-
Notifications
You must be signed in to change notification settings - Fork 1
108 lines (92 loc) · 3.55 KB
/
DeployEcsProd.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
name: Deploy to Amazon ECS Production
on:
workflow_dispatch:
env:
AWS_REGION: il-central-1
ECR_REPOSITORY: igpublisher-backend-prod
ECS_SERVICE: igpublisher-backend-prod
ECS_CLUSTER: igpublisher
ECS_TASK_DEFINITION: task-definition.json
CONTAINER_NAME: main
permissions:
contents: read
jobs:
deploy:
name: Deploy
runs-on: ubuntu-latest
environment: production
steps:
- name: Checkout
uses: actions/checkout@v3
- name: Configure AWS credentials
uses: aws-actions/configure-aws-credentials@v1
with:
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
aws-region: ${{ env.AWS_REGION }}
- name: clone repos ig-history & ig-registry
run: |
git clone https://github.com/HL7/fhir-ig-history-template.git ig-history
git clone https://github.com/FHIR/ig-registry.git ig-registry
- name: Install jekyll & jre
run: |
sudo apt-get update && \
sudo apt-get install -y curl gnupg ruby-full build-essential && \
sudo gem install jekyll bundler && \
sudo apt install default-jre -y
- name: Install sushi
run: |
sudo apt-get install npm -y && \
sudo apt-get install -y nodejs && \
sudo npm install -g fsh-sushi -y
- name: Login to Amazon ECR
id: login-ecr
uses: aws-actions/amazon-ecr-login@v1
- name: Download older versions
run: |
aws s3 sync s3://igpublisher-static-prod ./webroot --region eu-west-1
mv ./webroot/html ./webroot/core
$latest=$(cat ./webroot/package-registry.json | jq '.packages[].latest.version')
echo "Creating latest version folder $latest"
mkdir ./webroot/$latest
- name: Build, tag, and push image to Amazon ECR
id: build-image
env:
ECR_REGISTRY: ${{ steps.login-ecr.outputs.registry }}
IMAGE_TAG: ${{ github.sha }}
run: |
# download publisher
mkdir ./ILCore/input-cache/ && \
curl -L https://github.com/HL7/fhir-ig-publisher/releases/latest/download/publisher.jar -o "./ILCore/input-cache/publisher.jar"
# run genonce.sh
chmod +x ./ILCore/_genonce.sh && \
cd ILCore && \
./_genonce.sh && \
cd ..
# Build a docker container and
# push it to ECR so that it can
# be deployed to ECS.
docker build -t igpublisher .
docker tag igpublisher $ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG
docker push $ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG
echo "image=$ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG" >> $GITHUB_OUTPUT
- name: Fill in the new image ID in the Amazon ECS task definition
id: task-def
uses: aws-actions/amazon-ecs-render-task-definition@v1
with:
task-definition: ${{ env.ECS_TASK_DEFINITION }}
container-name: ${{ env.CONTAINER_NAME }}
image: ${{ steps.build-image.outputs.image }}
- name: Deploy Amazon ECS task definition
uses: aws-actions/amazon-ecs-deploy-task-definition@v1
with:
task-definition: ${{ steps.task-def.outputs.task-definition }}
service: ${{ env.ECS_SERVICE }}
cluster: ${{ env.ECS_CLUSTER }}
wait-for-service-stability: false
- name: Copy version to S3
run: |
docker run -d --name backup igpublisher
docker cp backup:/var/www /tmp/S3
find /tmp/S3 -maxdepth 1 -type f -delete
aws s3 sync /tmp/S3 s3://igpublisher-static-prod --region eu-west-1