Files
yml/jobs/terraform.yml

84 lines
3.8 KiB
YAML

.terraform_fmt:
script:
# Begin of cd-workdir.sh
- |
#change directory
cd $WORKDIR
# End of cd-workdir.sh
# Begin of terraform-fmt.sh
- |
#Terraform fmt
terraform fmt -diff -check -write=false
# End of terraform-fmt.sh
.terraform_validate:
script:
# Begin of cd-workdir.sh
- |
#change directory
cd $WORKDIR
# End of cd-workdir.sh
# Begin of terraform-init.sh
- "#Terraform init \nterraform init -reconfigure -backend-config=\"address=${GITLAB_TF_ADDRESS}\" -backend-config=\"lock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"unlock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"username=gitlab-ci-token\" -backend-config=\"password=${CI_JOB_TOKEN}\" -backend-config=\"lock_method=POST\" -backend-config=\"unlock_method=DELETE\" -backend-config=\"retry_wait_min=5\" \n"
# End of terraform-init.sh
# Begin of terraform-validate.sh
- "#Terraform validate\nterraform validate \n"
# End of terraform-validate.sh
.terraform_plan:
variables:
PLAN: plan.tfplan
JSON_PLAN_FILE: tfplan.json
script:
# Begin of cd-workdir.sh
- |
#change directory
cd $WORKDIR
# End of cd-workdir.sh
# Begin of terraform-init.sh
- "#Terraform init \nterraform init -reconfigure -backend-config=\"address=${GITLAB_TF_ADDRESS}\" -backend-config=\"lock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"unlock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"username=gitlab-ci-token\" -backend-config=\"password=${CI_JOB_TOKEN}\" -backend-config=\"lock_method=POST\" -backend-config=\"unlock_method=DELETE\" -backend-config=\"retry_wait_min=5\" \n"
# End of terraform-init.sh
# Begin of terraform-plan.sh
- "#Terraform plan \napk add --update curl jq\nalias convert_report=\"jq -r '([.resource_changes[].change.actions?]|flatten)|{\\\"create\\\":(map(select(.==\\\"create\\\"))|length),\\\"update\\\":(map(select(.==\\\"update\\\"))|length),\\\"delete\\\":(map(select(.==\\\"delete\\\"))|length)}'\"\nterraform plan -out=$PLAN $ARGUMENTS\nterraform show --json $PLAN | convert_report > $JSON_PLAN_FILE\n"
# End of terraform-plan.sh
artifacts:
reports:
terraform: $WORKDIR/$JSON_PLAN_FILE
.terraform_apply:
script:
# Begin of cd-workdir.sh
- |
#change directory
cd $WORKDIR
# End of cd-workdir.sh
# Begin of terraform-init.sh
- "#Terraform init \nterraform init -reconfigure -backend-config=\"address=${GITLAB_TF_ADDRESS}\" -backend-config=\"lock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"unlock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"username=gitlab-ci-token\" -backend-config=\"password=${CI_JOB_TOKEN}\" -backend-config=\"lock_method=POST\" -backend-config=\"unlock_method=DELETE\" -backend-config=\"retry_wait_min=5\" \n"
# End of terraform-init.sh
# Begin of terraform-apply.sh
- |
#Terraform validate
terraform apply -auto-approve $ARGUMENTS
# End of terraform-apply.sh
.terraform_destroy:
script:
# Begin of cd-workdir.sh
- |
#change directory
cd $WORKDIR
# End of cd-workdir.sh
# Begin of terraform-init.sh
- "#Terraform init \nterraform init -reconfigure -backend-config=\"address=${GITLAB_TF_ADDRESS}\" -backend-config=\"lock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"unlock_address=${GITLAB_TF_ADDRESS}/lock\" -backend-config=\"username=gitlab-ci-token\" -backend-config=\"password=${CI_JOB_TOKEN}\" -backend-config=\"lock_method=POST\" -backend-config=\"unlock_method=DELETE\" -backend-config=\"retry_wait_min=5\" \n"
# End of terraform-init.sh
# Begin of terraform-destroy.sh
- |
#Terraform validate
terraform destroy -auto-approve $ARGUMENTS
# End of terraform-destroy.sh