name: 构建并部署到测试环境(无 SSH) on: push: branches: - main - dev - test env: REGISTRY: registry.boss160.cn API_IMAGE: registry.boss160.cn/junhong/cmp-fiber-api WORKER_IMAGE: registry.boss160.cn/junhong/cmp-fiber-worker DEPLOY_DIR: /home/qycard001/app/junhong_cmp jobs: build-and-deploy: runs-on: docker steps: - name: 检出代码 uses: actions/checkout@v4 - name: 设置镜像标签 id: tag run: | if [ "${{ github.ref }}" = "refs/heads/main" ]; then echo "tag=latest" >> $GITHUB_OUTPUT elif [ "${{ github.ref }}" = "refs/heads/dev" ]; then echo "tag=dev" >> $GITHUB_OUTPUT elif [ "${{ github.ref }}" = "refs/heads/test" ]; then echo "tag=test" >> $GITHUB_OUTPUT else echo "tag=unknown" >> $GITHUB_OUTPUT fi - name: 登录 Docker Registry run: | echo "${{ secrets.REGISTRY_PASSWORD }}" | docker login ${{ env.REGISTRY }} -u ${{ secrets.REGISTRY_USERNAME }} --password-stdin - name: 构建 API 镜像 run: | docker build -f Dockerfile.api -t ${{ env.API_IMAGE }}:${{ steps.tag.outputs.tag }} . docker tag ${{ env.API_IMAGE }}:${{ steps.tag.outputs.tag }} ${{ env.API_IMAGE }}:${{ github.sha }} - name: 构建 Worker 镜像 run: | docker build -f Dockerfile.worker -t ${{ env.WORKER_IMAGE }}:${{ steps.tag.outputs.tag }} . docker tag ${{ env.WORKER_IMAGE }}:${{ steps.tag.outputs.tag }} ${{ env.WORKER_IMAGE }}:${{ github.sha }} - name: 推送镜像到 Registry run: | docker push ${{ env.API_IMAGE }}:${{ steps.tag.outputs.tag }} docker push ${{ env.API_IMAGE }}:${{ github.sha }} docker push ${{ env.WORKER_IMAGE }}:${{ steps.tag.outputs.tag }} docker push ${{ env.WORKER_IMAGE }}:${{ github.sha }} - name: 部署到本地(仅 main 分支) if: github.ref == 'refs/heads/main' run: | cd ${{ env.DEPLOY_DIR }} echo "拉取最新镜像..." docker-compose -f docker-compose.prod.yml pull echo "执行滚动更新..." docker-compose -f docker-compose.prod.yml up -d --no-deps echo "等待服务健康检查..." sleep 10 echo "清理旧镜像(保留最近 3 个版本)..." docker images ${{ env.API_IMAGE }} --format "{{.ID}}" | tail -n +4 | xargs -r docker rmi -f || true docker images ${{ env.WORKER_IMAGE }} --format "{{.ID}}" | tail -n +4 | xargs -r docker rmi -f || true echo "清理悬空镜像..." docker image prune -f echo "部署完成!" docker-compose -f docker-compose.prod.yml ps - name: 构建结果通知 if: always() run: | if [ "${{ job.status }}" = "success" ]; then echo "✅ 构建成功: ${{ steps.tag.outputs.tag }}" echo "📦 镜像标签: ${{ github.sha }}" else echo "❌ 构建失败" fi