diff --git a/.github/workflows/dogfood-deploy.yml b/.github/workflows/dogfood-deploy.yml index f9872e23a8..76df3d1721 100644 --- a/.github/workflows/dogfood-deploy.yml +++ b/.github/workflows/dogfood-deploy.yml @@ -33,6 +33,7 @@ env: TF_VAR_elastic_token: ${{ secrets.ELASTIC_APM_SECRET_TOKEN }} TF_VAR_geolite2_license: ${{ secrets.MAXMIND_LICENSE }} TF_VAR_dogfood_sidecar_enroll_secret: ${{ secrets.DOGFOOD_SERVERS_CANARY_ENROLL_SECRET }} + TF_VAR_android_service_credentials: ${{ secrets.FLEET_DEV_ANDROID_SERVICE_CREDENTIALS }} permissions: id-token: write diff --git a/infrastructure/dogfood/terraform/aws-tf-module/main.tf b/infrastructure/dogfood/terraform/aws-tf-module/main.tf index ba5befdc95..ec51eec1d3 100644 --- a/infrastructure/dogfood/terraform/aws-tf-module/main.tf +++ b/infrastructure/dogfood/terraform/aws-tf-module/main.tf @@ -40,6 +40,7 @@ variable "fleet_calendar_periodicity" { default = "30s" description = "The refresh period for the calendar integration." } +variable "android_service_credentials" {} variable "dogfood_sidecar_enroll_secret" {} data "aws_caller_identity" "current" {} @@ -61,6 +62,8 @@ locals { ELASTIC_APM_SECRET_TOKEN = var.elastic_token ELASTIC_APM_SERVICE_NAME = "dogfood" FLEET_CALENDAR_PERIODICITY = var.fleet_calendar_periodicity + FLEET_DEV_ANDROID_ENABLED = "1" + FLEET_DEV_ANDROID_SERVICE_CREDENTIALS = var.android_service_credentials } sentry_secrets = { FLEET_SENTRY_DSN = "${aws_secretsmanager_secret.sentry.arn}:FLEET_SENTRY_DSN::"