Skip to content

Commit

Permalink
updating
Browse files Browse the repository at this point in the history
  • Loading branch information
arnol377 committed Sep 5, 2024
1 parent 4426913 commit e396af8
Show file tree
Hide file tree
Showing 8 changed files with 35 additions and 33 deletions.
52 changes: 27 additions & 25 deletions image-pipeline.tf
Original file line number Diff line number Diff line change
Expand Up @@ -25,22 +25,19 @@ module "image_pipeline_repos" {
force_name = true
create_codeowners = false
enforce_prs = true
collaborators = merge(local.collaborators, { garri325 = "admin" })
collaborators = local.collaborators
pull_request_bypassers = local.pull_request_bypassers
vars = [
{
name = "AWS_ACCESS_KEY_ID",
value = module.aws_session_configuration.iam_credentials.iam_access_key_id
},
secrets = [
for secret in [for secret in local.secrets : secret if secret != "AWS_ACCESS_KEY_ID"] :
{
name = "AWS_DEFAULT_REGION",
value = data.aws_region.current.name
name = replace(secret, "GITHUB", "GH")
value = lookup(module.env_var, secret).value
}
]
secrets = [
vars = [
{
name = "AWS_SECRET_ACCESS_KEY"
value = module.aws_session_configuration.iam_credentials.iam_secret_access_key
name = "AWS_ACCESS_KEY_ID"
value = lookup(module.env_var, "AWS_ACCESS_KEY_ID").value
}
]
managed_extra_files = [
Expand Down Expand Up @@ -90,24 +87,17 @@ module "aws_image_pipeline" {
enforce_prs = true
collaborators = local.collaborators
pull_request_bypassers = local.pull_request_bypassers
vars = [
{
name = "terraform_version"
value = "1.9.1"
},
{
name = "AWS_ACCESS_KEY_ID",
value = module.aws_session_configuration.iam_credentials.iam_access_key_id
},
secrets = [
for secret in [for secret in local.secrets : secret if secret != "AWS_ACCESS_KEY_ID"] :
{
name = "AWS_DEFAULT_REGION",
value = data.aws_region.current.name
name = replace(secret, "GITHUB", "GH")
value = lookup(module.env_var, secret).value
}
]
secrets = [
vars = [
{
name = "AWS_SECRET_ACCESS_KEY"
value = module.aws_session_configuration.iam_credentials.iam_secret_access_key
name = "AWS_ACCESS_KEY_ID"
value = lookup(module.env_var, "AWS_ACCESS_KEY_ID").value
}
]
managed_extra_files = [
Expand Down Expand Up @@ -157,6 +147,18 @@ module "terraform_aws_image_pipeline" {
{
name = "terraform_version"
value = "1.9.1"
},
{
name = "AWS_ACCESS_KEY_ID"
value = lookup(module.env_var, "AWS_ACCESS_KEY_ID").value
}

]
secrets = [
for secret in [for secret in local.secrets : secret if secret != "AWS_ACCESS_KEY_ID"] :
{
name = replace(secret, "GITHUB", "GH")
value = lookup(module.env_var, secret).value
}
]
managed_extra_files = [
Expand Down
4 changes: 2 additions & 2 deletions main.tf
Original file line number Diff line number Diff line change
Expand Up @@ -47,7 +47,7 @@ module "automation-repos" {
collaborators = local.collaborators
pull_request_bypassers = local.pull_request_bypassers
}

# centralized-actions
module "centralized-actions" {
source = "HappyPathway/repo/github"
Expand All @@ -65,7 +65,7 @@ module "centralized-actions" {
pull_request_bypassers = local.pull_request_bypassers
github_is_private = false
}

# terraform-github-repo
module "terraform-github-repo" {
source = "git@github.e.it.census.gov:CSVD/terraform-github-repo"
Expand Down
2 changes: 1 addition & 1 deletion sandbox.tf
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ module "sandbox" {
github_is_private = false
create_codeowners = false
enforce_prs = false
collaborators = {"arnol377": "admin"}
collaborators = { "arnol377" : "admin" }
managed_extra_files = [
{
path = ".github/workflows/terraform-plan.yaml"
Expand Down
2 changes: 1 addition & 1 deletion variables.tf
Original file line number Diff line number Diff line change
@@ -1,3 +1,3 @@
variable image_pipeline_workflows {
variable "image_pipeline_workflows" {
type = map(string)
}
2 changes: 1 addition & 1 deletion workflows/goss-testing.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ jobs:
env:
AWS_SECRET_ACCESS_KEY: "$${{ secrets.AWS_SECRET_ACCESS_KEY }}"
AWS_ACCESS_KEY_ID: "$${{ vars.AWS_ACCESS_KEY_ID }}"
AWS_DEFAULT_REGION: "$${{ vars.AWS_DEFAULT_REGION }}"
AWS_SESSION_TOKEN: "$${{ secrets.AWS_SESSION_TOKEN }}"


# Steps represent a sequence of tasks that will be executed as part of the job
Expand Down
2 changes: 1 addition & 1 deletion workflows/s3_upload.yaml.tpl
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ jobs:
env:
AWS_SECRET_ACCESS_KEY: "$${{ secrets.AWS_SECRET_ACCESS_KEY }}"
AWS_ACCESS_KEY_ID: "$${{ vars.AWS_ACCESS_KEY_ID }}"
AWS_DEFAULT_REGION: "$${{ vars.AWS_DEFAULT_REGION }}"
AWS_SESSION_TOKEN: "$${{ secrets.AWS_SESSION_TOKEN }}"


# Steps represent a sequence of tasks that will be executed as part of the job
Expand Down
2 changes: 1 addition & 1 deletion workflows/terraform-apply.yaml.tpl
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ jobs:
env:
AWS_SECRET_ACCESS_KEY: "$${{ secrets.AWS_SECRET_ACCESS_KEY }}"
AWS_ACCESS_KEY_ID: "$${{ vars.AWS_ACCESS_KEY_ID }}"
AWS_DEFAULT_REGION: "$${{ vars.AWS_DEFAULT_REGION
AWS_SESSION_TOKEN: "$${{ secrets.AWS_SESSION_TOKEN }}"


# Steps represent a sequence of tasks that will be executed as part of the job
Expand Down
2 changes: 1 addition & 1 deletion workflows/terraform-plan.yaml.tpl
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ jobs:
env:
AWS_SECRET_ACCESS_KEY: "$${{ secrets.AWS_SECRET_ACCESS_KEY }}"
AWS_ACCESS_KEY_ID: "$${{ vars.AWS_ACCESS_KEY_ID }}"
AWS_DEFAULT_REGION: "$${{ vars.AWS_DEFAULT_REGION }}"
AWS_SESSION_TOKEN: "$${{ secrets.AWS_SESSION_TOKEN }}"


# Steps represent a sequence of tasks that will be executed as part of the job
Expand Down

0 comments on commit e396af8

Please sign in to comment.