From c3ec041556c14d1558e3e51288f946160a7648c8 Mon Sep 17 00:00:00 2001 From: Clemens Schwaighofer Date: Mon, 7 Jul 2025 09:42:12 +0900 Subject: [PATCH] Add a secrets folder where we can store secrets to deploy to the repository Eg ".env" files with passwords or other things --- src/bin/base_setup.sh | 3 +++ 1 file changed, 3 insertions(+) diff --git a/src/bin/base_setup.sh b/src/bin/base_setup.sh index 247c456..25a48ec 100755 --- a/src/bin/base_setup.sh +++ b/src/bin/base_setup.sh @@ -47,6 +47,7 @@ fi; CLONE_BASE="clone-base/" LOG_FOLDER="log/" SCRIPT_FOLDER="scripts/" +SECRETS_FOLDER="secrets/" CONFIG_FOLDER="config/" WWW_BASE="www/" WWW_WEBHOOK_INCOMING="${WWW_BASE}webhook-incoming"; @@ -125,6 +126,7 @@ EOF "${GIT_WEBHOOK_BASE_FOLDER}${LOG_FOLDER}" \ "${GIT_WEBHOOK_BASE_FOLDER}${SCRIPT_FOLDER}" \ "${GIT_WEBHOOK_BASE_FOLDER}${CONFIG_FOLDER}" \ + "${GIT_WEBHOOK_BASE_FOLDER}${SECRETS_FOLDER}" \ "${GIT_WEBHOOK_BASE_FOLDER}${WWW_WEBHOOK_INCOMING}" \ "${GIT_WEBHOOK_BASE_FOLDER}${WWW_ADMIN}"; # set basic folder rights, clone folder is excluded @@ -132,6 +134,7 @@ EOF "${GIT_WEBHOOK_BASE_FOLDER}${LOG_FOLDER}" \ "${GIT_WEBHOOK_BASE_FOLDER}${SCRIPT_FOLDER}" \ "${GIT_WEBHOOK_BASE_FOLDER}${CONFIG_FOLDER}" \ + "${GIT_WEBHOOK_BASE_FOLDER}${SECRETS_FOLDER}" \ "${GIT_WEBHOOK_BASE_FOLDER}${WWW_WEBHOOK_INCOMING}" \ "${GIT_WEBHOOK_BASE_FOLDER}${WWW_ADMIN}"; # setfacl -m u:"${SUDO_USER}":rwx -R "${GIT_WEBHOOK_BASE_FOLDER}${CLONE_BASE}"