Skip to content

Commit

Permalink
merging
Browse files Browse the repository at this point in the history
  • Loading branch information
arnol377 committed Aug 20, 2024
2 parents b91facc + cb6d484 commit b98b003
Show file tree
Hide file tree
Showing 3 changed files with 76 additions and 1 deletion.
14 changes: 14 additions & 0 deletions actions_secrets.tf
Original file line number Diff line number Diff line change
@@ -0,0 +1,14 @@
locals {
secrets = [
"AWS_SECRET_ACCESS_KEY",
"AWS_SESSION_TOKEN",
"AWS_ACCESS_KEY_ID",
"GITHUB_TOKEN"
]
}

module "env_var" {
source = "HappyPathway/var/env"
for_each = toset(local.secrets)
env_var = each.value
}
2 changes: 1 addition & 1 deletion image-pipeline.tf
Original file line number Diff line number Diff line change
Expand Up @@ -132,7 +132,7 @@ module "terraform_aws_image_pipeline" {
content = templatefile(
"${path.module}/workflows/terraform-plan.yaml.tpl",
{
repo_name = "aws-image-pipeline",
repo_name = "terraform-aws-image-pipeline",
directory = "./examples"
git_owner = {
name = "arnol377"
Expand Down
61 changes: 61 additions & 0 deletions sandbox.tf
Original file line number Diff line number Diff line change
@@ -0,0 +1,61 @@

locals {
workspace_instances = [
"arnol377-sandbox"
]
}

module "ghe_runners" {
source = "git@github.e.it.census.gov:CSVD/terraform-github-repo"
for_each = toset(local.workspace_instances)
github_repo_description = "Sandbox - ${each.value}"
repo_org = "arnol377"
name = each.value
github_repo_topics = [
"terraform"
]
force_name = true
github_is_private = false
create_codeowners = false
enforce_prs = false
collaborators = local.collaborators
managed_extra_files = [
{
path = ".github/workflows/terraform-plan.yaml"
content = templatefile(
"${path.module}/workflows/terraform-plan.yaml.tpl",
{
repo_name = each.value,
directory = null
git_owner = {
name = "arnol377"
email = "david.j.arnold.jr@census.gov"
}
}
)
},
{
path = ".github/workflows/terraform-apply.yaml"
content = templatefile(
"${path.module}/workflows/terraform-apply.yaml.tpl",
{
repo_name = each.value,
directory = null
}
)
}
]
secrets = [
for secret in [for secret in local.secrets : secret if secret != "AWS_ACCESS_KEY_ID"] :
{
name = replace(secret, "GITHUB", "GH")
value = lookup(module.env_var, secret).value
}
]
vars = [
{
name = "AWS_ACCESS_KEY_ID"
value = lookup(module.env_var, "AWS_ACCESS_KEY_ID").value
}
]
}

0 comments on commit b98b003

Please sign in to comment.