Skip to content

Commit e6f7569

Browse files
Merge branch 'dev' into ve-networkchanges
2 parents 80f06b6 + 06dc656 commit e6f7569

File tree

5 files changed

+23
-16
lines changed

5 files changed

+23
-16
lines changed

.github/workflows/deploy.yml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -33,16 +33,16 @@ jobs:
3333
3434
- name: Login to Azure
3535
run: |
36-
az login --service-principal -u ${{ secrets.AZURE_MAINTENANCE_CLIENT_ID }} -p ${{ secrets.AZURE_MAINTENANCE_CLIENT_SECRET }} --tenant ${{ secrets.AZURE_TENANT_ID }}
37-
az account set --subscription ${{ secrets.AZURE_MAINTENANCE_SUBSCRIPTION_ID }}
36+
az login --service-principal -u ${{ secrets.AZURE_CLIENT_ID }} -p ${{ secrets.AZURE_CLIENT_SECRET }} --tenant ${{ secrets.AZURE_TENANT_ID }}
37+
az account set --subscription ${{ secrets.AZURE_SUBSCRIPTION_ID }}
3838
3939
- name: Run Quota Check
4040
id: quota-check
4141
run: |
42-
export AZURE_MAINTENANCE_CLIENT_ID=${{ secrets.AZURE_MAINTENANCE_CLIENT_ID }}
42+
export AZURE_CLIENT_ID=${{ secrets.AZURE_CLIENT_ID }}
4343
export AZURE_TENANT_ID=${{ secrets.AZURE_TENANT_ID }}
44-
export AZURE_MAINTENANCE_CLIENT_SECRET=${{ secrets.AZURE_MAINTENANCE_CLIENT_SECRET }}
45-
export AZURE_MAINTENANCE_SUBSCRIPTION_ID="${{ secrets.AZURE_MAINTENANCE_SUBSCRIPTION_ID }}"
44+
export AZURE_CLIENT_SECRET=${{ secrets.AZURE_CLIENT_SECRET }}
45+
export AZURE_SUBSCRIPTION_ID="${{ secrets.AZURE_SUBSCRIPTION_ID }}"
4646
export GPT_MIN_CAPACITY="100"
4747
export AZURE_REGIONS="${{ vars.AZURE_REGIONS }}"
4848
@@ -301,8 +301,8 @@ jobs:
301301

302302
- name: Login to Azure
303303
run: |
304-
az login --service-principal -u ${{ secrets.AZURE_MAINTENANCE_CLIENT_ID }} -p ${{ secrets.AZURE_MAINTENANCE_CLIENT_SECRET }} --tenant ${{ secrets.AZURE_TENANT_ID }}
305-
az account set --subscription ${{ secrets.AZURE_MAINTENANCE_SUBSCRIPTION_ID }}
304+
az login --service-principal -u ${{ secrets.AZURE_CLIENT_ID }} -p ${{ secrets.AZURE_CLIENT_SECRET }} --tenant ${{ secrets.AZURE_TENANT_ID }}
305+
az account set --subscription ${{ secrets.AZURE_SUBSCRIPTION_ID }}
306306
307307
- name: Delete Bicep Deployment
308308
if: always()
@@ -459,7 +459,7 @@ jobs:
459459
460460
echo "Processing KeyVault: $keyvault_name"
461461
# Check if the KeyVault is soft-deleted
462-
deleted_vaults=$(az keyvault list-deleted --query "[?name=='$keyvault_name']" -o json --subscription ${{ secrets.AZURE_MAINTENANCE_SUBSCRIPTION_ID }})
462+
deleted_vaults=$(az keyvault list-deleted --query "[?name=='$keyvault_name']" -o json --subscription ${{ secrets.AZURE_SUBSCRIPTION_ID }})
463463
464464
# If the KeyVault is found in the soft-deleted state, purge it
465465
if [ "$(echo "$deleted_vaults" | jq length)" -gt 0 ]; then

.github/workflows/test-automation.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -31,8 +31,8 @@ jobs:
3131

3232
- name: Login to Azure
3333
run: |
34-
az login --service-principal -u ${{ secrets.AZURE_MAINTENANCE_CLIENT_ID }} -p ${{ secrets.AZURE_MAINTENANCE_CLIENT_SECRET }} --tenant ${{ secrets.AZURE_TENANT_ID }}
35-
az account set --subscription ${{ secrets.AZURE_MAINTENANCE_SUBSCRIPTION_ID }}
34+
az login --service-principal -u ${{ secrets.AZURE_CLIENT_ID }} -p ${{ secrets.AZURE_CLIENT_SECRET }} --tenant ${{ secrets.AZURE_TENANT_ID }}
35+
az account set --subscription ${{ secrets.AZURE_SUBSCRIPTION_ID }}
3636
3737
- name: Install dependencies
3838
run: |

azure.yaml

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,10 @@ hooks:
1414
postprovision:
1515
posix:
1616
shell: sh
17-
run: sed -i 's/\r$//' ./infra/scripts/post_deployment.sh; ./infra/scripts/post_deployment.sh
17+
run: |
18+
sudo chmod u+r+x ./infra/scripts/post_deployment.sh
19+
sed -i 's/\r$//' ./infra/scripts/post_deployment.sh
20+
./infra/scripts/post_deployment.sh
1821
interactive: true
1922
windows:
2023
shell: pwsh

infra/main.bicep

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -61,7 +61,10 @@ param publicContainerImageEndpoint string = 'cpscontainerreg.azurecr.io'
6161
@description('Optional. The resource group location.')
6262
param resourceGroupLocation string = resourceGroup().location
6363

64-
@description('Optional. Enable WAF for the deployment.')
64+
@description('Optional. The resource name format string.')
65+
param resourceNameFormatString string = '{0}avm-cps'
66+
67+
@description('Optional. Enable private networking for applicable resources, aligned with the Well Architected Framework recommendations. Defaults to false.')
6568
param enablePrivateNetworking bool = false
6669

6770
@description('Optional. Enable/Disable usage telemetry for module.')
@@ -979,6 +982,7 @@ module avmAppConfig 'br/public:avm/res/app-configuration/configuration-store:0.6
979982
params: {
980983
name: 'appcs-${solutionSuffix}'
981984
location: resourceGroupLocation
985+
enablePurgeProtection: false
982986
tags: {
983987
app: solutionSuffix
984988
location: resourceGroupLocation

infra/scripts/checkquota.sh

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,15 +3,15 @@
33
# List of Azure regions to check for quota (update as needed)
44
IFS=', ' read -ra REGIONS <<< "$AZURE_REGIONS"
55

6-
SUBSCRIPTION_ID="${AZURE_MAINTENANCE_SUBSCRIPTION_ID}"
6+
SUBSCRIPTION_ID="${AZURE_SUBSCRIPTION_ID}"
77
GPT_MIN_CAPACITY="${GPT_MIN_CAPACITY}"
8-
AZURE_MAINTENANCE_CLIENT_ID="${AZURE_MAINTENANCE_CLIENT_ID}"
8+
AZURE_CLIENT_ID="${AZURE_CLIENT_ID}"
99
AZURE_TENANT_ID="${AZURE_TENANT_ID}"
10-
AZURE_MAINTENANCE_CLIENT_SECRET="${AZURE_MAINTENANCE_CLIENT_SECRET}"
10+
AZURE_CLIENT_SECRET="${AZURE_CLIENT_SECRET}"
1111

1212
# Authenticate using Managed Identity
1313
echo "Authentication using Managed Identity..."
14-
if ! az login --service-principal -u "$AZURE_MAINTENANCE_CLIENT_ID" -p "$AZURE_MAINTENANCE_CLIENT_SECRET" --tenant "$AZURE_TENANT_ID"; then
14+
if ! az login --service-principal -u "$AZURE_CLIENT_ID" -p "$AZURE_CLIENT_SECRET" --tenant "$AZURE_TENANT_ID"; then
1515
echo "❌ Error: Failed to login using Managed Identity."
1616
exit 1
1717
fi

0 commit comments

Comments
 (0)