1414
1515env :
1616 DOCKER_BUILDKIT : 1
17- KAMAL_REGISTRY_PASSWORD : ${{ secrets.GITHUB_TOKEN }}
17+ SERVICESTACK_LICENSE : ${{ secrets.SERVICESTACK_LICENSE }}
18+ KAMAL_DEPLOY_IP : ${{ secrets.KAMAL_DEPLOY_IP }}
19+ KAMAL_DEPLOY_HOST : ${{ secrets.KAMAL_DEPLOY_HOST }}
1820 KAMAL_REGISTRY_USERNAME : ${{ github.actor }}
21+ KAMAL_REGISTRY_PASSWORD : ${{ secrets.GITHUB_TOKEN }}
1922
2023jobs :
2124 release :
@@ -37,24 +40,12 @@ jobs:
3740 echo "HAS_MIGRATIONS=false" >> $GITHUB_ENV
3841 fi
3942
40- # This step is for the deployment of the templates only, safe to delete
41- - name : Modify deploy.yml
42- env :
43- KAMAL_DEPLOY_IP : ${{ secrets.KAMAL_DEPLOY_IP }}
44- if : env.KAMAL_DEPLOY_IP != null
45- run : |
46- sed -i "s/service: my-app/service: ${{ env.repository_name_lower }}/g" config/deploy.yml
47- sed -i "s#image: my-user/myapp#image: ${{ env.image_repository_name }}#g" config/deploy.yml
48- sed -i "s/- 192.168.0.1/- ${{ secrets.KAMAL_DEPLOY_IP }}/g" config/deploy.yml
49- sed -i "s/host: my-app.example.com/host: ${{ secrets.KAMAL_DEPLOY_HOST }}/g" config/deploy.yml
50- sed -i "s/MyApp/${{ env.repository_name }}/g" config/deploy.yml
51-
5243 - name : Login to GitHub Container Registry
5344 uses : docker/login-action@v3
5445 with :
5546 registry : ghcr.io
56- username : ${{ env.KAMAL_REGISTRY_USERNAME }}
57- password : ${{ env.KAMAL_REGISTRY_PASSWORD }}
47+ username : ${{ github.actor }}
48+ password : ${{ secrets.GITHUB_TOKEN }}
5849
5950 - name : Set up SSH key
6051 uses :
webfactory/[email protected] @@ -79,29 +70,47 @@ jobs:
7970 run : |
8071 kamal server bootstrap
8172
73+ - name : Ensure directories exist with correct permissions
74+ run : |
75+ echo "Creating directories with correct permissions"
76+ kamal server exec "mkdir -p /opt/docker/${{ env.repository_name }}/App_Data /opt/docker/${{ env.repository_name }}/initdb.d"
77+
78+ echo "Setting app file permissions"
79+ kamal server exec "chown -R 1654:1654 /opt/docker/${{ env.repository_name }}/App_Data /opt/docker/${{ env.repository_name }}/initdb.d"
80+
8281 - name : Check if first run and execute kamal app boot if necessary
8382 run : |
84- FIRST_RUN_FILE=".${{ env.repository_name }}"
85- if ! kamal server exec --no-interactive -q "test -f $FIRST_RUN_FILE"; then
86- kamal server exec --no-interactive -q "touch $FIRST_RUN_FILE" || true
83+ FIRST_RUN_FILE="~/first-run/${{ env.repository_name }}"
84+ if ! kamal server exec -q "test -f $FIRST_RUN_FILE"; then
85+ kamal server exec -q "mkdir -p ~/first-run && touch $FIRST_RUN_FILE" || true
86+
87+ if [ -n "${{env.INIT_DB_SQL}}" ]; then
88+ echo "Initializing DB with INIT_DB_SQL secret..."
89+ # Save the SQL content to a temporary file
90+ echo "${{ env.INIT_DB_SQL }}" > init-db.sql
91+ cat init-db.sql | kamal server exec -i "cat > /opt/docker/${{ env.repository_name }}/initdb.d/${{ env.repository_name }}.sql" && rm init-db.sql || true
92+ fi
93+ # Start all kamal accessories
94+ kamal accessory boot all || true
95+
96+ # Deploy latest version
8797 kamal deploy -q -P --version latest || true
8898 else
8999 echo "Not first run, skipping kamal app boot"
90- fi
100+ fi
91101
92- - name : Ensure file permissions
102+ - name : Verify file permissions before deploy
93103 run : |
94- kamal server exec --no-interactive "mkdir -p /opt/docker/${{ env.repository_name }}/App_Data && chown -R 1654:1654 /opt/docker/${{ env.repository_name }}"
104+ kamal server exec --no-interactive "chown -R 1654:1654 /opt/docker/${{ env.repository_name }}/App_Data /opt/docker/${{ env.repository_name }}/initdb.d"
105+
106+ - name : Deploy with Kamal
107+ run : |
108+ kamal lock release -v
109+ kamal server exec --no-interactive 'echo "${{ secrets.GITHUB_TOKEN }}" | docker login ghcr.io -u ${{ github.actor }} --password-stdin'
110+ kamal server exec --no-interactive 'docker pull ghcr.io/${{ env.image_repository_name }}:latest'
111+ kamal deploy -P --version latest
95112
96113 - name : Migration
97114 if : env.HAS_MIGRATIONS == 'true'
98115 run : |
99- kamal server exec --no-interactive 'echo "${{ env.KAMAL_REGISTRY_PASSWORD }}" | docker login ghcr.io -u ${{ env.KAMAL_REGISTRY_USERNAME }} --password-stdin'
100- kamal server exec --no-interactive "docker pull ghcr.io/${{ env.image_repository_name }}:latest || true"
101116 kamal app exec --no-reuse --no-interactive --version=latest "--AppTasks=migrate"
102-
103- - name : Deploy with Kamal
104- run : |
105- kamal lock release -v
106- kamal server exec --no-interactive 'echo "${{ env.KAMAL_REGISTRY_PASSWORD }}" | docker login ghcr.io -u ${{ env.KAMAL_REGISTRY_USERNAME }} --password-stdin'
107- kamal deploy -P --version latest
0 commit comments