This commit is contained in:
hiondal 2025-03-03 21:55:38 +09:00
parent 3301d09288
commit 76a9bcf18b

View File

@ -1,140 +1,202 @@
name: Frontend CI/CD Pipeline name: Frontend CI/CD Pipeline
# Temporarily disabled on:
# on: push:
# push: branches: [ main ]
# branches: [ main ] paths:
env: - '**'
PROJECT_FOLDER: "." - '!.github/**'
BUILD_FOLDER: "deployment" - '!**.md'
jobs: jobs:
# Build stage
build: build:
runs-on: ubuntu-latest name: Build
steps:
- uses: actions/checkout@v4
- name: Set up Node.js
uses: actions/setup-node@v4
with:
node-version: '20'
cache: 'npm'
- name: Install dependencies
run: npm ci
- name: Build application
run: npm run build
- name: Upload build artifact
uses: actions/upload-artifact@v4
with:
name: build-files
path: build/
retention-days: 1
# Release stage
release:
needs: build
runs-on: ubuntu-latest runs-on: ubuntu-latest
outputs: outputs:
image_tag: ${{ steps.set-tag.outputs.tag }} image_tag: ${{ steps.set_outputs.outputs.image_tag }}
steps: steps:
- uses: actions/checkout@v4 - name: Checkout repository
uses: actions/checkout@v4
- name: Load environment variables
run: | - name: Set up Node.js
props=$(cat deployment/deploy_env_vars) uses: actions/setup-node@v4
echo "$props" >> $GITHUB_ENV with:
node-version: '20'
- name: Set image tag cache: 'npm'
id: set-tag
run: | - name: Install dependencies
timestamp=$(date +'%Y%m%d%H%M%S') run: npm ci
echo "tag=${timestamp}" >> $GITHUB_OUTPUT
- name: Run tests
- name: Download build artifact run: npm test -- --coverage --passWithNoTests
uses: actions/download-artifact@v4
with: - name: SonarQube Scan
name: build-files uses: SonarSource/sonarqube-scan-action@master
path: build/ env:
SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }}
- name: Set up Docker Buildx SONAR_HOST_URL: ${{ secrets.SONAR_HOST_URL }}
uses: docker/setup-buildx-action@v3 with:
args: >
- name: Log in to Azure Container Registry -Dsonar.projectKey=lifesub-web
uses: azure/docker-login@v1 -Dsonar.sources=src
with: -Dsonar.tests=src
login-server: ${{ env.registry }} -Dsonar.test.inclusions=src/**/*.test.js,src/**/*.test.jsx
username: ${{ secrets.ACR_USERNAME }} -Dsonar.javascript.lcov.reportPaths=coverage/lcov.info
password: ${{ secrets.ACR_PASSWORD }}
- name: SonarQube Quality Gate check
- name: Build and push image uses: SonarSource/sonarqube-quality-gate-action@master
uses: docker/build-push-action@v5 timeout-minutes: 5
with: env:
context: . SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }}
file: deployment/Dockerfile-lifesub-web
push: true - name: Build application
tags: ${{ env.registry }}/${{ env.image_org }}/lifesub-web:${{ steps.set-tag.outputs.tag }} run: npm run build
build-args: |
PROJECT_FOLDER=${{ env.PROJECT_FOLDER }} - name: Upload build artifact
BUILD_FOLDER=${{ env.BUILD_FOLDER }} uses: actions/upload-artifact@v4
EXPORT_PORT=${{ env.export_port }} with:
REACT_APP_MEMBER_URL=${{ env.react_app_member_url }} name: build
REACT_APP_MYSUB_URL=${{ env.react_app_mysub_url }} path: build/
REACT_APP_RECOMMEND_URL=${{ env.react_app_recommend_url }}
- name: Load environment variables
run: |
env_vars=$(cat deployment/deploy_env_vars)
echo "$env_vars" >> $GITHUB_ENV
- name: Generate image tag
id: set_outputs
run: |
IMAGE_TAG=$(date '+%Y%m%d%H%M%S')
echo "image_tag=${IMAGE_TAG}" >> $GITHUB_OUTPUT
echo "Image tag: ${IMAGE_TAG}"
# Deploy stage release:
deploy: name: Release
needs: release needs: build
runs-on: ubuntu-latest runs-on: ubuntu-latest
steps: steps:
- uses: actions/checkout@v4 - name: Checkout repository
uses: actions/checkout@v4
- name: Load environment variables
run: | - name: Download build artifact
props=$(cat deployment/deploy_env_vars) uses: actions/download-artifact@v4
echo "$props" >> $GITHUB_ENV with:
name: build
- name: Azure login path: build/
uses: azure/login@v1
with: - name: Load environment variables
creds: ${{ secrets.AZURE_CREDENTIALS }} run: |
env_vars=$(cat deployment/deploy_env_vars)
- name: Set AKS context echo "$env_vars" >> $GITHUB_ENV
uses: azure/aks-set-context@v3
with: - name: Set up Docker Buildx
resource-group: ictcoe-edu uses: docker/setup-buildx-action@v3
cluster-name: ${{ env.teamid }}-aks
- name: Login to ACR
- name: Create namespace uses: docker/login-action@v3
run: | with:
kubectl create namespace ${{ env.teamid }}-${{ env.root_project }}-ns --dry-run=client -o yaml | kubectl apply -f - registry: ${{ env.registry }}
username: ${{ secrets.ACR_USERNAME }}
- name: Generate deployment manifest password: ${{ secrets.ACR_PASSWORD }}
run: |
export namespace=${{ env.teamid }}-${{ env.root_project }}-ns - name: Build and push image
export lifesub_web_image_path=${{ env.registry }}/${{ env.image_org }}/lifesub-web:${{ needs.release.outputs.image_tag }} uses: docker/build-push-action@v5
export replicas=${{ env.replicas }} with:
export export_port=${{ env.export_port }} context: .
export resources_requests_cpu=${{ env.resources_requests_cpu }} push: true
export resources_requests_memory=${{ env.resources_requests_memory }} tags: ${{ env.registry }}/${{ env.image_org }}/lifesub-web:${{ needs.build.outputs.image_tag }}
export resources_limits_cpu=${{ env.resources_limits_cpu }} build-args: |
export resources_limits_memory=${{ env.resources_limits_memory }} PROJECT_FOLDER=.
REACT_APP_MEMBER_URL=${{ env.react_app_member_url }}
envsubst < deployment/deploy.yaml.template > deployment/deploy.yaml REACT_APP_MYSUB_URL=${{ env.react_app_mysub_url }}
echo "Generated manifest:" REACT_APP_RECOMMEND_URL=${{ env.react_app_recommend_url }}
cat deployment/deploy.yaml BUILD_FOLDER=deployment
EXPORT_PORT=${{ env.export_port }}
- name: Deploy to AKS file: deployment/Dockerfile-lifesub-web
run: |
kubectl apply -f deployment/deploy.yaml deploy:
echo "Waiting for deployment to be ready..." name: Deploy
kubectl -n ${{ env.teamid }}-${{ env.root_project }}-ns wait --for=condition=available deployment/lifesub-web --timeout=300s needs: [build, release]
runs-on: ubuntu-latest
echo "Waiting for service external IP..."
while [[ -z $(kubectl -n ${{ env.teamid }}-${{ env.root_project }}-ns get svc lifesub-web -o jsonpath='{.status.loadBalancer.ingress[0].ip}') ]]; do steps:
sleep 5 - name: Checkout repository
done uses: actions/checkout@v4
echo "Service external IP: $(kubectl -n ${{ env.teamid }}-${{ env.root_project }}-ns get svc lifesub-web -o jsonpath='{.status.loadBalancer.ingress[0].ip}')"
- name: Load environment variables
run: |
env_vars=$(cat deployment/deploy_env_vars)
echo "$env_vars" >> $GITHUB_ENV
- name: Set up kubectl
uses: azure/setup-kubectl@v3
- name: Set AKS context
uses: azure/aks-set-context@v3
with:
resource-group: ictcoe-edu
cluster-name: ${{ env.teamid }}-aks
admin: 'false'
use-kubelogin: 'true'
env:
AZURE_CREDENTIALS: ${{ secrets.AZURE_CREDENTIALS }}
- name: Create namespace if not exists
run: |
kubectl create namespace ${{ env.namespace }} --dry-run=client -o yaml | kubectl apply -f -
- name: Install envsubst
run: |
sudo apt-get update
sudo apt-get install -y gettext-base
- name: Generate manifest
env:
IMAGE_TAG: ${{ needs.build.outputs.image_tag }}
run: |
# Export variables for envsubst
export namespace=${{ env.namespace }}
export lifesub_web_image_path=${{ env.registry }}/${{ env.image_org }}/lifesub-web:${IMAGE_TAG}
export replicas=${{ env.replicas }}
export export_port=${{ env.export_port }}
export resources_requests_cpu=${{ env.resources_requests_cpu }}
export resources_requests_memory=${{ env.resources_requests_memory }}
export resources_limits_cpu=${{ env.resources_limits_cpu }}
export resources_limits_memory=${{ env.resources_limits_memory }}
# Generate deployment file
envsubst < deployment/deploy.yaml.template > deployment/deploy.yaml
# For debugging
echo "Generated manifest:"
cat deployment/deploy.yaml
- name: Deploy to AKS
run: |
kubectl apply -f deployment/deploy.yaml
echo "Waiting for deployment to be ready..."
kubectl -n ${{ env.namespace }} wait --for=condition=available deployment/lifesub-web --timeout=300s
echo "Service details:"
kubectl -n ${{ env.namespace }} get svc lifesub-web -o wide
- name: Wait for external IP
run: |
echo "Waiting for service external IP..."
for i in {1..30}; do
IP=$(kubectl -n ${{ env.namespace }} get svc lifesub-web -o jsonpath='{.status.loadBalancer.ingress[0].ip}')
if [ -n "$IP" ]; then
echo "Service external IP: $IP"
break
fi
echo "Waiting for external IP... attempt $i/30"
sleep 10
done
if [ -z "$IP" ]; then
echo "Failed to get external IP after 5 minutes"
exit 1
fi