fix(romhacks): pull the orchestrator image instead of declaring a build

Point the service at registry.ginnoir.com/ginnoir/romhacks-orchestrator:latest
(built by the workflow added in 60121a5, verified pullable on valhalla) and
drop the `build:` context that Portainer never honoured.

This unfreezes stack 28, which has been stuck at 847edff since 2026-06-24:
the containers kept running, so nothing alerted, but no commit had deployed
in two months.

README: document that Portainer builds nothing here, and that re-adding a
`build:` would deadlock the stack again.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
This commit is contained in:
ginnoirandClaude Opus 5 committed 2026-08-25 15:04:51 -05:00
1 parent 60121a5d52
commit 8455178aaa
2 files changed
+28 -11

No files matched your search

+15 -4
View File
@@ -37,8 +37,9 @@ Ships idle and safe. It will not export or download until armed:
2. **Channels**: fill `orchestrator/channels.json` with the per-generation channel 2. **Channels**: fill `orchestrator/channels.json` with the per-generation channel
(or forum) IDs. Add any new file hosts you see to `hosts`. (or forum) IDs. Add any new file hosts you see to `hosts`.
3. **Register the stack** in Portainer once (new git stacks need a one-time 3. **Register the stack** in Portainer once (new git stacks need a one-time
registration — see memory `portainer-new-stack-registration`). Build is on: registration — see memory `portainer-new-stack-registration`). Portainer does
Portainer builds `homelab/romhacks-orchestrator` from `./orchestrator`. **not** build anything: the orchestrator image is built by Gitea Actions and
pulled from `registry.ginnoir.com/ginnoir/romhacks-orchestrator:latest`.
4. **JDownloader FolderWatch**: open the noVNC UI at `http://valhalla:8998` 4. **JDownloader FolderWatch**: open the noVNC UI at `http://valhalla:8998`
(set `VNC_PASSWORD` first), Settings → Extensions → **Folder Watch** → enable, (set `VNC_PASSWORD` first), Settings → Extensions → **Folder Watch** → enable,
add watch folder `/watch`. This is what consumes the orchestrator's crawljobs. add watch folder `/watch`. This is what consumes the orchestrator's crawljobs.
@@ -63,8 +64,18 @@ Ships idle and safe. It will not export or download until armed:
`channels.json` and the scripts are **baked into the image** (Portainer's git-stack `channels.json` and the scripts are **baked into the image** (Portainer's git-stack
checkout doesn't reliably bind sibling repo files — see the compose header). So a checkout doesn't reliably bind sibling repo files — see the compose header). So a
change there needs a **push + rebuild**; if a content-only edit doesn't trigger a change under `orchestrator/` needs a **push**, which fires
rebuild, use Portainer → the stack → **Re-pull and redeploy**. `.gitea/workflows/build-romhacks-orchestrator.yml`: it builds the image and pushes
`registry.ginnoir.com/ginnoir/romhacks-orchestrator` as `:latest` + `:sha-<short>`.
Portainer then pulls `:latest` on its next 5-min poll (`pull_policy: always`).
Compose has **no `build:`** on purpose — Portainer's auto-update runs
`docker compose pull` and never `build`, so a build-only image name deadlocks the
stack. Don't add one back.
To rebuild without a source change, run the workflow manually (Gitea → the repo →
Actions → *Build romhacks orchestrator image* → **Run workflow**), then Portainer →
the stack → **Re-pull and redeploy**.
## Paths ## Paths
+13 -7
View File
@@ -26,12 +26,19 @@
# DRY_RUN=true, so even if deployed it idles and never enqueues a download. See # DRY_RUN=true, so even if deployed it idles and never enqueues a download. See
# README.md for the arming checklist. # README.md for the arming checklist.
# #
# BUILD (not bind) for the orchestrator: Portainer git-stack checkouts do NOT # BAKED IMAGE (not bind) for the orchestrator: Portainer git-stack checkouts do NOT
# reliably materialize sibling repo files at relative FILE bind paths (Docker then # reliably materialize sibling repo files at relative FILE bind paths (Docker then
# auto-creates a directory — see the `share` stack note). So the orchestrator's # auto-creates a directory — see the `share` stack note). So the orchestrator's
# scripts + channels.json are baked into a built image from ./orchestrator instead # scripts + channels.json are baked into an image built from ./orchestrator.
# of bind-mounted. Editing channels.json => push => Portainer rebuild (use #
# "Re-pull and redeploy" if a content-only change doesn't trigger a rebuild). # That image is built by Gitea Actions and pushed to the self-hosted registry —
# NOT by a compose `build:` context. Portainer's git auto-update only ever runs
# `docker compose pull`, never `build`, so a `build:` + local-only `image:` name
# froze this stack: every poll died on "pull access denied for
# homelab/romhacks-orchestrator" and the stack never advanced past its last good
# commit. Same pattern as famapp. See .gitea/workflows/build-romhacks-orchestrator.yml.
# Editing channels.json or the scripts => push => the workflow rebuilds :latest,
# and watchtower/the next redeploy picks it up.
# #
# Tiered binds: working state (exports/state/crawljobs + JD config) -> /config # Tiered binds: working state (exports/state/crawljobs + JD config) -> /config
# (SSD); bulk output + art -> /storage1/labdata/romhacks (ZFS, root-auto-created). # (SSD); bulk output + art -> /storage1/labdata/romhacks (ZFS, root-auto-created).
@@ -40,9 +47,8 @@
services: services:
romhacks: romhacks:
build: image: registry.ginnoir.com/ginnoir/romhacks-orchestrator:latest
context: ./orchestrator pull_policy: always
image: homelab/romhacks-orchestrator:latest
container_name: romhacks container_name: romhacks
restart: unless-stopped restart: unless-stopped
networks: [romhacks] networks: [romhacks]