bitovi / bitovi/github-actions-deploy-stackstorm

PR review flow integration: Terraform plan + Ansible dry-run

Offen
#27 7 Kommentare 0 Reaktionen 0 zugewiesene Personen Auf GitHub ansehen
feature
Vorherrschende Sprache
Shell
Sterne
9
Forks
4
PR-Merge-Kennzahlen
Keine gemergten PRs in 30 T.

Beschreibung

This is a good time and repository to show the PR flow with BitOps.
https://github.com/bitovi/bitops/issues/325

When using this GH Action, on every PR the terraform should run plan, and ansible should run dry-run,
show the result as a GH Status check.
Once the PR is approved and merged, - run the actual terraform apply.

Bonus points if we could post the `tf plan` diff back to the PR as a comment.

See https://github.com/marketplace/actions/terraform-pr-commenter#screenshots as an example:
![](https://github.com/robburger/terraform-pr-commenter/blob/master/images/plan-output.png?raw=true)

StackStorm is a complex beast and allowing users to run the proper PR review flow instead of "I'm feeling lucky" `apply` would prevent users from shooting themselves in the foot and encourage best practices.

Beitragsleitfaden

Für dieses Repository ist kein Beitragsleitfaden indexiert

Rechercherichtung

Beginne am GitHub-Action-Einstiegspunkt des Repositorys und verfolge, wie Terraform- und Ansible-Deployment-Läufe aufgerufen werden. Definiere den PR-Ablauf rund um Terraform plan, Ansible dry-run, GitHub-Statusprüfungen und apply nach dem Merge; der optionale Terraform-Diff-Kommentar gehört zum zusätzlichen Umfang. Erledigt ist die Aufgabe, wenn der Workflow Review-Läufe sicher von zusammengeführten Deployment-Läufen unterscheidet.

Vom Indexierungsmodell aus dem Issue-Text verfasst.

Bewertung

Tech-Stack
ansible, aws, github-actions, shell, terraform
Bereich
ci-cd, cloud, devops, infrastructure
Issue-Typ
Feature
Schwierigkeit
5/5
Geschätzter Aufwand
Über eine Woche
Aktivitätsstatus
Veraltet
Klarheit
Größtenteils klar
Anfängerfreundlichkeit
25/100

Neue Issues direkt in Ihr Postfach

Eine kurze Übersicht über anfängerfreundliche GitHub-Issues.