File tree 3 files changed +26
-3
lines changed
3 files changed +26
-3
lines changed Original file line number Diff line number Diff line change
1
+ data "google_project" "default" {}
Original file line number Diff line number Diff line change 1
- data "google_project" "default" {}
1
+ # Build Buckets
2
2
resource "google_storage_bucket" "default" {
3
3
name = " dsb-devsecops-lab-bucket"
4
4
location = var. region
@@ -11,9 +11,28 @@ resource "google_storage_bucket" "default" {
11
11
uniform_bucket_level_access = true
12
12
}
13
13
14
- resource "google_artifact_registry_repository" "default_docker_repo" {
14
+ # Artifact Repository (Registry)
15
+ resource "google_artifact_registry_repository" "default" {
15
16
repository_id = " dsb-docker-images"
16
17
format = " DOCKER"
17
18
location = var. region
18
19
description = " Repository for all DSB Docker images"
19
20
}
21
+
22
+ # Secrets
23
+ resource "google_secret_manager_secret" "snyk_token" {
24
+ secret_id = " cloudbuild/snyk-token"
25
+
26
+ replication {
27
+ user_managed {
28
+ replicas {
29
+ location = var. region
30
+ }
31
+ }
32
+ }
33
+ }
34
+
35
+ resource "google_secret_manager_secret_version" "snyk_token_version" {
36
+ secret = google_secret_manager_secret. snyk_token . id
37
+ secret_data = var. SNYK_TOKEN
38
+ }
Original file line number Diff line number Diff line change @@ -8,4 +8,7 @@ variable "region" {
8
8
type = string
9
9
description = " Region"
10
10
default = " us-central1"
11
- }
11
+ }
12
+
13
+ # Terraform Environment Variables
14
+ variable "SNYK_TOKEN" {}
You can’t perform that action at this time.
0 commit comments