Files
terraform-app-drone/.drone.yml
Tamas Kiss 88f695b304
Some checks failed
continuous-integration/drone/push Build is failing
ci: more secrets and set terraform automation flag
2022-05-26 13:24:40 +02:00

64 lines
1.3 KiB
YAML

---
kind: pipeline
type: kubernetes
name: Terraform root module
trigger:
event:
- cron
- push
branch:
- main
environment:
TF_IN_AUTOMATION: "1"
steps:
- name: terraform init
image: hashicorp/terraform:1.1.8
commands:
- mkdir -p ~/.ssh
- chmod 755 ~/.ssh
- echo "$${CI_SSH_KEY}" | base64 -d > ~/.ssh/id_rsa
- chmod 600 ~/.ssh/id_rsa
- terraform init
environment:
GIT_SSH_COMMAND: "ssh -o StrictHostKeyChecking=no"
CI_SSH_KEY:
from_secret: ci-ssh-key
AWS_ACCESS_KEY_ID:
from_secret: terraform-aws-key-id
AWS_SECRET_ACCESS_KEY:
from_secret: terraform-aws-secret-access-key
- name: terraform plan
image: hashicorp/terraform:1.1.8
commands:
- terraform plan -out .tfplan
environment:
AWS_ACCESS_KEY_ID:
from_secret: terraform-aws-key-id
AWS_SECRET_ACCESS_KEY:
from_secret: terraform-aws-secret-access-key
GITEA_TOKEN:
from_secret: gitea-token
KUBE_TOKEN:
from_secret: lawndale-k8s-ci-token
- name: terraform apply
when:
when:
branch:
- main
event:
- push
image: hashicorp/terraform:1.1.8
commands:
- terraform show -plan .tfplan
# - terraform apply -plan .tfplan -auto-approve
---
kind: signature
hmac: 89d5bf1708b13e28a7d08cb72e8cf00aacf990b3a45a5d4ab9691a6e07a8fb3b
...