Harden Tower AI deploy env handling
This commit is contained in:
+33
-14
@@ -5,7 +5,7 @@ param(
|
||||
[string]$RemoteRepo = "gitea-widefrog:NuklearRabbit/geointel.git",
|
||||
[string]$SshKey = "$HOME/.ssh/widefrog_unraid_deploy",
|
||||
[string]$FrontendUrl = "http://192.168.10.150:1202",
|
||||
[string]$InstallAi = $(if ($env:GEOINTEL_INSTALL_AI) { $env:GEOINTEL_INSTALL_AI } else { "false" }),
|
||||
[string]$InstallAi = $(if ($env:GEOINTEL_INSTALL_AI) { $env:GEOINTEL_INSTALL_AI } else { "" }),
|
||||
[switch]$Bootstrap
|
||||
)
|
||||
|
||||
@@ -13,29 +13,41 @@ $ErrorActionPreference = "Stop"
|
||||
|
||||
$bootstrapValue = if ($Bootstrap) { "1" } else { "0" }
|
||||
|
||||
$remoteScript = @"
|
||||
$remoteScript = @'
|
||||
set -euo pipefail
|
||||
git config --global --add safe.directory '$RemotePath'
|
||||
cd '$RemotePath'
|
||||
DEPLOY_GEOINTEL_INSTALL_AI='__INSTALL_AI__'
|
||||
git config --global --add safe.directory '__REMOTE_PATH__'
|
||||
cd '__REMOTE_PATH__'
|
||||
|
||||
if [ ! -d .git ]; then
|
||||
if [ '$bootstrapValue' != '1' ]; then
|
||||
echo 'No git checkout found in $RemotePath.'
|
||||
if [ '__BOOTSTRAP__' != '1' ]; then
|
||||
echo 'No git checkout found in __REMOTE_PATH__.'
|
||||
echo 'Re-run with -Bootstrap for the first deployment bootstrap.'
|
||||
exit 2
|
||||
fi
|
||||
git init
|
||||
git remote add origin '$RemoteRepo'
|
||||
git remote add origin '__REMOTE_REPO__'
|
||||
fi
|
||||
|
||||
git remote get-url origin >/dev/null 2>&1 || git remote add origin '$RemoteRepo'
|
||||
git fetch origin '$RemoteBranch'
|
||||
git reset --hard 'origin/$RemoteBranch'
|
||||
git branch -M '$RemoteBranch'
|
||||
git remote get-url origin >/dev/null 2>&1 || git remote add origin '__REMOTE_REPO__'
|
||||
git fetch origin '__REMOTE_BRANCH__'
|
||||
git reset --hard 'origin/__REMOTE_BRANCH__'
|
||||
git branch -M '__REMOTE_BRANCH__'
|
||||
chmod +x scripts/*.sh backend/docker_start.sh deploy/unraid/*.sh || true
|
||||
|
||||
if [ -f .env ]; then
|
||||
set -a
|
||||
. ./.env
|
||||
set +a
|
||||
fi
|
||||
|
||||
if [ -n "${DEPLOY_GEOINTEL_INSTALL_AI:-}" ]; then
|
||||
GEOINTEL_INSTALL_AI="$DEPLOY_GEOINTEL_INSTALL_AI"
|
||||
fi
|
||||
GEOINTEL_INSTALL_AI="${GEOINTEL_INSTALL_AI:-false}"
|
||||
|
||||
docker compose -f docker-compose.unraid.yml config >/dev/null
|
||||
docker build --build-arg GEOINTEL_INSTALL_AI='$InstallAi' -f deploy/unraid/Dockerfile.all-in-one -t geointel-all-in-one:latest .
|
||||
docker build --build-arg GEOINTEL_INSTALL_AI="$GEOINTEL_INSTALL_AI" -f deploy/unraid/Dockerfile.all-in-one -t geointel-all-in-one:latest .
|
||||
bash deploy/unraid/run-dockerman-container.sh
|
||||
|
||||
if [ -x scripts/live_migration_smoke.sh ]; then
|
||||
@@ -43,8 +55,15 @@ if [ -x scripts/live_migration_smoke.sh ]; then
|
||||
fi
|
||||
|
||||
if [ -x scripts/verify_browser_runtime.sh ]; then
|
||||
bash scripts/verify_browser_runtime.sh '$FrontendUrl'
|
||||
bash scripts/verify_browser_runtime.sh '__FRONTEND_URL__'
|
||||
fi
|
||||
"@
|
||||
'@
|
||||
|
||||
$remoteScript = $remoteScript.Replace("__INSTALL_AI__", $InstallAi)
|
||||
$remoteScript = $remoteScript.Replace("__REMOTE_PATH__", $RemotePath)
|
||||
$remoteScript = $remoteScript.Replace("__BOOTSTRAP__", $bootstrapValue)
|
||||
$remoteScript = $remoteScript.Replace("__REMOTE_REPO__", $RemoteRepo)
|
||||
$remoteScript = $remoteScript.Replace("__REMOTE_BRANCH__", $RemoteBranch)
|
||||
$remoteScript = $remoteScript.Replace("__FRONTEND_URL__", $FrontendUrl)
|
||||
|
||||
ssh -o BatchMode=yes -o StrictHostKeyChecking=accept-new -i $SshKey $RemoteHost $remoteScript
|
||||
|
||||
+15
-2
@@ -8,6 +8,7 @@ REMOTE_REPO="${REMOTE_REPO:-gitea-widefrog:NuklearRabbit/geointel.git}"
|
||||
SSH_KEY="${SSH_KEY:-$HOME/.ssh/widefrog_unraid_deploy}"
|
||||
FRONTEND_URL="${FRONTEND_URL:-http://192.168.10.150:1202}"
|
||||
BOOTSTRAP="${DEPLOY_BOOTSTRAP:-0}"
|
||||
DEPLOY_GEOINTEL_INSTALL_AI="${GEOINTEL_INSTALL_AI:-}"
|
||||
|
||||
ssh_opts=(-o BatchMode=yes -o StrictHostKeyChecking=accept-new)
|
||||
if [[ -f "$SSH_KEY" ]]; then
|
||||
@@ -15,7 +16,7 @@ if [[ -f "$SSH_KEY" ]]; then
|
||||
fi
|
||||
|
||||
ssh "${ssh_opts[@]}" "$REMOTE_HOST" \
|
||||
"REMOTE_PATH='$REMOTE_PATH' REMOTE_BRANCH='$REMOTE_BRANCH' REMOTE_REPO='$REMOTE_REPO' FRONTEND_URL='$FRONTEND_URL' DEPLOY_BOOTSTRAP='$BOOTSTRAP' bash -s" <<'REMOTE_SCRIPT'
|
||||
"REMOTE_PATH='$REMOTE_PATH' REMOTE_BRANCH='$REMOTE_BRANCH' REMOTE_REPO='$REMOTE_REPO' FRONTEND_URL='$FRONTEND_URL' DEPLOY_BOOTSTRAP='$BOOTSTRAP' DEPLOY_GEOINTEL_INSTALL_AI='$DEPLOY_GEOINTEL_INSTALL_AI' bash -s" <<'REMOTE_SCRIPT'
|
||||
set -euo pipefail
|
||||
|
||||
cd "$REMOTE_PATH"
|
||||
@@ -34,8 +35,20 @@ git fetch origin "$REMOTE_BRANCH"
|
||||
git checkout -B "$REMOTE_BRANCH" "origin/$REMOTE_BRANCH"
|
||||
chmod +x scripts/*.sh backend/docker_start.sh deploy/unraid/*.sh || true
|
||||
|
||||
if [ -f .env ]; then
|
||||
set -a
|
||||
# shellcheck disable=SC1091
|
||||
. ./.env
|
||||
set +a
|
||||
fi
|
||||
|
||||
if [ -n "${DEPLOY_GEOINTEL_INSTALL_AI:-}" ]; then
|
||||
GEOINTEL_INSTALL_AI="$DEPLOY_GEOINTEL_INSTALL_AI"
|
||||
fi
|
||||
GEOINTEL_INSTALL_AI="${GEOINTEL_INSTALL_AI:-false}"
|
||||
|
||||
docker compose -f docker-compose.unraid.yml config >/dev/null
|
||||
docker build --build-arg GEOINTEL_INSTALL_AI=${GEOINTEL_INSTALL_AI:-false} -f deploy/unraid/Dockerfile.all-in-one -t geointel-all-in-one:latest .
|
||||
docker build --build-arg GEOINTEL_INSTALL_AI="$GEOINTEL_INSTALL_AI" -f deploy/unraid/Dockerfile.all-in-one -t geointel-all-in-one:latest .
|
||||
bash deploy/unraid/run-dockerman-container.sh
|
||||
|
||||
if [[ -x scripts/live_migration_smoke.sh ]]; then
|
||||
|
||||
Reference in New Issue
Block a user