Skip to content

Commit

Permalink
fix(infra): add TRUSTED_IAM_ISSUER to lambda env (#418)
Browse files Browse the repository at this point in the history
* fix(infra): add TRUSTED_IAM_ISSUER to lambda env

* fix(infra): pass trusted iam issuer as env variable
  • Loading branch information
tim-schultz authored Oct 10, 2023
1 parent 9cd85f6 commit ad3849a
Show file tree
Hide file tree
Showing 4 changed files with 22 additions and 2 deletions.
3 changes: 3 additions & 0 deletions .github/workflows/api-promote-prod.yml
Original file line number Diff line number Diff line change
Expand Up @@ -309,6 +309,9 @@ jobs:
DB_NAME: ${{ secrets.DB_NAME }}
DB_PASSWORD: ${{ secrets.DB_PASSWORD }}

# TODO: pull for secrets manager or use this instead of secrets manage value
TRUSTED_IAM_ISSUER: ${{ secrets.TRUSTED_IAM_ISSUER }}

REDASH_DB_NAME: ${{ secrets.REDASH_DB_NAME }}
REDASH_DB_PASSWORD: ${{ secrets.REDASH_DB_PASSWORD }}
REDASH_DB_USER: ${{ secrets.REDASH_DB_USER }}
Expand Down
3 changes: 3 additions & 0 deletions .github/workflows/api-promote-staging.yml
Original file line number Diff line number Diff line change
Expand Up @@ -315,6 +315,9 @@ jobs:
DB_NAME: ${{ secrets.DB_NAME_STAGING }}
DB_PASSWORD: ${{ secrets.DB_PASSWORD_STAGING }}

# TODO: pull for secrets manager or use this instead of secrets manage value
TRUSTED_IAM_ISSUER: ${{ secrets.TRUSTED_IAM_ISSUER }}

REDASH_DB_NAME: ${{ secrets.REDASH_DB_NAME }}
REDASH_DB_PASSWORD: ${{ secrets.REDASH_DB_PASSWORD }}
REDASH_DB_USER: ${{ secrets.REDASH_DB_USER }}
Expand Down
9 changes: 8 additions & 1 deletion infra/prod/index.ts
Original file line number Diff line number Diff line change
Expand Up @@ -1358,11 +1358,18 @@ createIndexerService(
);

export const dockerGtcSubmitPassportLambdaImage = `${process.env["DOCKER_GTC_SUBMIT_PASSPORT_LAMBDA_IMAGE"]}`;
const trustedIAMIssuer = `${process.env["TRUSTED_IAM_ISSUER"]}`;

buildLambdaFn(
httpsListener,
dockerGtcSubmitPassportLambdaImage,
privateSubnetSecurityGroup,
vpcPrivateSubnetIds,
environment
[
...environment,
{
name: "TRUSTED_IAM_ISSUER",
value: trustedIAMIssuer,
},
]
);
9 changes: 8 additions & 1 deletion infra/staging/index.ts
Original file line number Diff line number Diff line change
Expand Up @@ -466,13 +466,20 @@ const scorerServiceRegistrySubmitPassport = createScorerECSService(
);

export const dockerGtcSubmitPassportLambdaImage = `${process.env["DOCKER_GTC_SUBMIT_PASSPORT_LAMBDA_IMAGE"]}`;
const trustedIAMIssuer = `${process.env["TRUSTED_IAM_ISSUER"]}`;

buildLambdaFn(
httpsListener,
dockerGtcSubmitPassportLambdaImage,
privateSubnetSecurityGroup,
vpcPrivateSubnetIds,
environment
[
...environment,
{
name: "TRUSTED_IAM_ISSUER",
value: trustedIAMIssuer,
},
]
);

//////////////////////////////////////////////////////////////
Expand Down

0 comments on commit ad3849a

Please sign in to comment.