Skip to content

Commit bad297b

Browse files
Clara HilleClara Hille
Clara Hille
authored and
Clara Hille
committed
Log into AWS
1 parent 6d9a19d commit bad297b

File tree

2 files changed

+18
-4
lines changed

2 files changed

+18
-4
lines changed

.github/workflows/check.yml

+9-2
Original file line numberDiff line numberDiff line change
@@ -7,11 +7,18 @@ on:
77
workflow_call:
88

99
jobs:
10-
credentials-scan:
11-
uses: getyourguide/actions/.github/workflows/credentials-scan.yml@main
1210
check:
1311
runs-on: ubuntu-latest
12+
permissions:
13+
id-token: write
14+
contents: read
1415
steps:
16+
- name: Log into production account
17+
uses: aws-actions/configure-aws-credentials@v4.1.0
18+
with:
19+
aws-region: eu-central-1
20+
role-to-assume: arn:aws:iam::130607246975:role/ci-base-access
21+
role-session-name: dss
1522
- uses: actions/checkout@v3
1623
- name: Set up JDK
1724
uses: actions/setup-java@v3

.github/workflows/publish.yml

+9-2
Original file line numberDiff line numberDiff line change
@@ -6,14 +6,21 @@ on:
66
- 'v*'
77

88
jobs:
9-
credentials-scan:
10-
uses: getyourguide/actions/.github/workflows/credentials-scan.yml@main
119
check:
1210
uses: ./.github/workflows/check.yml
1311
publish:
1412
needs: check
1513
runs-on: ubuntu-latest
14+
permissions:
15+
id-token: write
16+
contents: read
1617
steps:
18+
- name: Log into production account
19+
uses: aws-actions/configure-aws-credentials@v4.1.0
20+
with:
21+
aws-region: eu-central-1
22+
role-to-assume: arn:aws:iam::130607246975:role/ci-base-access
23+
role-session-name: dss
1724
- uses: actions/checkout@v3
1825
- name: Set up JDK
1926
uses: actions/setup-java@v3

0 commit comments

Comments
 (0)