From a9854fdd05dc1b0d6fede9af1a5f6f64c45899f0 Mon Sep 17 00:00:00 2001 From: Michael Marchetti Date: Tue, 28 Jun 2022 11:42:33 -0400 Subject: [PATCH 1/2] switch docs from AWS id/secret to a role --- .github/workflows/main.yml | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 5d32b730..00eafdf9 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -125,8 +125,7 @@ jobs: - if: github.event_name == 'push' && startsWith(github.ref, 'refs/tags') uses: aws-actions/configure-aws-credentials@v1 with: - aws-access-key-id: ${{ secrets.DOCS_AWS_ID }} - aws-secret-access-key: ${{ secrets.DOCS_AWS_SECRET }} + role-to-assume: ${{ secrets.AWS_ROLE_TO_ASSUME }} aws-region: us-east-1 - if: github.event_name == 'push' && startsWith(github.ref, 'refs/tags') run: make promote-docs-in-s3 From 6a0d07108e6a8c72885c7ecd98a2cb272b9ac7a8 Mon Sep 17 00:00:00 2001 From: Michael Marchetti Date: Tue, 28 Jun 2022 11:46:13 -0400 Subject: [PATCH 2/2] update secret name --- .github/workflows/main.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 00eafdf9..07c66056 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -125,7 +125,7 @@ jobs: - if: github.event_name == 'push' && startsWith(github.ref, 'refs/tags') uses: aws-actions/configure-aws-credentials@v1 with: - role-to-assume: ${{ secrets.AWS_ROLE_TO_ASSUME }} + role-to-assume: ${{ secrets.DOCS_AWS_ROLE }} aws-region: us-east-1 - if: github.event_name == 'push' && startsWith(github.ref, 'refs/tags') run: make promote-docs-in-s3