|
| 1 | +SHELL := /usr/bin/env bash |
| 2 | +.EXPORT_ALL_VARIABLES: |
| 3 | + |
| 4 | +DEBUG := false |
| 5 | +ifeq ($(strip $(DEBUG)),true) |
| 6 | + TF_LOG := DEBUG |
| 7 | + TG_FLAGS := --inputs-debug |
| 8 | +endif |
| 9 | + |
| 10 | +MODE := apply |
| 11 | +ifeq ($(strip $(MODE)),apply) |
| 12 | + MODE_STR := --non-interactive -- apply -auto-approve |
| 13 | +else ifeq ($(strip $(MODE)),destroy) |
| 14 | + MODE_STR := --non-interactive -- destroy -auto-approve |
| 15 | +else |
| 16 | + MODE_STR := --non-interactive -- plan |
| 17 | +endif |
| 18 | + |
| 19 | + |
| 20 | +ENV := dev-westeurope-shared1 |
| 21 | + |
| 22 | +init: init-tf-backend |
| 23 | + cd stage/$(ENV) && terragrunt run -- init -upgrade=true |
| 24 | + |
| 25 | + |
| 26 | +run: init ## setup ACR: make run [ENV=dev-northeurope-shared1] [MODE=apply] |
| 27 | + @cd stage/$(ENV) && terragrunt run validate && terragrunt run $(MODE_STR) $(TG_FLAGS) |
| 28 | + |
| 29 | +acr-admin-login: ## login to ACR registry with docker admin credentials |
| 30 | + ACR_NAME="$$(cd stage/$(ENV) && terragrunt output -raw acr_name 2>/dev/null)" && \ |
| 31 | + ACR_USERNAME="$$(cd stage/$(ENV) && terragrunt output -raw acr_username 2>/dev/null)" && \ |
| 32 | + ACR_PASSWORD="$$(cd stage/$(ENV) && terragrunt output -raw acr_password 2>/dev/null)" && \ |
| 33 | + docker login "$${ACR_NAME}.azurecr.io" \ |
| 34 | + -u "$${ACR_USERNAME}" \ |
| 35 | + -p "$${ACR_PASSWORD}" |
| 36 | + |
| 37 | +acr-login: ## login to ACR registry |
| 38 | + RG="$$(cd stage/$(ENV) && terragrunt output -raw rg 2>/dev/null)" && \ |
| 39 | + ACR_NAME="$$(cd stage/$(ENV) && terragrunt output -raw acr_name 2>/dev/null)" && \ |
| 40 | + az acr login \ |
| 41 | + --resource-group "$${RG}" \ |
| 42 | + --name "$${ACR_NAME}" |
| 43 | + |
| 44 | +get-container-registries: ## get names of configured container registries |
| 45 | + RG="$$(cd stage/$(ENV) && terragrunt output -raw rg 2>/dev/null)" && \ |
| 46 | + az acr list \ |
| 47 | + --resource-group "$${RG}" \ |
| 48 | + --query "[].name" \ |
| 49 | + -o tsv |
| 50 | + |
| 51 | +make list-repositories: ## list repositories in ACR registry |
| 52 | + ACR_NAME="$$(cd stage/$(ENV) && terragrunt output -raw acr_name 2>/dev/null)" && \ |
| 53 | + az acr repository list \ |
| 54 | + --name "$${ACR_NAME}" \ |
| 55 | + -o tsv |
| 56 | + |
| 57 | +show-state: ## show state |
| 58 | + cd stage/$(ENV) && terragrunt state list && terragrunt show |
| 59 | + |
| 60 | +clean: ## clean cached plugins and data |
| 61 | + find . -name ".terra*" -exec rm -rf {} + |
| 62 | + find . -name "target" -exec rm -rf {} + |
| 63 | + |
| 64 | +upgrade-providers-version: init |
| 65 | + |
| 66 | +init-tf-backend: |
| 67 | + cd stage && ./init_azurerm_tf_backend.sh |
| 68 | + |
| 69 | +whoami: ## show current logon (tenant, subscription, user) |
| 70 | + @az account show |
| 71 | + |
| 72 | +login: ## login to Azure Subscription |
| 73 | + az login |
| 74 | + |
| 75 | +update-pull-secret: ## update ARO cluster pull secret with ACR credentials |
| 76 | + oc get secrets pull-secret -n openshift-config -o template='{{index .data ".dockerconfigjson"}}' | base64 -d > pull-secret.json |
| 77 | + ACR_NAME="$$(cd stage/$(ENV) && terragrunt output -raw acr_name 2>/dev/null)" && \ |
| 78 | + ACR_USERNAME="$$(cd stage/$(ENV) && terragrunt output -raw acr_username 2>/dev/null)" && \ |
| 79 | + ACR_PASSWORD="$$(cd stage/$(ENV) && terragrunt output -raw acr_password 2>/dev/null)" && \ |
| 80 | + jq --arg acr "$${ACR_NAME}.azurecr.io" \ |
| 81 | + --arg user "$${ACR_USERNAME}" \ |
| 82 | + --arg pass "$${ACR_PASSWORD}" \ |
| 83 | + '.auths += {($$acr): {"auth": ($$user + ":" + $$pass | @base64)}}' \ |
| 84 | + pull-secret.json > pull-secret-modified.json && \ |
| 85 | + oc set data secret/pull-secret -n openshift-config --from-file=.dockerconfigjson=./pull-secret-modified.json && \ |
| 86 | + rm pull-secret.json pull-secret-modified.json |
| 87 | + |
| 88 | +show-current-pull-secret: ## show current pull secret |
| 89 | + oc get secrets pull-secret -n openshift-config -o template='{{index .data ".dockerconfigjson"}}' | base64 -d |
| 90 | + |
| 91 | +show-current-runtime-pull-secret: ## show current pull secret from runtime (kubelet config) |
| 92 | + oc exec -n openshift-apiserver `oc get pod -n openshift-apiserver -o jsonpath="{.items[0].metadata.name}"` -- cat /var/lib/kubelet/config.json |
| 93 | + |
| 94 | +help: ## show usage and tasks (default) |
| 95 | + @eval $$(sed -E -n 's/^([\*\.a-zA-Z0-9_-]+):.*?## (.*)$$/printf "\\033[36m%-30s\\033[0m %s\\n" "\1" "\2" ;/; ta; b; :a p' $(MAKEFILE_LIST)) |
| 96 | +.DEFAULT_GOAL := help |
| 97 | +.PHONY: help run clean |
0 commit comments