Skip to content

Merge pull request #822 from makerdao/resources #54

Merge pull request #822 from makerdao/resources

Merge pull request #822 from makerdao/resources #54

Workflow file for this run

name: Node.js Prod CI - Backend
on:
push:
branches: [ main ]
paths:
- "backend/**"
- ".github/workflows/node.js-prod.yml"
- "helm/prod/backend*"
permissions:
id-token: write
contents: read
jobs:
build-deploy:
runs-on: ubuntu-latest
env:
REGION: eu-central-1
CLUSTER_NAME: maker-prod-eu
SERVICE_NAME: mips-backend
AWS_ECR_NAME: mips-backend-prod
ENVIRONMENT_TAG: prod
HELM_FILE: helm/prod/backend.yaml
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Running the Test Suit
env:
REQUEST_GITHUB_URL_API_ENDPOINT: ${{ secrets.REQUEST_GITHUB_URL_API_ENDPOINT }}
GIT_ACCESS_API_TOKEN: ${{ secrets.GIT_ACCESS_API_TOKEN }}
MIP_GITHUB_REPOSITORY: ${{ secrets.MIP_GITHUB_REPOSITORY_DEV }}
MIP_GITHUB_REPOSITORY_OWNER: ${{ secrets.MIP_GITHUB_REPOSITORY_OWNER_DEV }}
run: |
cp '.env example' .env
npm install
npm run pre-start
npm test
working-directory: backend
- name: Configure AWS credentials
uses: aws-actions/configure-aws-credentials@v4
with:
role-to-assume: ${{ secrets.GA_OIDC_EKS_PROD }}
role-session-name: NodeProdMips
aws-region: ${{ env.REGION }}
- name: Login to AWS ECR
id: login-ecr
uses: aws-actions/amazon-ecr-login@v2
- name: Extract commit hash
id: vars
if: ${{ !contains(github.event.head_commit.message , '[skip build]') }}
shell: bash
run: |
echo "::set-output name=sha_short::$(git rev-parse --short HEAD)"
- name: Build, tag, and push image to ECR
id: build-image
if: ${{ !contains(github.event.head_commit.message , '[skip build]') }}
working-directory: backend
env:
SHA_TAG: ${{ steps.vars.outputs.sha_short }}
LATEST_TAG: latest
ECR_REGISTRY: ${{ steps.login-ecr.outputs.registry }}
REQUEST_GITHUB_URL_API_ENDPOINT: ${{ secrets.REQUEST_GITHUB_URL_API_ENDPOINT }}
GIT_ACCESS_API_TOKEN: ${{ secrets.GIT_ACCESS_API_TOKEN }}
MIP_GITHUB_REPOSITORY: ${{ secrets.MIP_GITHUB_REPOSITORY_DEV }}
MIP_GITHUB_REPOSITORY_OWNER: ${{ secrets.MIP_GITHUB_REPOSITORY_OWNER_DEV }}
run: |
# Build Docker containers and push them to ECR ${{ env.AWS_ECR_NAME }}
docker pull $ECR_REGISTRY/$AWS_ECR_NAME:$LATEST_TAG || true
docker build -t $AWS_ECR_NAME \
-t $ECR_REGISTRY/$AWS_ECR_NAME:$SHA_TAG \
-t $ECR_REGISTRY/$AWS_ECR_NAME:$LATEST_TAG \
-t $ECR_REGISTRY/$AWS_ECR_NAME:$ENVIRONMENT_TAG \
--build-arg REQUEST_GITHUB_URL_API_ENDPOINT=$REQUEST_GITHUB_URL_API_ENDPOINT \
--build-arg GIT_ACCESS_API_TOKEN=$GIT_ACCESS_API_TOKEN \
-f Dockerfile \
.
docker push $ECR_REGISTRY/$AWS_ECR_NAME --all-tags
- name: Deploying Service to Kubernetes with Helm
id: deploy
if: ${{ !contains(github.event.head_commit.message , '[skip deploy]') }}
uses: bitovi/[email protected]
with:
values: image.repository=${{ steps.login-ecr.outputs.registry }}/${{ env.AWS_ECR_NAME }},image.tag=${{ steps.vars.outputs.sha_short }}
cluster-name: ${{ env.CLUSTER_NAME }}
config-files: ${{ env.HELM_FILE }}
chart-path: techops-services/common
namespace: mips
timeout: 5m0s
name: ${{ env.SERVICE_NAME }}
chart-repository: https://techops-services.github.io/helm-charts
version: 0.0.31
atomic: true