fix: use project_id in firefly-iii playbook infisical requests
Infrastructure / Check and run Ansbile playbooks (push) Successful in 3m11s Details

This commit is contained in:
Gleb Koval 2024-11-26 19:53:33 +00:00
parent b4a73f1dea
commit 42326a0e31
Signed by: cyclane
GPG Key ID: 15E168A8B332382C
1 changed files with 10 additions and 5 deletions

View File

@ -27,17 +27,20 @@
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.env" path: "$HOME/{{ app }}/.env"
regexp: "APP_KEY_VALUE" regexp: "APP_KEY_VALUE"
replace: "{{ lookup('infisical.vault.read_secrets', env_slug='prod', path='/finance', secret_name='APP_KEY')['value'] }}" replace: "{{ lookup('infisical.vault.read_secrets', project_id=infisical_project, env_slug='prod',
path='/finance', secret_name='APP_KEY')['value'] }}"
- name: Replace DB secret - name: Replace DB secret
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.env" path: "$HOME/{{ app }}/.env"
regexp: "DB_PASSWORD_VALUE" regexp: "DB_PASSWORD_VALUE"
replace: "{{ lookup('infisical.vault.read_secrets', env_slug='prod', path='/finance', secret_name='DB_PASSWORD')['value'] }}" replace: "{{ lookup('infisical.vault.read_secrets', project_id=infisical_project, env_slug='prod',
path='/finance', secret_name='DB_PASSWORD')['value'] }}"
- name: Replace cron token secret - name: Replace cron token secret
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.env" path: "$HOME/{{ app }}/.env"
regexp: "STATIC_CRON_TOKEN_VALUE" regexp: "STATIC_CRON_TOKEN_VALUE"
replace: "{{ lookup('infisical.vault.read_secrets', env_slug='prod', path='/finance', secret_name='STATIC_CRON_TOKEN')['value'] }}" replace: "{{ lookup('infisical.vault.read_secrets', project_id=infisical_project, env_slug='prod',
path='/finance', secret_name='STATIC_CRON_TOKEN')['value'] }}"
- name: Replace SMTP Password secret (app) - name: Replace SMTP Password secret (app)
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.env" path: "$HOME/{{ app }}/.env"
@ -48,12 +51,14 @@
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.importer.env" path: "$HOME/{{ app }}/.importer.env"
regexp: "NORDIGEN_ID_VALUE" regexp: "NORDIGEN_ID_VALUE"
replace: "{{ lookup('infisical.vault.read_secrets', env_slug='prod', path='/finance', secret_name='NORDIGEN_ID')['value'] }}" replace: "{{ lookup('infisical.vault.read_secrets', project_id=infisical_project, env_slug='prod',
path='/finance', secret_name='NORDIGEN_ID')['value'] }}"
- name: Replace Nordigen Key secret - name: Replace Nordigen Key secret
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.importer.env" path: "$HOME/{{ app }}/.importer.env"
regexp: "NORDIGEN_KEY_VALUE" regexp: "NORDIGEN_KEY_VALUE"
replace: "{{ lookup('infisical.vault.read_secrets', env_slug='prod', path='/finance', secret_name='NORDIGEN_KEY')['value'] }}" replace: "{{ lookup('infisical.vault.read_secrets', project_id=infisical_project, env_slug='prod',
path='/finance', secret_name='NORDIGEN_KEY')['value'] }}"
- name: Replace SMTP Password secret (importer) - name: Replace SMTP Password secret (importer)
ansible.builtin.replace: ansible.builtin.replace:
path: "$HOME/{{ app }}/.importer.env" path: "$HOME/{{ app }}/.importer.env"