-
Notifications
You must be signed in to change notification settings - Fork 1
55 lines (45 loc) · 1.33 KB
/
ci-pull-request-cspm.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
name: CI - Pull Request CSPM
on:
pull_request:
branches:
- main
paths:
- 'templates_cspm/**'
jobs:
lint:
name: Lint
runs-on: ubuntu-latest
steps:
- name: Check out code
uses: actions/checkout@v3
- name: cfn-lint
uses: scottbrenner/cfn-lint-action@v2
- name: Print the Cloud Formation Linter Version & run Linter
run: |
cfn-lint --version
cfn-lint -t templates_cspm/**/*.yaml
build:
name: Build and Upload CSPM templates
runs-on: ubuntu-latest
needs: [lint]
steps:
- name: Check out code
uses: actions/checkout@v3
- name: Configure AWS credentials
uses: aws-actions/configure-aws-credentials@v1
with:
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
aws-region: eu-west-1
- name: Build and Upload CSPM Templates
run: make ci
working-directory: templates_cspm
env:
S3_BUCKET: cf-templates-cloudvision-ci
S3_PREFIX: pr/${{ github.event.pull_request.head.ref }}
- name: Build and Upload CSPM Org Templates
run: make ci-org
working-directory: templates_cspm
env:
S3_BUCKET: cf-templates-cloudvision-ci
S3_PREFIX: pr/${{ github.event.pull_request.head.ref }}