!LemuOOvbWqRXodtSsw:nixos.org

NixOS Reproducible Builds

545 Members
Report: https://reproducible.nixos.org Project progress: https://github.com/orgs/NixOS/projects/30124 Servers

Load older messages


SenderMessageTime
17 Aug 2021
@baloo_:matrix.orgbalooI don't have the distribution-id17:38:47
@grahamc:nixos.org@grahamc:nixos.orgI can get you that... uh17:39:25
@grahamc:nixos.org@grahamc:nixos.orgshould be arn:aws:cloudfront::223448837225:distribution/E2JKFLGW8FADQD17:40:42
@baloo_:matrix.orgbalooE2JKFLGW8FADQD then17:40:50
@baloo_:matrix.orgbalooso you want a single invalidation for all the jobs? or one per upload.sh?17:42:24
@grahamc:nixos.org@grahamc:nixos.orgone per upload.sh17:42:37
@grahamc:nixos.org@grahamc:nixos.organd only files that would change (ie: the files never change, just the user-facing report root)17:43:00
@grahamc:nixos.org@grahamc:nixos.org * and only files that would change (ie: the diffoscope files never change, just the user-facing report root)17:43:07
@baloo_:matrix.orgbaloohttps://github.com/grahamc/r13y.com/pull/3317:45:27
@grahamc:nixos.org@grahamc:nixos.orgdang 17:45:41
@baloo_:matrix.orgbaloo1sec17:45:57
@grahamc:nixos.org@grahamc:nixos.orgI didn't expect it to be so fast :P17:46:09
* @grahamc:nixos.org@grahamc:nixos.org goes to update the vault policy17:46:21
@baloo_:matrix.orgbaloohttps://github.com/grahamc/r13y.com/pull/33/files17:47:16
@baloo_:matrix.orgbaloobetter that way17:47:20
@baloo_:matrix.orgbaloowell, it's easy with the documentation :D17:48:12
@grahamc:nixos.org@grahamc:nixos.orghrm, can an IAM policy not restrict which buckets you can create invalidation for?17:52:15
@grahamc:nixos.org@grahamc:nixos.org * hrm, can an IAM policy not restrict which buckets you can create invalidations for?17:52:17
@baloo_:matrix.orgbalooI believe you can restrict with the URN17:52:45
@baloo_:matrix.orgbalooarn:aws:cloudfront::223448837225:distribution/E2JKFLGW8FADQD17:52:50
@baloo_:matrix.orgbaloothat17:52:51
@baloo_:matrix.orgbaloosomething like: https://gist.github.com/baloo/8435c1dd0a1c510848f0dd85c619eef717:56:23
@grahamc:nixos.org@grahamc:nixos.orghttps://docs.aws.amazon.com/service-authorization/latest/reference/list_amazoncloudfront.html "If the column includes a resource type, then you can specify an ARN of that type in a statement with that action."17:58:32
@grahamc:nixos.org@grahamc:nixos.orgso no subpaths but yes ARN17:58:35
@grahamc:nixos.org@grahamc:nixos.org baloo: merged & applied the changes w/ terraform to grant the privileges to do that 18:01:14
@baloo_:matrix.orgbalooha right18:04:03
@b:chreekat.netbryan changed their display name from bryan to chreekat.19:59:06
18 Aug 2021
@baloo_:matrix.orgbalooAn error occurred (AccessDenied) when calling the CreateInvalidation operation: User: arn:aws:iam::223448837225:user/vault-token-r13y-publish-1629245456-7999 is not authorized to perform: cloudfront:CreateInvalidation on resource: arn:aws:cloudfront::223448837225:distribution/E2JKFLGW8FADQD03:58:14
@baloo_:matrix.orgbaloooh03:58:15
@baloo_:matrix.orgbaloohttps://buildkite.com/grahamc/r13y-dot-com/builds/855#54ff268f-62e5-4ec6-9f80-e8273655eeae/51-6003:58:38

Show newer messages


Back to Room ListRoom Version: 6