mirror of
https://github.com/SAP/jenkins-library.git
synced 2024-12-12 10:55:20 +02:00
feature(vault) retrieve github token from Vault (#2484)
This commit is contained in:
parent
4bd155d1ed
commit
59f32cf042
@ -281,6 +281,12 @@ func fortifyExecuteScanMetadata() config.StepData {
|
||||
Name: "githubTokenCredentialsId",
|
||||
Type: "secret",
|
||||
},
|
||||
|
||||
{
|
||||
Name: "",
|
||||
Paths: []string{"$(vaultPath)/github", "$(vaultBasePath)/$(vaultPipelineName)/github", "$(vaultBasePath)/GROUP-SECRETS/github"},
|
||||
Type: "vaultSecret",
|
||||
},
|
||||
},
|
||||
Scope: []string{"GENERAL", "PARAMETERS", "STAGES", "STEPS"},
|
||||
Type: "string",
|
||||
|
@ -210,6 +210,12 @@ func githubCreatePullRequestMetadata() config.StepData {
|
||||
Name: "githubTokenCredentialsId",
|
||||
Type: "secret",
|
||||
},
|
||||
|
||||
{
|
||||
Name: "",
|
||||
Paths: []string{"$(vaultPath)/github", "$(vaultBasePath)/$(vaultPipelineName)/github", "$(vaultBasePath)/GROUP-SECRETS/github"},
|
||||
Type: "vaultSecret",
|
||||
},
|
||||
},
|
||||
Scope: []string{"GENERAL", "PARAMETERS", "STAGES", "STEPS"},
|
||||
Type: "string",
|
||||
|
@ -247,6 +247,12 @@ func githubPublishReleaseMetadata() config.StepData {
|
||||
Name: "githubTokenCredentialsId",
|
||||
Type: "secret",
|
||||
},
|
||||
|
||||
{
|
||||
Name: "",
|
||||
Paths: []string{"$(vaultPath)/github", "$(vaultBasePath)/$(vaultPipelineName)/github", "$(vaultBasePath)/GROUP-SECRETS/github"},
|
||||
Type: "vaultSecret",
|
||||
},
|
||||
},
|
||||
Scope: []string{"GENERAL", "PARAMETERS", "STAGES", "STEPS"},
|
||||
Type: "string",
|
||||
|
@ -208,6 +208,12 @@ func githubSetCommitStatusMetadata() config.StepData {
|
||||
Name: "githubTokenCredentialsId",
|
||||
Type: "secret",
|
||||
},
|
||||
|
||||
{
|
||||
Name: "",
|
||||
Paths: []string{"$(vaultPath)/github", "$(vaultBasePath)/$(vaultPipelineName)/github", "$(vaultBasePath)/GROUP-SECRETS/github"},
|
||||
Type: "vaultSecret",
|
||||
},
|
||||
},
|
||||
Scope: []string{"GENERAL", "PARAMETERS", "STAGES", "STEPS"},
|
||||
Type: "string",
|
||||
|
@ -369,6 +369,12 @@ func sonarExecuteScanMetadata() config.StepData {
|
||||
Name: "githubTokenCredentialsId",
|
||||
Type: "secret",
|
||||
},
|
||||
|
||||
{
|
||||
Name: "",
|
||||
Paths: []string{"$(vaultPath)/github", "$(vaultBasePath)/$(vaultPipelineName)/github", "$(vaultBasePath)/GROUP-SECRETS/github"},
|
||||
Type: "vaultSecret",
|
||||
},
|
||||
},
|
||||
Scope: []string{"PARAMETERS"},
|
||||
Type: "string",
|
||||
|
@ -59,6 +59,11 @@ spec:
|
||||
resourceRef:
|
||||
- name: githubTokenCredentialsId
|
||||
type: secret
|
||||
- type: vaultSecret
|
||||
paths:
|
||||
- $(vaultPath)/github
|
||||
- $(vaultBasePath)/$(vaultPipelineName)/github
|
||||
- $(vaultBasePath)/GROUP-SECRETS/github
|
||||
- name: autoCreate
|
||||
type: bool
|
||||
description:
|
||||
|
@ -116,6 +116,11 @@ spec:
|
||||
resourceRef:
|
||||
- name: githubTokenCredentialsId
|
||||
type: secret
|
||||
- type: vaultSecret
|
||||
paths:
|
||||
- $(vaultPath)/github
|
||||
- $(vaultBasePath)/$(vaultPipelineName)/github
|
||||
- $(vaultBasePath)/GROUP-SECRETS/github
|
||||
- name: labels
|
||||
description: Labels to be added to the pull request.
|
||||
scope:
|
||||
|
@ -144,6 +144,11 @@ spec:
|
||||
resourceRef:
|
||||
- name: githubTokenCredentialsId
|
||||
type: secret
|
||||
- type: vaultSecret
|
||||
paths:
|
||||
- $(vaultPath)/github
|
||||
- $(vaultBasePath)/$(vaultPipelineName)/github
|
||||
- $(vaultBasePath)/GROUP-SECRETS/github
|
||||
- name: uploadUrl
|
||||
aliases:
|
||||
- name: githubUploadUrl
|
||||
|
@ -117,3 +117,8 @@ spec:
|
||||
resourceRef:
|
||||
- name: githubTokenCredentialsId
|
||||
type: secret
|
||||
- type: vaultSecret
|
||||
paths:
|
||||
- $(vaultPath)/github
|
||||
- $(vaultBasePath)/$(vaultPipelineName)/github
|
||||
- $(vaultBasePath)/GROUP-SECRETS/github
|
||||
|
@ -202,6 +202,11 @@ spec:
|
||||
resourceRef:
|
||||
- name: githubTokenCredentialsId
|
||||
type: secret
|
||||
- type: vaultSecret
|
||||
paths:
|
||||
- $(vaultPath)/github
|
||||
- $(vaultBasePath)/$(vaultPipelineName)/github
|
||||
- $(vaultBasePath)/GROUP-SECRETS/github
|
||||
- name: disableInlineComments
|
||||
type: bool
|
||||
description: "Pull-Request only: Disables the pull-request decoration with inline comments.
|
||||
|
Loading…
Reference in New Issue
Block a user