Compare commits
21 commits
oasis-setu
...
s3-backup
Author | SHA1 | Date | |
---|---|---|---|
bf54b80924 | |||
b8805d941b | |||
f3acd807bf | |||
181c35fac5 | |||
f4f89dad0d | |||
f0038b6b69 | |||
962ca38ff9 | |||
ba73b418a8 | |||
30096f817f | |||
bb8787fded | |||
1e3c32b3e7 | |||
75bd9ebc6d | |||
8fd38af4f8 | |||
8646f62cbe | |||
41d4305f3a | |||
2dc6d1bbd1 | |||
02ebb4634f | |||
4d55f5c1e7 | |||
7b513727bb | |||
26eff76d90 | |||
881621c35c |
2 changed files with 34 additions and 69 deletions
|
@ -6,9 +6,8 @@ The actions are used by Elysium to run CI/CD tasks and this repo will be archive
|
|||
|
||||
The actions available are:
|
||||
- [S3 Backup](https://gitea.dunemask.dev/elysium/elysium-actions/src/branch/s3-backup/action.yml)
|
||||
- [Oasis Auto Setup](https://gitea.dunemask.dev/elysium/elysium-actions/src/branch/oasis-setup-auto/action.yml)
|
||||
- [Oasis Deploy](https://gitea.dunemask.dev/elysium/elysium-actions/src/branch/oasis-deploy/action.yml)
|
||||
- [Infisical Env](https://gitea.dunemask.dev/elysium/elysium-actions/src/branch/infisical-env/action.yml)
|
||||
- [Oasis Advanced Setup](https://gitea.dunemask.dev/elysium/elysium-actions/src/branch/oasis-setup-advanced/action.yml)
|
||||
- [Elysium CI/CD](https://gitea.dunemask.dev/elysium/elysium-actions/src/branch/elysium-ci-cd/action.yml)
|
||||
|
||||
## Workflow Template
|
||||
|
|
100
action.yml
100
action.yml
|
@ -1,80 +1,46 @@
|
|||
name: Oasis Auto Config Action
|
||||
description: Configure env for deploying apps using Oasis Automagically
|
||||
name: "S3 Backup Action"
|
||||
description: "Backup to S3 Bucket"
|
||||
inputs:
|
||||
infisical-token:
|
||||
description: Infisical token for CI or Edge
|
||||
description: Infisical token for backup envars
|
||||
required: true
|
||||
infisical-project:
|
||||
description: Infisical Project For Secrets
|
||||
description: Infisical Project
|
||||
required: true
|
||||
deploy-env:
|
||||
description: Deploy Environment (ci or edge)
|
||||
required: true
|
||||
kubeconfig:
|
||||
description: Kubeconfig for Oasis
|
||||
s3-backup-path:
|
||||
description: "Workspace to setup Oasis"
|
||||
required: false
|
||||
extra-secret-paths:
|
||||
description: Additional Secrets to fetch
|
||||
required: false
|
||||
extra-secret-envs:
|
||||
description: Additional Envs for secrets to fetch
|
||||
required: false
|
||||
garden-version:
|
||||
description: Version of Garden to deploy
|
||||
required: false
|
||||
oasis-branch:
|
||||
description: Branch of Oasis to use
|
||||
required: false
|
||||
default: master
|
||||
oasis-workspace:
|
||||
descipriont: Workspace to setup Oasis
|
||||
required: false
|
||||
default: ${{ gitea.workspace }}/oasis
|
||||
default: backups/forgejo-repositories/${{ gitea.repository }}
|
||||
runs:
|
||||
using: composite
|
||||
using: "composite"
|
||||
steps:
|
||||
- name: Configure Workflow
|
||||
shell: bash
|
||||
run: |
|
||||
if [ ${{ inputs.deploy-env }} == "edge" ]; then
|
||||
WORKFLOW_SECRET=/workflows/oasis-edge-deploy,/workflows/discord
|
||||
elif [ ${{ inputs.deploy-env }} == "ci" ]; then
|
||||
WORKFLOW_SECRET=/workflows/oasis-ci-deploy,/workflows/discord
|
||||
else
|
||||
echo "Error! deploy-env required, and must be 'ci' or 'edge'!"
|
||||
exit 1
|
||||
fi
|
||||
# Save Envars
|
||||
echo OASIS_INFISICAL_TOKEN=${{ inputs.infisical-token }} >> $GITHUB_ENV
|
||||
echo OASIS_PATH_FETCH=$WORKFLOW_SECRET,${{ inputs.extra-secret-paths }} >> $GITHUB_ENV # /workflows/oasis-<deploy-type>-deploy, ...extra-secret-paths
|
||||
echo OASIS_ENV_FETCH=${{ inputs.deploy-env }},${{inputs.deploy-env}},${{ inputs.extra-secret-envs }} >> $GITHUB_ENV #<deploy-type>, ...extra-secret-envs
|
||||
- name: Setup Oasis Envars
|
||||
# Checkout Repository
|
||||
- name: Checkout Repository
|
||||
uses: actions/checkout@v3
|
||||
with:
|
||||
path: repo
|
||||
# Load Backup Envars
|
||||
- name: Setup Backup Envars
|
||||
uses: https://forgejo.dunemask.dev/elysium/elysium-actions@infisical-env
|
||||
with:
|
||||
infisical-token: ${{ env.OASIS_INFISICAL_TOKEN }}
|
||||
infisical-token: ${{ inputs.infisical-token }}
|
||||
project-id: ${{ inputs.infisical-project }}
|
||||
secret-envs: ${{ env.OASIS_ENV_FETCH }}
|
||||
secret-paths: ${{ env.OASIS_PATH_FETCH }}
|
||||
- name: Configure Kubeconfig
|
||||
shell: bash
|
||||
secret-envs: edge
|
||||
secret-paths: /devops/forgejo-backups
|
||||
# Fix Envar Format
|
||||
- name: Fix Env Format
|
||||
run: |
|
||||
if [ -n "${{ inputs.kubeconfig }}" ] && [ "${{ inputs.kubeconfig }}" != "" ]; then
|
||||
echo "Using Provided Kubernetes Config"
|
||||
echo OASIS_WORKFLOW_KUBECONFIG=${{ inputs.kubeconfig }} >> $GITHUB_ENV
|
||||
elif [ "${{ inputs.deploy-env }}" == "edge" ]; then
|
||||
echo "Using Edge Kubernetes Config"
|
||||
echo OASIS_WORKFLOW_KUBECONFIG=${{env.KUBERNETES_CONFIG_USW_EDGE}} >> $GITHUB_ENV
|
||||
elif [ "${{ inputs.deploy-env }}" == "ci" ]; then
|
||||
echo "Using Dev Kubernetes Config"
|
||||
echo OASIS_WORKFLOW_KUBECONFIG=${{env.KUBERNETES_CONFIG_USW_DEV}} >> $GITHUB_ENV
|
||||
else
|
||||
echo "Error! deploy-env required, and must be 'ci' or 'edge'!"
|
||||
exit 1
|
||||
fi
|
||||
- name: Oasis Setup
|
||||
uses: https://forgejo.dunemask.dev/elysium/elysium-actions@oasis-setup-advanced
|
||||
echo BACKUP_S3_ENDPOINT=${{ env.DEVOPS_FORGEJO_ELYSIUM_ORG_S3_ENDPOINT }} >> $GITHUB_ENV
|
||||
echo BACKUP_S3_KEY_ID=${{ env.DEVOPS_FORGEJO_ELYSIUM_ORG_S3_KEY_ID }} >> $GITHUB_ENV
|
||||
echo BACKUP_S3_KEY=${{ env.DEVOPS_FORGEJO_ELYSIUM_ORG_S3_KEY }} >> $GITHUB_ENV
|
||||
# Backup Repository
|
||||
- name: S3 Backup
|
||||
uses: https://github.com/peter-evans/s3-backup@v1
|
||||
env:
|
||||
STORAGE_SERVICE_URL: ${{ env.BACKUP_S3_ENDPOINT }}
|
||||
ACCESS_KEY_ID: ${{ env.BACKUP_S3_KEY_ID }}
|
||||
SECRET_ACCESS_KEY: ${{ env.BACKUP_S3_KEY }}
|
||||
MIRROR_TARGET: ${{ inputs.s3-backup-path }}
|
||||
MIRROR_SOURCE: repo
|
||||
with:
|
||||
garden-version: ${{ inputs.garden-version }}
|
||||
oasis-branch: ${{ inputs.oasis-branch }}
|
||||
oasis-workspace: ${{ inputs.oasis-workspace }}
|
||||
kubeconfig: ${{ env.OASIS_WORKFLOW_KUBECONFIG }}
|
||||
args: --overwrite --remove
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue