Skip to content

Commit 3e135ed

Browse files
Merge pull request #354 from ministryofjustice/certificate-update-script
Removed the hardcoded dev environment to upload backup certificate to s3
2 parents 28308cc + 87391ed commit 3e135ed

File tree

1 file changed

+7
-2
lines changed

1 file changed

+7
-2
lines changed

scripts/client_certificates/generate.sh

+7-2
Original file line numberDiff line numberDiff line change
@@ -39,8 +39,10 @@ success_message() {
3939
}
4040

4141
upload_backup() {
42-
access_key_id=$(kubectl get secret aws-services -n hmpps-integration-api-dev -o json | jq -r '.data."api-gateway"' | base64 --decode | jq -r '."access-credentials"."access-key-id"')
43-
secret_access_key=$(kubectl get secret aws-services -n hmpps-integration-api-dev -o json | jq -r '.data."api-gateway"' | base64 --decode | jq -r '."access-credentials"."secret-access-key"')
42+
access_key_id=$(kubectl get secret aws-services -n hmpps-integration-api-$environment -o json | jq -r '.data."api-gateway"' | base64 --decode | jq -r '."access-credentials"."access-key-id"')
43+
secret_access_key=$(kubectl get secret aws-services -n hmpps-integration-api-$environment -o json | jq -r '.data."api-gateway"' | base64 --decode | jq -r '."access-credentials"."secret-access-key"')
44+
aws configure set aws_access_key_id $access_key_id
45+
aws configure set aws_secret_access_key $secret_access_key
4446
bucket="hmpps-integration-api-$environment-certificates-backup"
4547
client_folder="$client"
4648
path="$bucket/$client_folder"
@@ -51,6 +53,9 @@ upload_backup() {
5153
aws s3 cp ./"$environment"-"$client"-client.pem "s3://$path/client.pem"
5254
aws s3 cp ./truststore.key "s3://$path/truststore.key"
5355
aws s3 cp ./truststore.pem "s3://$path/truststore.pem"
56+
57+
aws configure set aws_access_key_id ""
58+
aws configure set aws_secret_access_key ""
5459
}
5560

5661
main() {

0 commit comments

Comments
 (0)