Ready for deployment - infrastructure setup

This commit is contained in:
Favee 2025-04-13 08:26:11 +01:00
parent cc3568567a
commit f389f18101

View file

@ -1,6 +1,7 @@
name: Deploy PetClinic ---
name: Deploy PetClinic
on: on:
workflow_dispatch: workflow_dispatch:
inputs: inputs:
environment: environment:
@ -13,68 +14,68 @@ on:
- staging - staging
- prod - prod
jobs: jobs:
deploy-infrastructure: deploy-infrastructure:
runs-on: ubuntu-latest runs-on: ubuntu-latest
environment: ${{ github.event.inputs.environment }} environment: ${{ github.event.inputs.environment }}
steps: steps:
- uses: actions/checkout@v3 - uses: actions/checkout@v3
- name: Configure AWS credentials - name: Configure AWS credentials
uses: aws-actions/configure-aws-credentials@v1 uses: aws-actions/configure-aws-credentials@v1
with: with:
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }} aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }} aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
aws-region: us-west-2 aws-region: us-west-2
- name: Setup Terraform - name: Setup Terraform
uses: hashicorp/setup-terraform@v2 uses: hashicorp/setup-terraform@v2
- name: Terraform Init - name: Terraform Init
working-directory: ./terraform working-directory: ./terraform
run: terraform init run: terraform init
- name: Terraform Plan - name: Terraform Plan
working-directory: ./terraform working-directory: ./terraform
run: terraform plan -var="environment=${{ github.event.inputs.environment }}" -var="db_username=${{ secrets.DB_USERNAME }}" -var="db_password=${{ secrets.DB_PASSWORD }}" -var="vpc_id=${{ secrets.VPC_ID }}" run: |
terraform plan -var="environment=${{ github.event.inputs.environment }}" \
-var="db_username=${{ secrets.DB_USERNAME }}" \
-var="db_password=${{ secrets.DB_PASSWORD }}" \
-var="vpc_id=${{ secrets.VPC_ID }}"
- name: Terraform Apply - name: Terraform Apply
if: github.event.inputs.environment != 'prod' if: github.event.inputs.environment != 'prod'
working-directory: ./terraform working-directory: ./terraform
run: terraform apply -auto-approve -var="environment=${{ github.event.inputs.environment }}" -var="db_username=${{ secrets.DB_USERNAME }}" -var="db_password=${{ secrets.DB_PASSWORD }}" -var="vpc_id=${{ secrets.VPC_ID }}" run: |
terraform apply -auto-approve -var="environment=${{ github.event.inputs.environment }}" \
- name: Terraform Apply (Production - with approval) -var="db_username=${{ secrets.DB_USERNAME }}" \
-var="db_password=${{ secrets.DB_PASSWORD }}" \
-var="vpc_id=${{ secrets.VPC_ID }}"
- name: Terraform Apply (Production)
if: github.event.inputs.environment == 'prod' if: github.event.inputs.environment == 'prod'
working-directory: ./terraform working-directory: ./terraform
run: terraform apply -var="environment=${{ github.event.inputs.environment }}" -var="db_username=${{ secrets.DB_USERNAME }}" -var="db_password=${{ secrets.DB_PASSWORD }}" -var="vpc_id=${{ secrets.VPC_ID }}" run: |
terraform apply -var="environment=${{ github.event.inputs.environment }}" \
-var="db_username=${{ secrets.DB_USERNAME }}" \
-var="db_password=${{ secrets.DB_PASSWORD }}" \
-var="vpc_id=${{ secrets.VPC_ID }}"
build-and-deploy: build-and-deploy:
needs: deploy-infrastructure needs: deploy-infrastructure
runs-on: ubuntu-latest runs-on: ubuntu-latest
environment: ${{ github.event.inputs.environment }} environment: ${{ github.event.inputs.environment }}
steps: steps:
- uses: actions/checkout@v3 - uses: actions/checkout@v3
- name: Set up JDK 17 - name: Set up JDK 17
uses: actions/setup-java@v3 uses: actions/setup-java@v3
with: with:
java-version: '17' java-version: '17'
distribution: 'temurin' distribution: 'temurin'
cache: maven cache: maven
- name: Configure AWS credentials - name: Configure AWS credentials
uses: aws-actions/configure-aws-credentials@v1 uses: aws-actions/configure-aws-credentials@v1
with: with:
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }} aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }} aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
aws-region: us-west-2 aws-region: us-west-2
- name: Login to Amazon ECR - name: Login to Amazon ECR
id: login-ecr id: login-ecr
uses: aws-actions/amazon-ecr-login@v1 uses: aws-actions/amazon-ecr-login@v1
- name: Build, tag, and push image to Amazon ECR - name: Build, tag, and push image to Amazon ECR
env: env:
ECR_REGISTRY: ${{ steps.login-ecr.outputs.registry }} ECR_REGISTRY: ${{ steps.login-ecr.outputs.registry }}
@ -85,14 +86,13 @@ jobs:
docker tag $ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG $ECR_REGISTRY/$ECR_REPOSITORY:latest docker tag $ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG $ECR_REGISTRY/$ECR_REPOSITORY:latest
docker push $ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG docker push $ECR_REGISTRY/$ECR_REPOSITORY:$IMAGE_TAG
docker push $ECR_REGISTRY/$ECR_REPOSITORY:latest docker push $ECR_REGISTRY/$ECR_REPOSITORY:latest
- name: Deploy to ECS - name: Deploy to ECS
run: | run: |
aws ecs update-service --cluster petclinic-${{ github.event.inputs.environment }} \ aws ecs update-service --cluster petclinic-${{ github.event.inputs.environment }} \
--service petclinic-service \ --service petclinic-service \
--force-new-deployment --force-new-deployment
- name: Verify Deployment - name: Verify Deployment
run: | run: |
echo "Waiting for deployment to complete..." echo "Waiting for deployment to complete..."
aws ecs wait services-stable --cluster petclinic-${{ github.event.inputs.environment }} --services petclinic-service aws ecs wait services-stable --cluster petclinic-${{ github.event.inputs.environment }} \
--services petclinic-service