Skip to content

Commit 71512ba

Browse files
committed
fix action-specfic issues
1 parent 4ededa9 commit 71512ba

File tree

1 file changed

+6
-6
lines changed

1 file changed

+6
-6
lines changed

.github/workflows/kics-iac.yml

+6-6
Original file line numberDiff line numberDiff line change
@@ -5,6 +5,11 @@ on:
55
jobs:
66
kics:
77
runs-on: ubuntu-latest
8+
env:
9+
AWS_ACCESS_KEY_ID: ${{ secrets.VULN_REPORTS_AWS_KEY_ID }}
10+
AWS_SECRET_ACCESS_KEY: ${{ secrets.VULN_REPORTS_AWS_SECRET_ACCESS_KEY }}
11+
VULN_REPORTS_AWS_BUCKET: ${{ secrets.VULN_REPORTS_AWS_BUCKET }}
12+
AWS_EC2_METADATA_DISABLED: true
813
steps:
914
- uses: actions/checkout@v2
1015
- name: run kics Scan
@@ -19,11 +24,6 @@ jobs:
1924
- name: upload scan results
2025
run: |
2126
set -eu
22-
apt-get update
23-
apt-get install awscli -y
2427
KEY="`date +%Y`/`date +%m`/`date +%d`/${GITHUB_REPOSITORY#*/}_${GITHUB_REF#refs/heads/}_kics_`date +%s`.json"
2528
echo "[i] writing to s3 object '$KEY'"
26-
mv res/results.json res/${KEY#*/*/*/*}
27-
export AWS_ACCESS_KEY_ID=${{ secrets.VULN_REPORTS_AWS_KEY_ID }}
28-
export AWS_SECRET_ACCESS_KEY=${{ secrets.VULN_REPORTS_AWS_SECRET_ACCESS_KEY }}
29-
aws s3 cp res/${KEY#*/*/*/*} s3://${{ secrets.VULN_REPORTS_AWS_BUCKET }}/$KEY
29+
aws s3 cp res/results.json s3://$VULN_REPORTS_AWS_BUCKET/$KEY

0 commit comments

Comments
 (0)