CI: Test workflow passing secrets thru env
[releng/builder.git] / .github / workflows / gerrit-ci-management-novote-verify.yaml
index 84df620714fe9f139f46ade08029639bb38872fa..1419a55407b212d92f3bfa9824bc5868b89b6847 100644 (file)
@@ -68,3 +68,24 @@ jobs:
       GERRIT_SSH_PRIVKEY: ${{ secrets.GERRIT_SSH_PRIVKEY }}
       CLOUDS_ENV_B64: ${{ secrets.CLOUDS_ENV_B64 }}
       CLOUDS_YAML_B64: ${{ secrets.CLOUDS_YAML_B64 }}
+
+  call-gerrit-packer-verify:
+    # yamllint disable-line rule:line-length
+    uses: lfit/releng-reusable-workflows/.github/workflows/composed-packer-verify.yaml@main
+    with:
+      GERRIT_BRANCH: ${{ inputs.GERRIT_BRANCH }}
+      GERRIT_CHANGE_ID: ${{ inputs.GERRIT_CHANGE_ID }}
+      GERRIT_CHANGE_NUMBER: ${{ inputs.GERRIT_CHANGE_NUMBER }}
+      GERRIT_CHANGE_URL: ${{ inputs.GERRIT_CHANGE_URL }}
+      GERRIT_EVENT_TYPE: ${{ inputs.GERRIT_EVENT_TYPE }}
+      GERRIT_PATCHSET_NUMBER: ${{ inputs.GERRIT_PATCHSET_NUMBER }}
+      GERRIT_PATCHSET_REVISION: ${{ inputs.GERRIT_PATCHSET_REVISION }}
+      GERRIT_PROJECT: ${{ inputs.GERRIT_PROJECT }}
+      GERRIT_REFSPEC: ${{ inputs.GERRIT_REFSPEC }}
+      comment-only: "true"
+      ENV_VARS: ${{ toJSON(vars) }}
+    secrets:
+      ENV_SECRETS: ${{ toJSON(secrets) }}
+      GERRIT_SSH_PRIVKEY: ${{ secrets.GERRIT_SSH_PRIVKEY }}
+      CLOUDS_ENV_B64: ${{ secrets.CLOUDS_ENV_B64 }}
+      CLOUDS_YAML_B64: ${{ secrets.CLOUDS_YAML_B64 }}