vaguerent/.github/workflows/packet-vars.yml
2022-11-04 17:04:28 -07:00

38 lines
1.2 KiB
YAML

name: Packet Vars
on:
workflow_call:
outputs:
PACKET_EXEC_TOKEN:
value: ${{ jobs.get-vars.outputs.PACKET_TOKEN }}
PACKET_EXEC_PROJECT_ID:
value: ${{ jobs.get-vars.outputs.PACKET_PROJECT_ID }}
PACKET_SSH_KEY_CONTENT:
value: ${{ jobs.get-vars.outputs.PACKET_SSH_KEY_CONTENT }}
jobs:
get-vars:
runs-on: self-hosted
permissions:
id-token: write
contents: read
outputs:
PACKET_EXEC_TOKEN: ${{ steps.vars.outputs.PACKET_TOKEN }}
PACKET_EXEC_PROJECT_ID: ${{ steps.vars.outputs.PACKET_PROJECT_ID }}
PACKET_SSH_KEY_CONTENT: ${{ steps.vars.outputs.PACKET_SSH_KEY_CONTENT }}
steps:
- name: Authentication
id: vault-auth
run: vault-auth
- name: Fetch vars
id: vars
uses: hashicorp/vault-action@v2
with:
url: ${{ steps.vault-auth.outputs.addr }}
caCertificate: ${{ steps.vault-auth.outputs.ca_certificate }}
token: ${{ steps.vault-auth.outputs.token }}
secrets:
kv/data/teams/vagrant/packet token | PACKET_TOKEN;
kv/data/teams/vagrant/packet project_id | PACKET_PROJECT_ID;
kv/data/teams/vagrant/packet ssh_key_content | PACKET_SSH_KEY_CONTENT;