diff --git a/.github/workflows/prepare.yml b/.github/workflows/prepare.yml index 3cd5391..8099fb8 100644 --- a/.github/workflows/prepare.yml +++ b/.github/workflows/prepare.yml @@ -49,6 +49,7 @@ jobs: TQCHEN_CI_PAT: ${{ secrets.TQCHEN_CI_PAT }} SCCACHE_BUCKET: ${{ secrets.SCCACHE_BUCKET }} DOCS_PUSH_TOKEN: ${{ secrets.DOCS_PUSH_TOKEN }} + AWS_ACCOUNT_ID: ${{ secrets.AWS_ACCOUNT_ID }} steps: - name: Pull repository diff --git a/ansible/roles/setup_jenkins_head/tasks/main.yml b/ansible/roles/setup_jenkins_head/tasks/main.yml index 7469717..6562af4 100644 --- a/ansible/roles/setup_jenkins_head/tasks/main.yml +++ b/ansible/roles/setup_jenkins_head/tasks/main.yml @@ -91,6 +91,14 @@ group: 1000 mode: 0600 +- name: aws account id + ansible.builtin.copy: + content: "{{ lookup('env', 'AWS_ACCOUNT_ID') }}" + dest: "/var/jenkins/keys/aws-account-id" + owner: 1000 + group: 1000 + mode: 0600 + - name: Base configuration for Jenkins ansible.builtin.copy: src: "{{ lookup('env', 'GITHUB_WORKSPACE') + '/docker/' + lookup('env', 'ENVIRONMENT') + '/base_config.yaml' }}" diff --git a/docker/prod/base_config.yaml b/docker/prod/base_config.yaml index baccebb..dd6a1b1 100644 --- a/docker/prod/base_config.yaml +++ b/docker/prod/base_config.yaml @@ -164,3 +164,7 @@ credentials: id: "docs-push-token" description: "docs push token" secret: "${readFile:/key/docs-push-token}" + - string: + id: "aws-account-id" + description: "aws account id" + secret: "${readFile:/key/aws-account-id}"