Files
buildfor_life_repair/.gitea/workflows/deploy.yml
T
grabowski f45adceef0
Deploy to LXC / deploy (push) Successful in 35s
Bound deploy SSH step to 5m so a hung session fails fast
A leftover child process from npm ci/build can keep the SSH
session's file descriptors open even after the remote script
exits, leaving the Action step hanging indefinitely with no
useful signal -- the actual deploy work (build, restart, health
check) normally finishes in well under a minute.
2026-07-01 11:51:59 +07:00

77 lines
2.2 KiB
YAML

name: Deploy to LXC
on:
push:
branches: [main]
jobs:
deploy:
runs-on: ubuntu-latest
steps:
- name: Deploy via SSH
uses: appleboy/ssh-action@v1
with:
host: ${{ secrets.DEPLOY_HOST }}
username: ${{ secrets.DEPLOY_USER }}
key: ${{ secrets.DEPLOY_KEY }}
port: ${{ secrets.DEPLOY_PORT || 22 }}
command_timeout: 5m
script: |
set -e
APP_DIR="${{ secrets.DEPLOY_PATH || '/home/bflr/buildfor_life_repair' }}"
# Set up deploy key for private repo access
mkdir -p ~/.ssh
echo "${{ secrets.REPO_DEPLOY_KEY }}" > ~/.ssh/repo_deploy_key
chmod 600 ~/.ssh/repo_deploy_key
# Configure SSH to use deploy key for git.b4l.co.th
if ! grep -q "git.b4l.co.th" ~/.ssh/config 2>/dev/null; then
cat >> ~/.ssh/config <<EOF
Host git.b4l.co.th
HostName git.b4l.co.th
IdentityFile ~/.ssh/repo_deploy_key
StrictHostKeyChecking accept-new
EOF
chmod 600 ~/.ssh/config
fi
# Clone if first deploy, otherwise pull
if [ ! -d "$APP_DIR" ]; then
echo "==> First deploy, cloning..."
git clone git@git.b4l.co.th:B4L/buildfor_life_repair.git "$APP_DIR"
cd "$APP_DIR"
else
cd "$APP_DIR"
echo "==> Resetting local changes..."
git checkout -- .
echo "==> Pulling latest code..."
git pull origin main
fi
echo "==> Installing dependencies..."
npm ci
echo "==> Building..."
npm run build
echo "==> Running migrations..."
npm run db:push
echo "==> Restarting service..."
sudo systemctl restart bflr
echo "==> Waiting for startup..."
for i in $(seq 1 15); do
if systemctl is-active --quiet bflr; then
echo "Deploy successful!"
exit 0
fi
sleep 1
done
echo "Service failed to start!"
sudo systemctl status bflr --no-pager -l || true
exit 1