homelab-nomad/Makefile

80 lines
2.3 KiB
Makefile
Raw Normal View History

VENV ?= venv
.PHONY: default
default: check
2022-02-16 09:56:18 -08:00
.PHONY: cluster
2022-05-18 14:22:21 -07:00
cluster: ansible-cluster
2022-02-17 14:03:42 -08:00
# Ensures virtualenv is present
$(VENV):
python3 -m venv $(VENV)
$(VENV)/bin/pip install -r requirements.txt
# Installs pre-commit hooks
.PHONY: install-hooks
install-hooks: $(VENV)
$(VENV)/bin/pre-commit install --install-hooks
# Checks files for encryption
.PHONY: check
check: $(VENV)
$(VENV)/bin/pre-commit run --all-files
# Creates a new secrets baseline
.secrets-baseline: $(VENV)
$(VENV)/bin/detect-secrets scan --exclude-secrets '(\$${.*}|from_env|fake|!secret)' > .secrets-baseline
# Audits secrets against baseline
.PHONY: secrets-audit
secrets-audit: $(VENV) .secrets-baseline
$(VENV)/bin/detect-secrets audit .secrets-baseline
# Updates secrets baseline
.PHONY: secrets-update
secrets-update: $(VENV) .secrets-baseline
$(VENV)/bin/detect-secrets scan --baseline .secrets-baseline
2022-11-02 14:20:09 -07:00
.PHONY: ansible_galaxy
ansible_galaxy: ansible_galaxy/ansible_collections ansible_galaxy/roles
ansible_galaxy/ansible_collections: $(VENV) ./ansible_galaxy/requirements.yml
2022-11-20 17:26:33 -08:00
$(VENV)/bin/ansible-galaxy collection install -p ./ansible_galaxy -r ./ansible_galaxy/requirements.yml
2022-11-02 14:20:09 -07:00
ansible_galaxy/roles: $(VENV) ./ansible_galaxy/requirements.yml
2022-11-20 17:26:33 -08:00
$(VENV)/bin/ansible-galaxy install -p ./ansible_galaxy/roles -r ./ansible_galaxy/requirements.yml
.PHONY: ansible-cluster
2022-11-02 14:20:09 -07:00
ansible-cluster: $(VENV) ansible_galaxy
env VIRTUAL_ENV=$(VENV) $(VENV)/bin/ansible-playbook -K -vv \
$(shell test -f vault-keys.json && echo '-e "@vault-keys.json"') \
2022-11-02 14:20:09 -07:00
./ansible_playbooks/setup-cluster.yml
2022-02-16 09:56:18 -08:00
.PHONY: bootstrap-values
2022-11-10 10:18:02 -08:00
bootstrap-values: $(VENV) ansible_galaxy
env VIRTUAL_ENV=$(VENV) $(VENV)/bin/ansible-playbook -vv \
-e "@vault-keys.json" \
2022-11-02 14:20:09 -07:00
./ansible_playbooks/bootstrap-values.yml
2022-09-07 11:05:27 -07:00
.PHONY: unseal-vault
2022-11-10 10:18:02 -08:00
unseal-vault: $(VENV) ansible_galaxy
env VIRTUAL_ENV=$(VENV) $(VENV)/bin/ansible-playbook -K -vv \
-e "@vault-keys.json" \
2022-11-02 14:20:09 -07:00
./ansible_playbooks/unseal-vault.yml
2022-09-07 11:05:27 -07:00
2022-07-25 10:50:12 -07:00
.PHONY: init
init:
@terraform init
2022-02-16 09:56:18 -08:00
.PHONY: plan
plan:
@terraform plan \
-var "nomad_secret_id=$(shell jq -r .SecretID nomad_bootstrap.json)" \
-var "vault_token=$(shell jq -r .root_token vault-keys.json)"
2022-02-16 09:56:18 -08:00
.PHONY: apply
apply:
@terraform apply \
-var "nomad_secret_id=$(shell jq -r .SecretID nomad_bootstrap.json)" \
-var "vault_token=$(shell jq -r .root_token vault-keys.json)"