use secrets directly
This commit is contained in:
@@ -15,11 +15,9 @@ jobs:
|
||||
- name: Run Ansible playbook
|
||||
env:
|
||||
ANSIBLE_HOST_KEY_CHECKING: 'false'
|
||||
SSH_KEY: ${{ secrets.ANSIBLE_PRIVATE_KEY }}
|
||||
BECOME_PASS: ${{ secrets.ANSIBLE_BECOME_PASS }}
|
||||
run: |
|
||||
apt update && apt install -y ansible && \
|
||||
echo -e ${SSH_KEY} > /mnt/default-key && \
|
||||
echo ${BECOME_PASS} > /mnt/become-pass.txt && \
|
||||
echo -e "${{ secrets.ANSIBLE_PRIVATE_KEY }}" > /mnt/default-key && \
|
||||
echo "${{ secrets.ANSIBLE_BECOME_PASS }}" > /mnt/become-pass.txt && \
|
||||
chmod 600 /mnt/default-key && \
|
||||
ansible-playbook -i inventory.yml --vault-pass-file /mnt/become-pass.txt --key-file /mnt/default-key playbooks/update-packages.yml
|
||||
|
||||
Reference in New Issue
Block a user