kuma-glpi-bridge: webhook receiver opening GLPI incident tickets
Go service: Kuma webhook -> GLPI REST (two-step session) ticket per monitor down-event, dedupe while open, recovery followup + solve on up. Distroless image; CI = gofmt/vet/build/secret-scan. Ticket: https://projects.knownelement.com/issues/824
This commit is contained in:
@@ -0,0 +1,23 @@
|
||||
# CI [#824] — vet + build + secret scan; image builds are done by the lane
|
||||
# (digest-pinned push) per the compose/lifecycle house rules.
|
||||
name: ci
|
||||
on:
|
||||
push:
|
||||
branches: [main]
|
||||
pull_request:
|
||||
jobs:
|
||||
vet:
|
||||
runs-on: ultix
|
||||
container:
|
||||
image: golang:1.23-alpine
|
||||
steps:
|
||||
- uses: actions/checkout@v4
|
||||
- run: gofmt -l . | tee /tmp/fmt.out && test ! -s /tmp/fmt.out
|
||||
- run: go vet ./...
|
||||
- run: go build ./...
|
||||
- name: secret scan
|
||||
run: |
|
||||
apk add --no-cache grep >/dev/null 2>&1 || true
|
||||
if grep -rInE "BEGIN (RSA |OPENSSH |EC )?PRIVATE KEY|user_token [A-Za-z0-9]{20,}" --exclude-dir=.git .; then
|
||||
echo "::error::secret material committed"; exit 1
|
||||
fi
|
||||
Reference in New Issue
Block a user