Skip to content

CI/CD実装

CI/CD実装 #18

Workflow file for this run

name: ci/cd
on:
pull_request:
branches:
- "main"
types: ["opened", "synchronize"]
permissions:
id-token: write
contents: read
pull-requests: read
env:
SERVICE: ${{ secrets.SERVICE }}
ENV: test
jobs:
test:
runs-on: ubuntu-22.04
strategy:
fail-fast: false
matrix:
shard: [1/1]
steps:
# - name: Confirm minimum permissions
# uses: GitHubSecurityLab/actions-permissions/monitor@v1
# with:
# config: ${{ vars.PERMISSIONS_CONFIG }}
- name: Checkout project
uses: actions/checkout@v4
- name: setup
uses: ./.github/actions/setup
with:
workload_identity_provider: ${{ secrets.WORKLOAD_IDENTITY_PROVIDER }}
service_account: ${{ secrets.SERVICE_ACCOUNT }}
- name: Apply tier1
run: |
TF_VAR_service=$SERVICE \
TF_VAR_env=$ENV \
./terraform/environments/test/tier1/apply.sh
# build:
# runs-on: ubuntu-22.04
# env:
# SERVICE: ${{ secrets.SERVICE }}
# ENV: test
# steps:
# - name: Checkout project
# uses: actions/checkout@v4
# - name: setup
# uses: ./.github/actions/setup
# with:
# workload_identity_provider: ${{ secrets.WORKLOAD_IDENTITY_PROVIDER }}
# service_account: ${{ secrets.SERVICE_ACCOUNT }}