chore(corp/ops): pipe secrets through to backend container

Change-Id: Idcaa4a7213b53fe1e818c6a81754d29b6249e957
Reviewed-on: https://cl.tvl.fyi/c/depot/+/8729
Reviewed-by: tazjin <tazjin@tvl.su>
Tested-by: BuildkiteCI
This commit is contained in:
Vincent Ambo 2023-06-09 15:06:23 +03:00 committed by tazjin
parent eae70200ce
commit aea8c79ca3

View file

@ -96,6 +96,20 @@ resource "yandex_serverless_container" "rih_backend" {
image {
url = "cr.yandex/crpkcq65tn6bhq6puq2o/rih-backend:a4sdm3gn9l41xv3lyr5642mpd9m0fdhg"
}
secrets {
id = yandex_lockbox_secret.rih_backend_storage_key.id
version_id = yandex_lockbox_secret_version.rih_backend_storage_secret.id
key = "access_key"
environment_variable = "AWS_ACCESS_KEY_ID"
}
secrets {
id = yandex_lockbox_secret.rih_backend_storage_key.id
version_id = yandex_lockbox_secret_version.rih_backend_storage_secret.id
key = "secret_key"
environment_variable = "AWS_SECRET_ACCESS_KEY"
}
}
resource "yandex_api_gateway" "rih_gateway" {