diff --git a/.gitea/workflows/app-continous-deploy.yaml b/.gitea/workflows/app-continous-deploy.yaml index fe348bf..531a968 100644 --- a/.gitea/workflows/app-continous-deploy.yaml +++ b/.gitea/workflows/app-continous-deploy.yaml @@ -67,23 +67,23 @@ jobs: # ensure cleanup always runs trap 'rm -f \ - /deploy/app/cronjobs/backups/.env.d/secrets \ - /deploy/app/cronjobs/backups/.env.d/id_rsa \ - /deploy/app/cronjobs/backups/.env.d/borg_key' EXIT + deploy/app/cronjobs/backups/.env.d/secrets \ + deploy/app/cronjobs/backups/.env.d/id_rsa \ + deploy/app/cronjobs/backups/.env.d/borg_key' EXIT # setup env for cronjobs backups mkdir -p /deploy/app/cronjobs/backups/.env.d - echo "PBS_REPOSITORY=${CRONJOBS_BACKUPS_SECRETS_PBS_REPOSITORY}" >> /deploy/app/cronjobs/backups/.env.d/secrets - echo "PBS_PASSWORD=${CRONJOBS_BACKUPS_SECRETS_PBS_PASSWORD}" >> /deploy/app/cronjobs/backups/.env.d/secrets - echo "PBS_FINGERPRINT=${CRONJOBS_BACKUPS_SECRETS_PBS_FINGERPRINT}" >> /deploy/app/cronjobs/backups/.env.d/secrets - echo "BORG_REPO=${CRONJOBS_BACKUPS_SECRETS_BORG_REPO}" >> /deploy/app/cronjobs/backups/.env.d/secrets - echo "BORG_PASSPHRASE=${CRONJOBS_BACKUPS_SECRETS_BORG_PASSPHRASE}" >> /deploy/app/cronjobs/backups/.env.d/secrets - echo "OFFSITE_TARGET_FOLDER=${CRONJOBS_BACKUPS_SECRETS_OFFSITE_TARGET_FOLDER}" >> /deploy/app/cronjobs/backups/.env.d/secrets + echo "PBS_REPOSITORY=${CRONJOBS_BACKUPS_SECRETS_PBS_REPOSITORY}" >> deploy/app/cronjobs/backups/.env.d/secrets + echo "PBS_PASSWORD=${CRONJOBS_BACKUPS_SECRETS_PBS_PASSWORD}" >> deploy/app/cronjobs/backups/.env.d/secrets + echo "PBS_FINGERPRINT=${CRONJOBS_BACKUPS_SECRETS_PBS_FINGERPRINT}" >> deploy/app/cronjobs/backups/.env.d/secrets + echo "BORG_REPO=${CRONJOBS_BACKUPS_SECRETS_BORG_REPO}" >> deploy/app/cronjobs/backups/.env.d/secrets + echo "BORG_PASSPHRASE=${CRONJOBS_BACKUPS_SECRETS_BORG_PASSPHRASE}" >> deploy/app/cronjobs/backups/.env.d/secrets + echo "OFFSITE_TARGET_FOLDER=${CRONJOBS_BACKUPS_SECRETS_OFFSITE_TARGET_FOLDER}" >> deploy/app/cronjobs/backups/.env.d/secrets # enforce security - chmod 600 /deploy/app/cronjobs/backups/.env.d/secrets - chmod 600 /deploy/app/cronjobs/backups/.env.d/id_rsa - chmod 600 /deploy/app/cronjobs/backups/.env.d/borg_key + chmod 600 deploy/app/cronjobs/backups/.env.d/secrets + chmod 600 deploy/app/cronjobs/backups/.env.d/id_rsa + chmod 600 deploy/app/cronjobs/backups/.env.d/borg_key # invoke deploy script deploy/apply-app.sh