-
Notifications
You must be signed in to change notification settings - Fork 0
89 lines (78 loc) · 2.95 KB
/
cicd_deploy.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
name: cicd_deploy
on:
push:
# Run deployment tests on every new version tag and every push to main and dev:
# Run actual deploymment only on push to main and tags
branches: [ "main", "dev" ]
tags:
- v*.*.*
env:
IMAGE_NAME: ${{ github.repository }}
REGISTRY: ghcr.io
TEST_TAG: ${{ github.repository }}:test
jobs:
deploy_docker:
runs-on: ubuntu-latest
permissions:
contents: read
packages: write
steps:
# cf https://samuelsson.dev/access-private-submodules-in-github-actions/ for submodule fetching
- name: Checkout branch
uses: actions/checkout@v4
with:
ssh-key: ${{ secrets.SUBMODULE_PULL_KEY }}
submodules: 'recursive'
# build the image
- name: Build Docker image for tests
id: build
uses: docker/build-push-action@v5
with:
context: . # cf https://github.com/docker/build-push-action/issues/638
load: true
tags: ${{ env.TEST_TAG }}
- name: Run tests in docker
run: >
docker run -v $(pwd)/data:/lidro/data --ipc=host ${{ env.TEST_TAG }}
python -m pytest test -m "not returnfile and not bduni" -s --log-cli-level INFO
- name: Set version number
run: |
echo "VERSION=v$(python -m lidro._version)" >> $GITHUB_ENV
- name: Check tag and version number consistency
if: github.event_name == 'push' && contains(github.ref, 'refs/tags/')
run: |
if [[ ${{ github.ref_name }} == ${{ env.VERSION }} ]]
then
echo "OK: Tag name and _version.py (${{ env.VERSION }}) version number (${{ github.ref_name }}) match"
else
echo "NOK: Tag name and _version.py (${{ env.VERSION }}) version number (${{ github.ref_name }}) don't match"
exit 1
fi
# Login against a Docker registry except on dev branch
# https://github.com/docker/login-action
- name: Log into registry ${{ env.REGISTRY }}
uses: docker/login-action@v2
if: ${{ github.ref_name != 'dev' }}
with:
registry: ${{ env.REGISTRY }}
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
# Extract metadata (tags, labels) for Docker except on dev branch
# https://github.com/docker/metadata-action
- name: Extract Docker metadata
id: metadata
if: ${{ github.ref_name != 'dev' }}
uses: docker/metadata-action@v5
with:
images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}
# Build and push Docker image with Buildx except on dev branch
# https://github.com/docker/build-push-action
- name: Build and push Docker image
id: build-and-push
if: ${{ github.ref_name != 'dev' }}
uses: docker/build-push-action@v5
with:
context: .
push: true
tags: ${{ steps.metadata.outputs.tags }}
labels: ${{ steps.metadata.outputs.labels }}