diff --git a/infrastructure/scripts/reana_secrets.sh b/infrastructure/scripts/reana_secrets.sh index b0afc25..f903b46 100644 --- a/infrastructure/scripts/reana_secrets.sh +++ b/infrastructure/scripts/reana_secrets.sh @@ -15,7 +15,7 @@ RAW_SECRETS_TMP_DIR="/root/software/vre/infrastructure/secrets/tmp_local_secrets echo "Create REANA DB secret" -# name of output secret to apply +name of output secret to apply DB_OUTPUT_SECRET="reana-db.yaml" RAW_DB_FILE_SECRET=${RAW_SECRETS_TMP_DIR}/${DB_OUTPUT_SECRET} @@ -23,13 +23,13 @@ cat ${RAW_DB_FILE_SECRET} | kubeseal --controller-name=${CONTROLLER_NAME} --cont kubectl apply -f ${SECRETS_DIR}/ss_${DB_OUTPUT_SECRET} -# echo "Create REANA Admin Account" +echo "Create REANA Admin Access Token secret" -# ADMIN_ACCOUNT_SECRET='reana-admin.yaml' -# RAW_ADMIN_FILE_SECRET=${RAW_SECRETS_TMP_DIR}/${ADMIN_ACCOUNT_SECRET} +ADMIN_ACCOUNT_SECRET='reana-admin-access-token.yaml' +RAW_ADMIN_FILE_SECRET=${RAW_SECRETS_TMP_DIR}/${ADMIN_ACCOUNT_SECRET} -# cat ${RAW_ADMIN_FILE_SECRET} | kubeseal --controller-name=${CONTROLLER_NAME} --controller-namespace=${CONTROLLER_NS} --format yaml --namespace=${REANA_NS} > ${SECRETS_DIR}/ss_${ADMIN_ACCOUNT_SECRET} -# kubectl apply -f ${SECRETS_DIR}/ss_${ADMIN_ACCOUNT_SECRET} +cat ${RAW_ADMIN_FILE_SECRET} | kubeseal --controller-name=${CONTROLLER_NAME} --controller-namespace=${CONTROLLER_NS} --format yaml --namespace=${REANA_NS} > ${SECRETS_DIR}/ss_${ADMIN_ACCOUNT_SECRET} +kubectl apply -f ${SECRETS_DIR}/ss_${ADMIN_ACCOUNT_SECRET} # echo "Create REANA IAM client credentials" diff --git a/infrastructure/secrets/reana/ss_reana-admin-access-token.yaml b/infrastructure/secrets/reana/ss_reana-admin-access-token.yaml index 7846bfb..602391e 100644 --- a/infrastructure/secrets/reana/ss_reana-admin-access-token.yaml +++ b/infrastructure/secrets/reana/ss_reana-admin-access-token.yaml @@ -1,3 +1,4 @@ +--- apiVersion: bitnami.com/v1alpha1 kind: SealedSecret metadata: @@ -6,11 +7,10 @@ metadata: namespace: reana spec: encryptedData: - ADMIN_ACCESS_TOKEN: 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 + ADMIN_ACCESS_TOKEN: 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 template: metadata: creationTimestamp: null name: reana-admin-access-token namespace: reana type: Opaque -