@@ -223,26 +223,32 @@ jobs:
223
223
- name : Install Updatecli in the runner
224
224
uses : updatecli/updatecli-action@79983ec58a76fe0c87fc76f5a5c7ef8df0bb36c4 # v2.77.0
225
225
226
+ - uses : actions/create-github-app-token@c1a285145b9d317df6ced56c09f525b5c2b6f755 # v1.11.1
227
+ id : generate-token
228
+ with :
229
+ app-id : ${{ secrets.APP_ID }}
230
+ private-key : ${{ secrets.APP_PRIVATE_KEY }}
231
+
226
232
- name : Update kubewarden-defaults Helm chart
227
233
if : endsWith(needs.setvariables.outputs.repository, 'policy-server')
228
234
env :
229
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
235
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
230
236
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
231
237
UPDATECLI_CHART_VERSION : ${{ needs.setvariables.outputs.version }}
232
238
run : " updatecli apply --config ./updatecli/updatecli.d/patch-kubewarden-defaults.yaml --values updatecli/values.yaml"
233
239
234
240
- name : Update kubewarden-controller Helm chart with no CRDs update
235
241
if : (endsWith(needs.setvariables.outputs.repository, 'kubewarden-controller') || endsWith(needs.setvariables.outputs.repository, 'audit-scanner')) && steps.update_crds.outputs.must_update_crds_chart==0
236
242
env :
237
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
243
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
238
244
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
239
245
UPDATECLI_CHART_VERSION : ${{ needs.setvariables.outputs.version }}
240
246
run : " updatecli apply --config ./updatecli/updatecli.d/patch-kubewarden-controller.yaml --values updatecli/values.yaml"
241
247
242
248
- name : Update kubewarden-controller Helm chart with CRDs update
243
249
if : (endsWith(needs.setvariables.outputs.repository, 'kubewarden-controller') || endsWith(needs.setvariables.outputs.repository, 'audit-scanner')) && steps.update_crds.outputs.must_update_crds_chart!=0
244
250
env :
245
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
251
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
246
252
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
247
253
UPDATECLI_CHART_VERSION : ${{ needs.setvariables.outputs.version }}
248
254
run : " updatecli apply --config ./updatecli/updatecli.d/patch-kubewarden-controller-with-crds-update.yaml --values updatecli/values.yaml"
@@ -366,10 +372,16 @@ jobs:
366
372
- name : Install Updatecli in the runner
367
373
uses : updatecli/updatecli-action@79983ec58a76fe0c87fc76f5a5c7ef8df0bb36c4 # v2.77.0
368
374
375
+ - uses : actions/create-github-app-token@c1a285145b9d317df6ced56c09f525b5c2b6f755 # v1.11.1
376
+ id : generate-token
377
+ with :
378
+ app-id : ${{ secrets.APP_ID }}
379
+ private-key : ${{ secrets.APP_PRIVATE_KEY }}
380
+
369
381
- name : Major or minor update Kubewarden charts with NO CRDs update
370
382
if : steps.update_crds.outputs.must_update_crds_chart==0 && (needs.check-update-type.outputs.update_type == 'major' || needs.check-update-type.outputs.update_type == 'minor')
371
383
env :
372
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
384
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
373
385
UPDATECLI_SEMVERINC_UPDATE : ${{ needs.check-update-type.outputs.update_type }}
374
386
UPDATECLI_PRERELEASE_SUFFIX : ${{ needs.check-update-type.outputs.prerelease }}
375
387
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
@@ -379,7 +391,7 @@ jobs:
379
391
- name : Major or minor update Kubewarden charts WITH CRDs update
380
392
if : steps.update_crds.outputs.must_update_crds_chart==1 && (needs.check-update-type.outputs.update_type == 'major' || needs.check-update-type.outputs.update_type == 'minor')
381
393
env :
382
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
394
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
383
395
UPDATECLI_SEMVERINC_UPDATE : ${{ needs.check-update-type.outputs.update_type }}
384
396
UPDATECLI_PRERELEASE_SUFFIX : ${{ needs.check-update-type.outputs.prerelease }}
385
397
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
@@ -389,7 +401,7 @@ jobs:
389
401
- name : Prerelease update Kubewarden charts with NO CRDs update
390
402
if : steps.update_crds.outputs.must_update_crds_chart==0 && needs.check-update-type.outputs.update_type == 'prerelease'
391
403
env :
392
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
404
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
393
405
UPDATECLI_SEMVERINC_UPDATE : ${{ needs.check-update-type.outputs.update_type }}
394
406
UPDATECLI_PRERELEASE_SUFFIX : ${{ needs.check-update-type.outputs.prerelease }}
395
407
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
@@ -399,7 +411,7 @@ jobs:
399
411
- name : Prerelease update Kubewarden charts WITH CRDs update
400
412
if : steps.update_crds.outputs.must_update_crds_chart==1 && needs.check-update-type.outputs.update_type == 'prerelease'
401
413
env :
402
- UPDATECLI_GITHUB_TOKEN : ${{ secrets.GITHUB_TOKEN }}
414
+ UPDATECLI_GITHUB_TOKEN : ${{ steps.generate-token.outputs.token }}
403
415
UPDATECLI_SEMVERINC_UPDATE : ${{ needs.check-update-type.outputs.update_type }}
404
416
UPDATECLI_PRERELEASE_SUFFIX : ${{ needs.check-update-type.outputs.prerelease }}
405
417
UPDATECLI_GITHUB_OWNER : ${{ github.repository_owner }}
0 commit comments