From 5c36517046d14d42070b15c6afa3dc87435fa385 Mon Sep 17 00:00:00 2001 From: Michael Schiemer Date: Mon, 24 Nov 2025 22:03:12 +0100 Subject: [PATCH] fix(ci): hardcode SSH host/user, only key needs to be secret --- .gitea/workflows/deploy.yml | 10 ++++------ 1 file changed, 4 insertions(+), 6 deletions(-) diff --git a/.gitea/workflows/deploy.yml b/.gitea/workflows/deploy.yml index 80929e45..52dbcbf3 100644 --- a/.gitea/workflows/deploy.yml +++ b/.gitea/workflows/deploy.yml @@ -36,20 +36,18 @@ jobs: - name: Deploy to server env: - SSH_HOST: ${{ secrets.SSH_HOST }} - SSH_USER: ${{ secrets.SSH_USER }} SSH_PRIVATE_KEY: ${{ secrets.SSH_PRIVATE_KEY }} run: | - # Validate required secrets - if [ -z "$SSH_HOST" ] || [ -z "$SSH_USER" ] || [ -z "$SSH_PRIVATE_KEY" ]; then - echo "❌ Missing required secrets: SSH_HOST, SSH_USER, or SSH_PRIVATE_KEY" + # Validate required secret + if [ -z "$SSH_PRIVATE_KEY" ]; then + echo "❌ Missing required secret: SSH_PRIVATE_KEY" exit 1 fi echo "$SSH_PRIVATE_KEY" > /tmp/ssh_key chmod 600 /tmp/ssh_key - ssh -i /tmp/ssh_key -o StrictHostKeyChecking=no $SSH_USER@$SSH_HOST << EOF + ssh -i /tmp/ssh_key -o StrictHostKeyChecking=no deploy@michaelschiemer.de << EOF set -e cd /home/deploy/michaelschiemer/current