Skip to content

Build Runner EC2 Images #179

Build Runner EC2 Images

Build Runner EC2 Images #179

name: Build Runner EC2 Images
on:
pull_request:
paths:
- .github/workflows/build-runner-images.yml
- packer/github-actions-runner/**
schedule:
# 00:00 on Monday each week
- cron: "0 0 * * 1"
workflow_dispatch:
jobs:
build-image:
name: Build
runs-on: self-hosted
defaults:
run:
working-directory: packer/github-actions-runner
permissions:
id-token: write
contents: read
env:
ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION: true
steps:
- name: Checkout
uses: actions/checkout@v3
- name: Configure AWS Credentials
uses: aws-actions/configure-aws-credentials@v3
with:
role-to-assume: arn:aws:iam::${{ secrets.BCDA_ACCOUNT }}:role/delegatedadmin/developer/bcda-mgmt-github-actions
aws-region: ${{ vars.AWS_REGION }}
- uses: cmsgov/ab2d-bcda-dpc-platform/actions/aws-params-env-action@main
with:
params: |
PKR_VAR_ami_account=/github-runner/gold-image-account
PKR_VAR_s3_tarball=/github-runner/s3-tarball
- name: Retrieve default VPC ID and subnet
id: vpc
run: |
VPC_ID=$(aws ec2 describe-vpcs --filters "Name=tag:Name, Values=bcda-managed-vpc" --query 'Vpcs[].VpcId' --output text)
echo "PKR_VAR_vpc_id=$VPC_ID" >> "$GITHUB_ENV"
SUBNET_ID=$(aws ec2 describe-subnets \
--filters \
"Name=vpc-id,Values=$VPC_ID" \
"Name=tag:Layer,Values=app" \
--query 'Subnets[0].SubnetId' \
--output text)
echo "PKR_VAR_subnet_id=$SUBNET_ID" >> "$GITHUB_ENV"
- name: Setup `packer`
uses: hashicorp/[email protected]
id: setup
with:
version: "latest"
- run: packer init .
- run: packer validate -evaluate-datasources .
- run: ${RUNNER_DEBUG:+"PACKER_LOG=1"} packer build .