Skip to content

Commit f81ef23

Browse files
committed
PLFM-9092: OIDC integration allowing developer forks of Synapse repo to acess Synapse dev' account
1 parent 5f185ef commit f81ef23

File tree

1 file changed

+38
-0
lines changed

1 file changed

+38
-0
lines changed

org-formation/650-identity-providers/_tasks.yaml

Lines changed: 38 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -166,6 +166,44 @@ GithubOidcSageBionetworksSynapse:
166166
- !Ref SynapseProdAccount
167167
Region: us-east-1
168168

169+
GithubOidcSageBionetworksSynapseBuild:
170+
Type: update-stacks
171+
DependsOn: GithubOidcSageBionetworks
172+
Template: https://raw.githubusercontent.com/Sage-Bionetworks/aws-infra/v0.10.4/templates/IAM/github-oidc-provider.j2
173+
StackName: !Sub ${resourcePrefix}-${appName}-sage-bionetworks-synapse-build
174+
Parameters:
175+
ProviderArn: !CopyValue [ !Sub '${resourcePrefix}-${appName}-ProviderArn' ]
176+
ProviderRoleName: !Sub ${resourcePrefix}-${appName}-sage-bionetworks-synapse-build
177+
ManagedPolicyArns:
178+
- "arn:aws:iam::aws:policy/AdministratorAccess"
179+
TemplatingContext:
180+
Repositories:
181+
- owner: "Sage-Bionetworks"
182+
name: "Synapse-Repository-Services"
183+
branches: ["*"]
184+
- owner: "brucehoff"
185+
name: "Synapse-Repository-Services"
186+
branches: ["*"]
187+
- owner: "SandhraSokhal"
188+
name: "Synapse-Repository-Services"
189+
branches: ["*"]
190+
- owner: "marcomarasca"
191+
name: "Synapse-Repository-Services"
192+
branches: ["*"]
193+
- owner: "john-hill"
194+
name: "Synapse-Repository-Services"
195+
branches: ["*"]
196+
- owner: "xschildw"
197+
name: "Synapse-Repository-Services"
198+
branches: ["*"]
199+
- owner: "nickgros"
200+
name: "Synapse-Repository-Services"
201+
branches: ["*"]
202+
DefaultOrganizationBinding:
203+
Account:
204+
- !Ref SynapseDevAccount
205+
Region: us-east-1
206+
169207
GithubOidcSageBionetworksSynapseOpsDev:
170208
Type: update-stacks
171209
DependsOn: GithubOidcSageBionetworks

0 commit comments

Comments
 (0)