@@ -110,7 +110,7 @@ jobs:
110
110
set -euo pipefail
111
111
mkdir -p ~/.kube
112
112
echo "${{ secrets.PR_DEPLOYMENTS_KUBECONFIG_BASE64 }}" | base64 --decode > ~/.kube/config
113
- chmod 644 ~/.kube/config
113
+ chmod 600 ~/.kube/config
114
114
export KUBECONFIG=~/.kube/config
115
115
116
116
- name : Check if the helm deployment already exists
@@ -284,7 +284,7 @@ jobs:
284
284
set -euo pipefail
285
285
mkdir -p ~/.kube
286
286
echo "${{ secrets.PR_DEPLOYMENTS_KUBECONFIG_BASE64 }}" | base64 --decode > ~/.kube/config
287
- chmod 644 ~/.kube/config
287
+ chmod 600 ~/.kube/config
288
288
export KUBECONFIG=~/.kube/config
289
289
290
290
- name : Check if image exists
@@ -443,14 +443,6 @@ jobs:
443
443
--use-token-as-session \
444
444
https://${{ env.PR_HOSTNAME }}
445
445
446
- # Create template
447
- cd ./.github/pr-deployments/template
448
- coder templates push -y --variable namespace=pr${{ env.PR_NUMBER }} kubernetes
449
-
450
- # Create workspace
451
- coder create --template="kubernetes" kube --parameter cpu=2 --parameter memory=4 --parameter home_disk_size=2 -y
452
- coder stop kube -y
453
-
454
446
# Create a user for the github.actor
455
447
coder users create \
456
448
--user ${{ github.actor }} \
@@ -459,7 +451,15 @@ jobs:
459
451
--login-type github
460
452
461
453
# promote the user to admin role
462
- # coder org members edit-role ${{ github.actor }} owner
454
+ coder org members edit-role ${{ github.actor }} owner
455
+
456
+ # Create template
457
+ cd ./.github/pr-deployments/template
458
+ coder templates push -y --variable namespace=pr${{ env.PR_NUMBER }} kubernetes
459
+
460
+ # Create workspace
461
+ coder create --template="kubernetes" kube --parameter cpu=2 --parameter memory=4 --parameter home_disk_size=2 -y
462
+ coder stop kube -y
463
463
464
464
- name : Send Slack notification
465
465
if : needs.get_info.outputs.NEW == 'true' || github.event.inputs.deploy == 'true'
0 commit comments