feat: enhance deployment workflow with conditional builds and manual triggers

- Updated the deploy.yml to allow conditional builds based on changed paths or manual triggers.
- Introduced a force build step for all services when manually triggered.
- Improved output handling for built services to ensure accurate deployment.
- Added steps for creating environment files and copying them to the VPS, ensuring proper configuration during deployment.
This commit is contained in:
vchikalkin 2025-10-12 11:45:19 +03:00
parent b88ac07ba3
commit 3098603ebc

View File

@ -14,15 +14,15 @@ jobs:
web_tag: ${{ steps.vars.outputs.web_tag }}
bot_tag: ${{ steps.vars.outputs.bot_tag }}
cache_proxy_tag: ${{ steps.vars.outputs.cache_proxy_tag }}
# Добавляем output-ы для отслеживания, какие проекты были собраны
web_built: ${{ steps.filter.outputs.web }}
bot_built: ${{ steps.filter.outputs.bot }}
cache_proxy_built: ${{ steps.filter.outputs.cache_proxy }}
web_built: ${{ steps.filter.outputs.web == 'true' || steps.force-build.outputs.web == 'true' }}
bot_built: ${{ steps.filter.outputs.bot == 'true' || steps.force-build.outputs.bot == 'true' }}
cache_proxy_built: ${{ steps.filter.outputs.cache_proxy == 'true' || steps.force-build.outputs.cache_proxy == 'true' }}
steps:
- name: Checkout code
uses: actions/checkout@v3
# --- НОВОЕ: Шаг 1: dorny/paths-filter для условной сборки ---
# 1⃣ Проверяем, какие папки изменились
- name: Filter changed paths
uses: dorny/paths-filter@v2
id: filter
@ -36,7 +36,17 @@ jobs:
- 'packages/**'
cache_proxy:
- 'apps/cache-proxy/**'
# -----------------------------------------------------------
# 2⃣ При ручном запуске — форсим сборку всех сервисов
- name: Force build all on manual trigger
id: force-build
if: ${{ github.event_name == 'workflow_dispatch' }}
run: |
echo "web=true" >> $GITHUB_OUTPUT
echo "bot=true" >> $GITHUB_OUTPUT
echo "cache_proxy=true" >> $GITHUB_OUTPUT
# 3⃣ Фейковый .env для сборки
- name: Create fake .env file for build
run: |
echo "BOT_TOKEN=fake" > .env
@ -52,6 +62,7 @@ jobs:
echo "PRIVACY_URL=http://localhost:3000/privacy" >> .env
echo "SUPPORT_TELEGRAM_URL=http://t.me/support" >> .env
# 4⃣ Генерируем теги
- name: Set image tags
id: vars
run: |
@ -59,40 +70,42 @@ jobs:
echo "bot_tag=bot-${GITHUB_SHA::7}" >> $GITHUB_OUTPUT
echo "cache_proxy_tag=cache-proxy-${GITHUB_SHA::7}" >> $GITHUB_OUTPUT
# 5⃣ Логинимся в Docker Hub
- name: Login to Docker Hub
run: echo "${{ secrets.DOCKERHUB_TOKEN }}" | docker login -u "${{ secrets.DOCKERHUB_USERNAME }}" --password-stdin
# --- ИЗМЕНЕНО: Условное выполнение Build/Push ---
# 6⃣ Сборка и пуш web
- name: Build web image
if: steps.filter.outputs.web == 'true'
if: steps.filter.outputs.web == 'true' || steps.force-build.outputs.web == 'true'
run: |
docker build -t ${{ secrets.DOCKERHUB_USERNAME }}/zapishis-web:${{ steps.vars.outputs.web_tag }} -f ./apps/web/Dockerfile .
- name: Push web image to Docker Hub
if: steps.filter.outputs.web == 'true'
if: steps.filter.outputs.web == 'true' || steps.force-build.outputs.web == 'true'
run: |
docker push ${{ secrets.DOCKERHUB_USERNAME }}/zapishis-web:${{ steps.vars.outputs.web_tag }}
# 7⃣ Сборка и пуш bot
- name: Build bot image
if: steps.filter.outputs.bot == 'true'
if: steps.filter.outputs.bot == 'true' || steps.force-build.outputs.bot == 'true'
run: |
docker build -t ${{ secrets.DOCKERHUB_USERNAME }}/zapishis-bot:${{ steps.vars.outputs.bot_tag }} -f ./apps/bot/Dockerfile .
- name: Push bot image to Docker Hub
if: steps.filter.outputs.bot == 'true'
if: steps.filter.outputs.bot == 'true' || steps.force-build.outputs.bot == 'true'
run: |
docker push ${{ secrets.DOCKERHUB_USERNAME }}/zapishis-bot:${{ steps.vars.outputs.bot_tag }}
# 8⃣ Сборка и пуш cache-proxy
- name: Build cache-proxy image
if: steps.filter.outputs.cache_proxy == 'true'
if: steps.filter.outputs.cache_proxy == 'true' || steps.force-build.outputs.cache_proxy == 'true'
run: |
docker build -t ${{ secrets.DOCKERHUB_USERNAME }}/zapishis-cache-proxy:${{ steps.vars.outputs.cache_proxy_tag }} -f ./apps/cache-proxy/Dockerfile .
- name: Push cache-proxy image to Docker Hub
if: steps.filter.outputs.cache_proxy == 'true'
if: steps.filter.outputs.cache_proxy == 'true' || steps.force-build.outputs.cache_proxy == 'true'
run: |
docker push ${{ secrets.DOCKERHUB_USERNAME }}/zapishis-cache-proxy:${{ steps.vars.outputs.cache_proxy_tag }}
# -------------------------------------------------
deploy:
name: Deploy to VPS
@ -114,10 +127,9 @@ jobs:
run: |
ssh -i ~/.ssh/id_rsa -p ${{ secrets.VPS_PORT }} -o StrictHostKeyChecking=no ${{ secrets.VPS_USER }}@${{ secrets.VPS_HOST }} "mkdir -p /home/${{ secrets.VPS_USER }}/zapishis"
# --- НОВОЕ: Шаг 2: Создание основного .env БЕЗ ТЕГОВ ---
# 1⃣ Основной .env без тегов
- name: Create real .env file (No Tags)
run: |
# Включаем все секреты, КРОМЕ тегов
echo "BOT_TOKEN=${{ secrets.BOT_TOKEN }}" > .env
echo "LOGIN_GRAPHQL=${{ secrets.LOGIN_GRAPHQL }}" >> .env
echo "PASSWORD_GRAPHQL=${{ secrets.PASSWORD_GRAPHQL }}" >> .env
@ -132,18 +144,15 @@ jobs:
echo "OFFER_URL=${{ secrets.OFFER_URL }}" >> .env
echo "PRIVACY_URL=${{ secrets.PRIVACY_URL }}" >> .env
# --- НОВОЕ: Шаг 3: Создание файлов тегов (.project.env) ---
# 2⃣ Файлы с тегами
- name: Create Project Tag Env Files
run: |
# Создаем файлы, которые будут содержать только одну переменную с тегом
echo "WEB_IMAGE_TAG=${{ needs.build-and-push.outputs.web_tag }}" > .env.web
echo "BOT_IMAGE_TAG=${{ needs.build-and-push.outputs.bot_tag }}" > .env.bot
echo "CACHE_PROXY_IMAGE_TAG=${{ needs.build-and-push.outputs.cache_proxy_tag }}" > .env.cache-proxy
# --- Шаг 4: Копирование .env и УСЛОВНОЕ копирование тегов ---
# Копируем основной .env всегда
- name: Copy .env to VPS via SCP (Always)
# 3⃣ Копирование env-файлов
- name: Copy .env to VPS
uses: appleboy/scp-action@master
with:
host: ${{ secrets.VPS_HOST }}
@ -153,7 +162,6 @@ jobs:
source: '.env'
target: '/home/${{ secrets.VPS_USER }}/zapishis/'
# Копируем .env.web ТОЛЬКО, если web был собран (обновляем тег на VPS)
- name: Copy .env.web to VPS
if: ${{ needs.build-and-push.outputs.web_built == 'true' }}
uses: appleboy/scp-action@master
@ -165,7 +173,6 @@ jobs:
source: '.env.web'
target: '/home/${{ secrets.VPS_USER }}/zapishis/'
# Копируем .env.bot ТОЛЬКО, если bot был собран
- name: Copy .env.bot to VPS
if: ${{ needs.build-and-push.outputs.bot_built == 'true' }}
uses: appleboy/scp-action@master
@ -177,7 +184,6 @@ jobs:
source: '.env.bot'
target: '/home/${{ secrets.VPS_USER }}/zapishis/'
# Копируем .env.cache-proxy ТОЛЬКО, если cache-proxy был собран
- name: Copy .env.cache-proxy to VPS
if: ${{ needs.build-and-push.outputs.cache_proxy_built == 'true' }}
uses: appleboy/scp-action@master
@ -189,7 +195,7 @@ jobs:
source: '.env.cache-proxy'
target: '/home/${{ secrets.VPS_USER }}/zapishis/'
- name: Copy docker-compose.yml to VPS via SCP
- name: Copy docker-compose.yml to VPS
uses: appleboy/scp-action@master
with:
host: ${{ secrets.VPS_HOST }}
@ -199,27 +205,15 @@ jobs:
source: 'docker-compose.yml'
target: '/home/${{ secrets.VPS_USER }}/zapishis/'
# --- ФИНАЛЬНЫЙ ДЕПЛОЙ ---
# 4⃣ Деплой
- name: Login and deploy on VPS
run: |
ssh -i ~/.ssh/id_rsa -p ${{ secrets.VPS_PORT }} -o StrictHostKeyChecking=no ${{ secrets.VPS_USER }}@${{ secrets.VPS_HOST }} "
cd /home/${{ secrets.VPS_USER }}/zapishis && \
# 1. Объединение ВСЕХ ENV-файлов в один основной .env
# Теги из .env.web/.env.bot переопределят любые старые/пустые значения,
# и .env станет полным и актуальным.
echo \"Merging environment files into .env...\" && \
cat .env .env.web .env.bot .env.cache-proxy > .temp_env && \
mv .temp_env .env && \
# 2. Логин
docker login -u ${{ secrets.DOCKERHUB_USERNAME }} -p ${{ secrets.DOCKERHUB_TOKEN }}
# 3. Pull ВСЕХ сервисов (Docker Compose автоматически использует обновленный .env)
echo \"Pulling all services...\" && \
docker compose pull
# 4. Перезапуск
echo 'Merging env files...' && \
cat .env .env.web .env.bot .env.cache-proxy > .temp_env && mv .temp_env .env && \
docker login -u ${{ secrets.DOCKERHUB_USERNAME }} -p ${{ secrets.DOCKERHUB_TOKEN }} && \
docker compose pull && \
docker compose down && \
docker compose up -d
"