diff --git a/gitlab-ci/deploy.yml b/gitlab-ci/deploy.yml index fedc5eb..365c776 100644 --- a/gitlab-ci/deploy.yml +++ b/gitlab-ci/deploy.yml @@ -5,12 +5,19 @@ deploy: name: production url: rss.fudiggity.nl before_script: - - apt-get update && apt-get install -y ansible git + - apt-get update && apt-get install --quiet --quiet --assume-yes ansible git - git clone https://gitlab-ci-token:${CI_JOB_TOKEN}@git.fudiggity.nl/sonny/ansible-playbooks.git deployment - mkdir /root/.ssh - echo "192.168.178.63 ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAILbtcdgJBhVCKsO88cV19EYefDTopdYejEQCp1pYr1Ga" > /root/.ssh/known_hosts - echo "$DEPLOY_KEY" > deployment/deploy_key && chmod 0600 deployment/deploy_key + - mkdir /root/.vaults + - echo "$VAULT_PASSWORD" > /root/.vaults/newsreader && chmod 0600 /root/.vaults/newsreader script: - - ansible-playbook deployment/playbook.yml --inventory deployment/apps.yml --limit newsreader --user ansible --private-key deployment/deploy_key + - ansible-playbook deployment/playbook.yml \ + --inventory deployment/apps.yml \ + --limit newsreader \ + --user ansible \ + --private-key deployment/deploy_key \ + --vault-password-file /root/.vaults/newsreader only: - master