Skip to content

Commit

Permalink
fix(EMS-2186): azure IaC fix
Browse files Browse the repository at this point in the history
  • Loading branch information
abhi-markan committed Jul 16, 2024
1 parent 993e52b commit 84d3b57
Showing 1 changed file with 12 additions and 12 deletions.
24 changes: 12 additions & 12 deletions .github/workflows/infrastructure.yml
Original file line number Diff line number Diff line change
Expand Up @@ -373,6 +373,18 @@ jobs:
inlineScript: |
az extension add --name front-door
- name: Key Vault 🔑
uses: azure/cli@v2
with:
inlineScript: |
az keyvault create \
--name kv-${{ env.PRODUCT }}${{ env.TARGET }}${{ vars.VERSION }} \
--default-action Deny \
--enable-purge-protection true \
--public-network-access Disabled \
--network-acls-ips ${{ secrets.WAF_ALLOWED_IP }} \
--network-acls-vnets $(az network vnet subnet list --vnet-name vnet-${{ env.PRODUCT }}-${{ env.TARGET }}-${{ vars.VERSION }} --query '[?contains(name, `keyvault`)].id' -o tsv)
- name: Private endpoint 🔏
uses: azure/cli@v2
with:
Expand Down Expand Up @@ -555,18 +567,6 @@ jobs:
--name IPAllowListRule \
--policy-name waf${{ env.PRODUCT }}${{ env.TARGET }}${{ vars.VERSION }}
- name: Key Vault 🔑
uses: azure/cli@v2
with:
inlineScript: |
az keyvault create \
--name kv-${{ env.PRODUCT }}${{ env.TARGET }}${{ vars.VERSION }} \
--default-action Deny \
--enable-purge-protection true \
--public-network-access Disabled \
--network-acls-ips ${{ secrets.WAF_ALLOWED_IP }} \
--network-acls-vnets $(az network vnet subnet list --vnet-name vnet-${{ env.PRODUCT }}-${{ env.TARGET }}-${{ vars.VERSION }} --query '[?contains(name, `keyvault`)].id' -o tsv)
# 4. WebApp configuration
webapp:
name: Web App 🔧
Expand Down

0 comments on commit 84d3b57

Please sign in to comment.