[SSPROD-40004] Adding permissions for aws-templates for the getFunction call #109
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
name: CI - Pull Request CSPM | |
on: | |
pull_request: | |
branches: | |
- main | |
paths: | |
- 'templates_cspm/**' | |
jobs: | |
lint: | |
name: Lint | |
runs-on: ubuntu-latest | |
steps: | |
- name: Check out code | |
uses: actions/checkout@v3 | |
- name: cfn-lint | |
uses: scottbrenner/cfn-lint-action@v2 | |
- name: Print the Cloud Formation Linter Version & run Linter | |
run: | | |
cfn-lint --version | |
cfn-lint -t templates_cspm/**/*.yaml | |
build: | |
name: Build and Upload CSPM templates | |
runs-on: ubuntu-latest | |
needs: [lint] | |
steps: | |
- name: Check out code | |
uses: actions/checkout@v3 | |
- name: Configure AWS credentials | |
uses: aws-actions/configure-aws-credentials@v1 | |
with: | |
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }} | |
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }} | |
aws-region: eu-west-1 | |
- name: Build and Upload CSPM Templates | |
run: make ci | |
working-directory: templates_cspm | |
env: | |
S3_BUCKET: cf-templates-cloudvision-ci | |
S3_PREFIX: pr/${{ github.event.pull_request.head.ref }} | |
- name: Build and Upload CSPM Org Templates | |
run: make ci-org | |
working-directory: templates_cspm | |
env: | |
S3_BUCKET: cf-templates-cloudvision-ci | |
S3_PREFIX: pr/${{ github.event.pull_request.head.ref }} |