Use AwsSessionCredentials to support aws oidc #432
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# This file was automatically generated by sbt-github-actions using the | |
# githubWorkflowGenerate task. You should add and commit this file to | |
# your git repository. It goes without saying that you shouldn't edit | |
# this file by hand! Instead, if you wish to make changes, you should | |
# change your sbt build configuration to revise the workflow description | |
# to meet your needs, then regenerate this file. | |
name: Continuous Integration | |
on: | |
pull_request: | |
branches: ['**', '!update/**', '!pr/**'] | |
push: | |
branches: ['**', '!update/**', '!pr/**'] | |
tags: [v*] | |
env: | |
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
concurrency: | |
group: ${{ github.workflow }} @ ${{ github.ref }} | |
cancel-in-progress: true | |
jobs: | |
build: | |
name: Build and Test | |
strategy: | |
matrix: | |
os: [ubuntu-latest] | |
scala: [2.13, 3] | |
java: [temurin@8] | |
project: [rootJVM] | |
runs-on: ${{ matrix.os }} | |
timeout-minutes: 60 | |
steps: | |
- name: Install sbt | |
uses: sbt/setup-sbt@v1 | |
- name: Checkout current branch (full) | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
- name: Setup Java (temurin@8) | |
id: setup-java-temurin-8 | |
if: matrix.java == 'temurin@8' | |
uses: actions/setup-java@v4 | |
with: | |
distribution: temurin | |
java-version: 8 | |
cache: sbt | |
- name: sbt update | |
if: matrix.java == 'temurin@8' && steps.setup-java-temurin-8.outputs.cache-hit == 'false' | |
run: sbt +update | |
- name: Install Python 3.10 | |
uses: actions/setup-python@v5 | |
with: | |
python-version: 3.10.15 | |
- name: Install localstack | |
env: | |
SERVICES: sqs | |
uses: LocalStack/[email protected] | |
with: | |
image-tag: latest | |
- name: Install gcloud | |
uses: google-github-actions/setup-gcloud@v2 | |
with: | |
install_components: beta,pubsub-emulator | |
- name: Run PubSub emulator | |
run: ./gcp/pubsub/emulator/start.sh & | |
- name: Check that workflows are up to date | |
run: sbt githubWorkflowCheck | |
- name: Check headers and formatting | |
if: matrix.java == 'temurin@8' && matrix.os == 'ubuntu-latest' | |
run: sbt 'project ${{ matrix.project }}' '++ ${{ matrix.scala }}' headerCheckAll scalafmtCheckAll 'project /' scalafmtSbtCheck | |
- name: Check scalafix lints | |
if: matrix.java == 'temurin@8' && matrix.os == 'ubuntu-latest' | |
run: sbt 'project ${{ matrix.project }}' '++ ${{ matrix.scala }}' 'scalafixAll --check' | |
- name: Test | |
run: sbt 'project ${{ matrix.project }}' '++ ${{ matrix.scala }}' test | |
- name: Check binary compatibility | |
if: matrix.java == 'temurin@8' && matrix.os == 'ubuntu-latest' | |
run: sbt 'project ${{ matrix.project }}' '++ ${{ matrix.scala }}' mimaReportBinaryIssues | |
- name: Generate API documentation | |
if: matrix.java == 'temurin@8' && matrix.os == 'ubuntu-latest' | |
run: sbt 'project ${{ matrix.project }}' '++ ${{ matrix.scala }}' doc | |
- name: Make target directories | |
if: github.event_name != 'pull_request' && (startsWith(github.ref, 'refs/tags/v') || github.ref == 'refs/heads/main') | |
run: mkdir -p testing/.jvm/target circe/.jvm/target unidocs/target otel4s/.jvm/target aws/sqs/.jvm/target gcp/pubsub/.jvm/target core/.jvm/target azure/service-bus/.jvm/target project/target | |
- name: Compress target directories | |
if: github.event_name != 'pull_request' && (startsWith(github.ref, 'refs/tags/v') || github.ref == 'refs/heads/main') | |
run: tar cf targets.tar testing/.jvm/target circe/.jvm/target unidocs/target otel4s/.jvm/target aws/sqs/.jvm/target gcp/pubsub/.jvm/target core/.jvm/target azure/service-bus/.jvm/target project/target | |
- name: Upload target directories | |
if: github.event_name != 'pull_request' && (startsWith(github.ref, 'refs/tags/v') || github.ref == 'refs/heads/main') | |
uses: actions/upload-artifact@v4 | |
with: | |
name: target-${{ matrix.os }}-${{ matrix.java }}-${{ matrix.scala }}-${{ matrix.project }} | |
path: targets.tar | |
publish: | |
name: Publish Artifacts | |
needs: [build] | |
if: github.event_name != 'pull_request' && (startsWith(github.ref, 'refs/tags/v') || github.ref == 'refs/heads/main') | |
strategy: | |
matrix: | |
os: [ubuntu-latest] | |
java: [temurin@8] | |
runs-on: ${{ matrix.os }} | |
steps: | |
- name: Install sbt | |
uses: sbt/setup-sbt@v1 | |
- name: Checkout current branch (full) | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
- name: Setup Java (temurin@8) | |
id: setup-java-temurin-8 | |
if: matrix.java == 'temurin@8' | |
uses: actions/setup-java@v4 | |
with: | |
distribution: temurin | |
java-version: 8 | |
cache: sbt | |
- name: sbt update | |
if: matrix.java == 'temurin@8' && steps.setup-java-temurin-8.outputs.cache-hit == 'false' | |
run: sbt +update | |
- name: Download target directories (2.13, rootJVM) | |
uses: actions/download-artifact@v4 | |
with: | |
name: target-${{ matrix.os }}-${{ matrix.java }}-2.13-rootJVM | |
- name: Inflate target directories (2.13, rootJVM) | |
run: | | |
tar xf targets.tar | |
rm targets.tar | |
- name: Download target directories (3, rootJVM) | |
uses: actions/download-artifact@v4 | |
with: | |
name: target-${{ matrix.os }}-${{ matrix.java }}-3-rootJVM | |
- name: Inflate target directories (3, rootJVM) | |
run: | | |
tar xf targets.tar | |
rm targets.tar | |
- name: Import signing key | |
if: env.PGP_SECRET != '' && env.PGP_PASSPHRASE == '' | |
env: | |
PGP_SECRET: ${{ secrets.PGP_SECRET }} | |
PGP_PASSPHRASE: ${{ secrets.PGP_PASSPHRASE }} | |
run: echo $PGP_SECRET | base64 -d -i - | gpg --import | |
- name: Import signing key and strip passphrase | |
if: env.PGP_SECRET != '' && env.PGP_PASSPHRASE != '' | |
env: | |
PGP_SECRET: ${{ secrets.PGP_SECRET }} | |
PGP_PASSPHRASE: ${{ secrets.PGP_PASSPHRASE }} | |
run: | | |
echo "$PGP_SECRET" | base64 -d -i - > /tmp/signing-key.gpg | |
echo "$PGP_PASSPHRASE" | gpg --pinentry-mode loopback --passphrase-fd 0 --import /tmp/signing-key.gpg | |
(echo "$PGP_PASSPHRASE"; echo; echo) | gpg --command-fd 0 --pinentry-mode loopback --change-passphrase $(gpg --list-secret-keys --with-colons 2> /dev/null | grep '^sec:' | cut --delimiter ':' --fields 5 | tail -n 1) | |
- name: Publish | |
env: | |
SONATYPE_USERNAME: ${{ secrets.SONATYPE_USERNAME }} | |
SONATYPE_PASSWORD: ${{ secrets.SONATYPE_PASSWORD }} | |
SONATYPE_CREDENTIAL_HOST: ${{ secrets.SONATYPE_CREDENTIAL_HOST }} | |
run: sbt tlCiRelease | |
site: | |
name: Generate Site | |
strategy: | |
matrix: | |
os: [ubuntu-latest] | |
java: [temurin@11] | |
runs-on: ${{ matrix.os }} | |
steps: | |
- name: Install sbt | |
uses: sbt/setup-sbt@v1 | |
- name: Checkout current branch (full) | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
- name: Setup Java (temurin@8) | |
id: setup-java-temurin-8 | |
if: matrix.java == 'temurin@8' | |
uses: actions/setup-java@v4 | |
with: | |
distribution: temurin | |
java-version: 8 | |
cache: sbt | |
- name: sbt update | |
if: matrix.java == 'temurin@8' && steps.setup-java-temurin-8.outputs.cache-hit == 'false' | |
run: sbt +update | |
- name: Setup Java (temurin@11) | |
id: setup-java-temurin-11 | |
if: matrix.java == 'temurin@11' | |
uses: actions/setup-java@v4 | |
with: | |
distribution: temurin | |
java-version: 11 | |
cache: sbt | |
- name: sbt update | |
if: matrix.java == 'temurin@11' && steps.setup-java-temurin-11.outputs.cache-hit == 'false' | |
run: sbt +update | |
- name: Generate site | |
run: sbt docs/tlSite | |
- name: Publish site | |
if: github.event_name != 'pull_request' && github.ref == 'refs/heads/main' | |
uses: peaceiris/[email protected] | |
with: | |
github_token: ${{ secrets.GITHUB_TOKEN }} | |
publish_dir: site/target/docs/site | |
keep_files: true |