This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| version: 2 | |
| jobs: | |
| docker-image-publish: | |
| steps: | |
| - setup_remote_docker | |
| - checkout | |
| - run: | |
| name: "Build" | |
| command: "docker build -t my-repo/my-image-name:and-tag ." | |
| - run: |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| func decryptSecretFile(secretFile string) (string, error) { | |
| secretBytes, err := ioutil.ReadFile(secretFile) | |
| if err != nil { | |
| return "", err | |
| } | |
| kmsClient := kms.New(session.New(&aws.Config{ | |
| Region: aws.String("us-east-1"), | |
| })) |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| func downloadSecret(secretFileName string) (string, error) { | |
| s3Downloader := s3manager.NewDownloader(session.New(&aws.Config{ | |
| Region: aws.String("us-east-1"), | |
| })) | |
| f, err := os.Create(secretName) | |
| if err != nil { | |
| return "", err | |
| } |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| func uploadSecret(secretFileName string) error { | |
| s3Uploader := s3manager.NewUploader(session.New(&aws.Config{ | |
| Region: aws.String("us-east-1"), | |
| })) | |
| reader, err := os.Open(secretFileName) | |
| if err != nil { | |
| return err | |
| } |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| func encryptSecret(name string, value string) (string, error) { | |
| kmsKeyARN := "arn:aws:kms:us-east-1:012345678910:key/0000000-0000-0000-0000-000000000000" | |
| kmsClient := kms.New(session.New(&aws.Config{ | |
| Region: aws.String("us-east-1"), | |
| })) | |
| params := &kms.EncryptInput{ | |
| KeyId: aws.String(kmsKeyARN), | |
| Plaintext: []byte(value), |