-
Notifications
You must be signed in to change notification settings - Fork 1
85 lines (72 loc) · 3.12 KB
/
deploy.yml
File metadata and controls
85 lines (72 loc) · 3.12 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
# ============================================================================
# Batch Deploy Workflow (GCP Cloud Run Job)
# ============================================================================
# 역할:
# - Docker 이미지 빌드 및 Artifact Registry 푸시
# - Cloud Run Job 이미지 업데이트
# - Cloud Scheduler가 다음 실행 시 자동으로 새 이미지 사용
#
# 인증 방식: Workload Identity Federation (keyless)
#
# GitHub Variables (Settings > Secrets and variables > Actions > Variables):
# - GCP_PROJECT_ID: GCP 프로젝트 ID
# - GCP_REGION: 리전 (예: asia-northeast3)
# - GCP_WIF_PROVIDER: Workload Identity Provider
# - GCP_SERVICE_ACCOUNT: GitHub Actions SA 이메일
# ============================================================================
name: Deploy Batch to Cloud Run Job
on:
push:
branches:
- develop
workflow_dispatch:
env:
IMAGE_NAME: batch-core
JOB_NAME: telecom-app-batch-core
jobs:
deploy:
name: Build and Deploy
runs-on: ubuntu-latest
permissions:
contents: read
id-token: write # Required for WIF
steps:
- name: Checkout code
uses: actions/checkout@v4
- name: Authenticate to Google Cloud
uses: google-github-actions/auth@v2
with:
workload_identity_provider: ${{ vars.GCP_WIF_PROVIDER }}
service_account: ${{ vars.GCP_SERVICE_ACCOUNT }}
- name: Set up Cloud SDK
uses: google-github-actions/setup-gcloud@v2
- name: Configure Docker for Artifact Registry
run: |
gcloud auth configure-docker ${{ vars.GCP_REGION }}-docker.pkg.dev --quiet
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
- name: Build and push Docker image
uses: docker/build-push-action@v5
with:
context: .
push: true
tags: |
${{ vars.GCP_REGION }}-docker.pkg.dev/${{ vars.GCP_PROJECT_ID }}/telecom-app-repo/${{ env.IMAGE_NAME }}:${{ github.sha }}
${{ vars.GCP_REGION }}-docker.pkg.dev/${{ vars.GCP_PROJECT_ID }}/telecom-app-repo/${{ env.IMAGE_NAME }}:latest
cache-from: type=gha
cache-to: type=gha,mode=max
- name: Update Cloud Run Job
run: |
gcloud run jobs update ${{ env.JOB_NAME }} \
--image ${{ vars.GCP_REGION }}-docker.pkg.dev/${{ vars.GCP_PROJECT_ID }}/telecom-app-repo/${{ env.IMAGE_NAME }}:${{ github.sha }} \
--region ${{ vars.GCP_REGION }}
- name: Deployment Summary
run: |
echo "## Batch Deployment Summary" >> $GITHUB_STEP_SUMMARY
echo "| Item | Value |" >> $GITHUB_STEP_SUMMARY
echo "|------|-------|" >> $GITHUB_STEP_SUMMARY
echo "| **Image Tag** | \`${{ github.sha }}\` |" >> $GITHUB_STEP_SUMMARY
echo "| **Cloud Run Job** | \`${{ env.JOB_NAME }}\` |" >> $GITHUB_STEP_SUMMARY
echo "| **Region** | \`${{ vars.GCP_REGION }}\` |" >> $GITHUB_STEP_SUMMARY
echo "" >> $GITHUB_STEP_SUMMARY
echo "> Batch Job은 다음 Cloud Scheduler 실행 시 자동으로 새 이미지를 사용합니다" >> $GITHUB_STEP_SUMMARY