cidr ${{ steps.ip.outputs.ipv4 }}/32 | |
- name: deploy ec2 server | |
uses: appleboy/[email protected] | |
with: | |
host: ${{ secrets.AWS_HOST }} | |
username: ${{ secrets.AWS_USER_NAME }} | |
key: ${{ secrets.AWS_SSH_KEY }} | |
script: | | |
cd ~/api-server/ppap | |
sudo git pull | |
aws ecr get-login-password --region ap-northeast-2 | sudo docker login --username AWS --password-stdin ${{ steps.login-ecr.outputs.registry }} | |
sudo docker compose -f docker-compose.prod.yml pull | |
sudo docker compose -f docker-compose.prod.yml down ppap | |
sudo docker compose -f docker-compose.prod.yml up -d | |
sudo docker image prune -f | |
- name: remove github Actions IP from security group | |
env: | |
AWS_ACCESS_KEY_ID: ${{ secrets.AWS_ACCESS_KEY }} | |
AWS_SECRET_ACCESS_KEY: ${{ secrets.AWS_SECRETS_KEY }} | |
AWS_DEFAULT_REGION: ap-northeast-2 | |
run: | | |
aws ec2 revoke-security-group-ingress --group-name ${{ secrets.AWS_SG_NAME }} --protocol tcp --port 22 --cidr ${{ steps.ip.outputs.ipv4 }}/32 |