-
Notifications
You must be signed in to change notification settings - Fork 7
72 lines (68 loc) · 2.89 KB
/
deploy-frontend-sp-dev.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
name: Deploy frontend (with SAM Deploy Pipeline) to Dev
run-name: Deploy frontend (with SAM Deploy Pipeline) to ${{ inputs.environment }}
on:
workflow_dispatch:
inputs:
environment:
description: "Environment to run against"
type: environment
required: true
jobs:
deploy-basic-auth-sidecar:
runs-on: ubuntu-latest
timeout-minutes: 60
environment: ${{ inputs.environment }}
permissions:
id-token: write
contents: read
steps:
- name: Build and push basic-auth-sidecar image
uses: govuk-one-login/devplatform-upload-action-ecr@5f4cd8b195ad7ae810d60881fa6dbaff1764b5da # v1.3.0
with:
role-to-assume-arn: ${{ secrets.GH_ACTIONS_ROLE_ARN }}
container-sign-kms-key-arn: ${{ secrets.CONTAINER_SIGN_KMS_KEY_ARN }}
build-and-push-image-only: true
working-directory: basic-auth-sidecar
artifact-bucket-name: ${{ secrets.ARTIFACT_SOURCE_BUCKET_NAME }}
ecr-repo-name: ${{ secrets.BASIC_AUTH_SIDECAR_ECR_REPOSITORY }}
deploy-service-down-page:
runs-on: ubuntu-latest
timeout-minutes: 60
environment: ${{ inputs.environment }}
permissions:
id-token: write
contents: read
steps:
- name: Build and push service down page image
uses: govuk-one-login/devplatform-upload-action-ecr@5f4cd8b195ad7ae810d60881fa6dbaff1764b5da # v1.3.0
with:
role-to-assume-arn: ${{ secrets.GH_ACTIONS_ROLE_ARN }}
container-sign-kms-key-arn: ${{ secrets.CONTAINER_SIGN_KMS_KEY_ARN }}
build-and-push-image-only: true
working-directory: service-down-page-config
artifact-bucket-name: ${{ secrets.ARTIFACT_SOURCE_BUCKET_NAME }}
ecr-repo-name: ${{ secrets.SERVICE_DOWN_PAGE_ECR_REPOSITORY }}
deploy-frontend:
needs:
- deploy-basic-auth-sidecar
- deploy-service-down-page
runs-on: ubuntu-latest
timeout-minutes: 60
environment: ${{ inputs.environment }}
permissions:
id-token: write
contents: read
steps:
- name: Build, push and deploy frontend
uses: govuk-one-login/devplatform-upload-action-ecr@5f4cd8b195ad7ae810d60881fa6dbaff1764b5da # v1.3.0
with:
role-to-assume-arn: ${{ secrets.GH_ACTIONS_ROLE_ARN }}
container-sign-kms-key-arn: ${{ secrets.CONTAINER_SIGN_KMS_KEY_ARN }}
artifact-bucket-name: ${{ secrets.ARTIFACT_SOURCE_BUCKET_NAME }}
ecr-repo-name: ${{ secrets.FRONTEND_ECR_REPOSITORY }}
template-file: cloudformation/deploy/template.yaml
private-docker-registry: khw46367.live.dynatrace.com
private-docker-login-username: khw46367
private-docker-login-password: ${{ secrets.DYNATRACE_PAAS_TOKEN }}
build-contexts: |
oneagent_codemodules=docker-image://${{ secrets.DYNATRACE_REGISTRY_NAME}}.live.dynatrace.com/linux/oneagent-codemodules-musl:nodejs