|
| 1 | +name: CD (Deploy to AWS EC2) |
| 2 | + |
| 3 | +on: |
| 4 | + push: |
| 5 | + branches: [ "main" ] |
| 6 | + |
| 7 | +env: |
| 8 | + DOCKER_IMAGE: ${{ secrets.DOCKER_USERNAME }}/goodgame-api |
| 9 | + CONTAINER_NAME: goodgame-api |
| 10 | + |
| 11 | +permissions: |
| 12 | + contents: read |
| 13 | + |
| 14 | +jobs: |
| 15 | + deploy: |
| 16 | + runs-on: ubuntu-latest |
| 17 | + steps: |
| 18 | + - name: Checkout Code |
| 19 | + uses: actions/checkout@v4 |
| 20 | + |
| 21 | + - name: Set up JDK 21 |
| 22 | + uses: actions/setup-java@v4 |
| 23 | + with: |
| 24 | + java-version: '21' |
| 25 | + distribution: 'temurin' |
| 26 | + |
| 27 | + - name: Grant execute permission for gradlew |
| 28 | + run: chmod +x gradlew |
| 29 | + |
| 30 | + - name: Build without Test |
| 31 | + run: ./gradlew build -x test |
| 32 | + |
| 33 | + # Docker Hub 로그인 |
| 34 | + - name: Login to Docker Hub |
| 35 | + uses: docker/login-action@v3 |
| 36 | + with: |
| 37 | + username: ${{ secrets.DOCKER_USERNAME }} |
| 38 | + password: ${{ secrets.DOCKER_PASSWORD }} |
| 39 | + |
| 40 | + # Docker 이미지 빌드 및 푸시 |
| 41 | + - name: Build and Push |
| 42 | + uses: docker/build-push-action@v5 |
| 43 | + with: |
| 44 | + context: . |
| 45 | + push: true |
| 46 | + tags: ${{ env.DOCKER_IMAGE }}:latest |
| 47 | + |
| 48 | + # docker-compose.prod.yml 파일을 서버로 전송 (SCP) |
| 49 | + - name: Copy Docker Compose file to Server |
| 50 | + uses: appleboy/scp-action@master |
| 51 | + with: |
| 52 | + host: ${{ secrets.EC2_HOST }} |
| 53 | + username: ${{ secrets.EC2_USER }} |
| 54 | + key: ${{ secrets.EC2_SSH_KEY }} |
| 55 | + port: 22 |
| 56 | + source: "docker-compose.prod.yml" |
| 57 | + target: "/home/${{ secrets.EC2_USER }}/app" |
| 58 | + strip_components: 0 |
| 59 | + |
| 60 | + # EC2 서버에 배포 및 검증 |
| 61 | + - name: Deploy to EC2 |
| 62 | + uses: appleboy/ssh-action@master |
| 63 | + with: |
| 64 | + host: ${{ secrets.EC2_HOST }} |
| 65 | + username: ${{ secrets.EC2_USER }} |
| 66 | + key: ${{ secrets.EC2_SSH_KEY }} |
| 67 | + port: 22 |
| 68 | + script: | |
| 69 | + # 앱 디렉토리 이동 및 환경변수 설정 |
| 70 | + cd ~/app |
| 71 | + echo "${{ secrets.ENV_PROD }}" > .env.prod |
| 72 | +
|
| 73 | + # 최신 이미지 Pull |
| 74 | + sudo docker compose -f docker-compose.prod.yml pull |
| 75 | +
|
| 76 | + # 기존 컨테이너 내리고 새로 시작 |
| 77 | + sudo docker compose -f docker-compose.prod.yml down |
| 78 | + sudo docker compose -f docker-compose.prod.yml up -d |
| 79 | +
|
| 80 | + # 배포 검증 (Health Check) |
| 81 | + echo "배포 후 Health Check 시작..." |
| 82 | +
|
| 83 | + for i in {1..12}; do |
| 84 | + RESPONSE=$(curl -s http://localhost:8080/api/actuator/health || true) |
| 85 | +
|
| 86 | + if [[ "$RESPONSE" == *"UP"* ]]; then |
| 87 | + echo "✅ 서비스 정상 실행 확인! (Attempt $i)" |
| 88 | + sudo docker image prune -f |
| 89 | + exit 0 |
| 90 | + fi |
| 91 | +
|
| 92 | + echo "서비스 시작 대기 중... ($i/12)" |
| 93 | + sleep 5 |
| 94 | + done |
| 95 | +
|
| 96 | + # 실패 시 처리 |
| 97 | + echo "❌ 배포 실패: 서비스가 제한 시간 내에 뜨지 않았습니다." |
| 98 | + sudo docker compose -f docker-compose.prod.yml logs --tail=100 |
| 99 | + exit 1 |
0 commit comments