Add SSH_DEPLOY_KEY handling to auto-deploy script
This commit is contained in:
parent
6a745892a4
commit
1d3201d8e5
1 changed files with 19 additions and 3 deletions
|
@ -3,12 +3,28 @@
|
||||||
#### Environment
|
#### Environment
|
||||||
FLAKE_ROOT="$(git rev-parse --show-toplevel)"
|
FLAKE_ROOT="$(git rev-parse --show-toplevel)"
|
||||||
|
|
||||||
export PROFILE="${1:-''}"
|
export PROFILE="${1:-}"
|
||||||
if [ -z "${PROFILE}" ]; then
|
if [ -z "${PROFILE}" ]; then
|
||||||
echo "🛑 Error: No deployment profile was specified as first parameter (e.g. \"${0} system-vm\")" 1>&2
|
echo "🛑 Error: No deployment profile was specified as first parameter (e.g. \"${0} system-vm\")" 1>&2
|
||||||
exit 1
|
exit 1
|
||||||
fi
|
fi
|
||||||
|
|
||||||
|
if [ -z "${SSH_DEPLOY_KEY:-}" ]; then
|
||||||
|
echo "ℹ️ Info: SSH_DEPLOY_KEY env variable was not set, ignoring."
|
||||||
|
SSH_KEY_FILE_ARG=""
|
||||||
|
else
|
||||||
|
TEMP_KEY_FILE=$(mktemp /dev/shm/ssh_deploy_key.XXXXXXXX)
|
||||||
|
touch "${TEMP_KEY_FILE}" && chmod 600 "${TEMP_KEY_FILE}"
|
||||||
|
printf "%s\n" "${SSH_DEPLOY_KEY}" >"${TEMP_KEY_FILE}"
|
||||||
|
SSH_KEY_FILE_ARG="-i ${TEMP_KEY_FILE}"
|
||||||
|
|
||||||
|
# Set up a trap to remove the temporary key file on script exit
|
||||||
|
trap 'rm -f "${TEMP_KEY_FILE}"' EXIT
|
||||||
|
trap 'rm -f "${TEMP_KEY_FILE}"' SIGINT
|
||||||
|
trap 'rm -f "${TEMP_KEY_FILE}"' SIGTERM
|
||||||
|
trap 'rm -f "${TEMP_KEY_FILE}"' SIGQUIT
|
||||||
|
fi
|
||||||
|
|
||||||
HOSTS=$(nix eval --raw "${FLAKE_ROOT}"#deploy.nodes --apply "
|
HOSTS=$(nix eval --raw "${FLAKE_ROOT}"#deploy.nodes --apply "
|
||||||
nodes: let
|
nodes: let
|
||||||
inherit (builtins) attrNames filter concatStringsSep;
|
inherit (builtins) attrNames filter concatStringsSep;
|
||||||
|
@ -31,7 +47,7 @@ retry() {
|
||||||
local -i attempt_num=1
|
local -i attempt_num=1
|
||||||
until "$@"; do
|
until "$@"; do
|
||||||
if ((attempt_num == max_attempts)); then
|
if ((attempt_num == max_attempts)); then
|
||||||
echo "⚠️ Warning: Attempt $attempt_num failed and there are no more attempts left!"
|
echo "🛑 Error: Attempt $attempt_num failed and there are no more attempts left!" 1>&2
|
||||||
return 1
|
return 1
|
||||||
else
|
else
|
||||||
echo "⚠️ Attempt $attempt_num failed! Trying again in $attempt_num seconds..."
|
echo "⚠️ Attempt $attempt_num failed! Trying again in $attempt_num seconds..."
|
||||||
|
@ -44,6 +60,6 @@ retry() {
|
||||||
for HOST in $HOSTS; do
|
for HOST in $HOSTS; do
|
||||||
retry 3 deploy \
|
retry 3 deploy \
|
||||||
--skip-checks \
|
--skip-checks \
|
||||||
--ssh-opts "-o UserKnownHostsFile=${KNOWN_HOSTS_FILE}" \
|
--ssh-opts "-o UserKnownHostsFile=${KNOWN_HOSTS_FILE} ${SSH_KEY_FILE_ARG:-}" \
|
||||||
--targets "${FLAKE_ROOT}#\"${HOST}\".\"${PROFILE}\""
|
--targets "${FLAKE_ROOT}#\"${HOST}\".\"${PROFILE}\""
|
||||||
done
|
done
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue