我运行CircleCI和Claudia.js将我的node.js代码部署到AWS Lambda。
这是我的package.json(脚本部分):
"scripts": {
"deploy": "claudia create --handler lambda.handler --deploy-proxy-api --region eu-central-1",
"update": "claudia update",
"generate-proxy": "claudia generate-serverless-express-proxy --express-module server",
"test": "./node_modules/.bin/mocha --reporter spec"
},
当我跑步时:
npm run update
在终端,我可以更新就好了。但是当我在CircleCI中运行它时,它失败了。
这是我的CircleCI配置文件(.circleci / config.yml):
version: 1
jobs:
build:
machine:
node:
version: 6.11
working_directory: ~/project
steps:
- checkout
- run:
name: install
command: npm install
- run:
name: test
command: npm run test
build:
steps:
- run:
name: generate-proxy
command: npm run generate-proxy
- run:
name: update
command: npm run update
CircleCI中的错误是:
#!/bin/bash -eo pipefail
npm run update
> xxx@0.1.0 update /home/circleci/project
> claudia update
loading Lambda config
loading Lambda config lambda.getFunctionConfiguration FunctionName=xxx
loading Lambda config lambda.setupRequestListeners
{ CredentialsError: Missing credentials in config
at IncomingMessage.<anonymous> (/home/circleci/project/node_modules/aws-sdk/lib/util.js:864:34)
at emitNone (events.js:91:20)
at IncomingMessage.emit (events.js:185:7)
at endReadableNT (_stream_readable.js:926:12)
at _combinedTickCallback (internal/process/next_tick.js:74:11)
at process._tickDomainCallback (internal/process/next_tick.js:122:9)
message: 'Missing credentials in config',
retryable: false,
time: 2017-06-21T08:02:53.894Z,
code: 'CredentialsError',
originalError:
{ message: 'Could not load credentials from any providers',
retryable: false,
time: 2017-06-21T08:02:53.894Z,
code: 'CredentialsError' } }
我有一个名为.aws / credentials的文件,其中包含:
[claudia]
aws_access_key_id = xxxxxxx
aws_secret_access_key = xxxxxx
编辑:
version: 2
jobs:
build:
working_directory: ~/emailservice
docker:
- image: circleci/node:4.8.2
steps:
- checkout
- run:
name: update-npm
command: 'sudo npm install -g npm@latest'
- restore_cache:
key: dependency-cache-{{ checksum "package.json" }}
- run:
name: install
command: npm install
- save_cache:
key: dependency-cache-{{ checksum "package.json" }}
paths:
- ./node_modules
- run:
name: test
command: npm run test
- store_artifacts:
path: test-results.xml
prefix: tests
- store_artifacts:
path: coverage
prefix: coverage
- store_test_results:
path: test-results.xml
- run:
name: deploy_update
command: npm run update
除了以前的凭证外,一切都有效。
来自CircleCI的loading Lambda config
loading Lambda config lambda.getFunctionConfiguration FunctionName=emailService
loading Lambda config lambda.setupRequestListeners
{ [CredentialsError: Missing credentials in config]
message: 'Missing credentials in config',
code: 'CredentialsError',
time: Thu Jun 22 2017 08:11:27 GMT+0000 (UTC),
retryable: true,
originalError:
{ message: 'Could not load credentials from any providers',
code: 'CredentialsError',
time: Thu Jun 22 2017 08:11:27 GMT+0000 (UTC),
retryable: true,
originalError:
{ message: 'Connection timed out after 1000ms',
code: 'TimeoutError',
time: Thu Jun 22 2017 08:11:27 GMT+0000 (UTC),
retryable: true } } }
npm info lifecycle xxx_email_service@0.2.0~update: Failed to exec update script
npm ERR! code ELIFECYCLE
npm ERR! errno 1
npm ERR! xxx_email_service@0.2.0 update: `claudia update`
npm ERR! Exit status 1
npm ERR!
npm ERR! Failed at the xxx_email_service@0.2.0 update script.
npm ERR! This is probably not a problem with npm. There is likely additional logging output above.
npm ERR! A complete log of this run can be found in:
npm ERR! /home/circleci/.npm/_logs/2017-06-22T08_11_27_089Z-debug.log
Exited with code 1
我是否必须在AWS中添加凭据?我仍然可以使用终端进行部署。
答案 0 :(得分:2)
这可能与CircleCI处理用户的方式有关。
我建议使用环境变量来存储AWS访问密钥和密钥。
您需要添加以下环境变量:
AWS_ACCESS_KEY_ID
- 以您的访问密钥作为值
AWS_SECRET_ACCESS_KEY
- 将您的密钥作为值
有关通过AWS中的环境变量设置密钥的更多信息:
http://docs.aws.amazon.com/cli/latest/userguide/cli-environment.html
有关圆形CI中env变量的更多信息:
https://circleci.com/docs/1.0/environment-variables/
答案 1 :(得分:1)
您是否将信用卡存储在存储库中提到的文件中?首先,你可能不应该,这是一个安全禁忌。如果是,则需要在~/.aws/credentials
。根据您当前的配置,您的整个仓库位于~/emailservice
的构建中。您需要创建aws
目录,然后使用mv
移动信用卡。类似的东西:
mkdir ~/.aws
mv ~/emailservice/my-creds-file ~/.aws/credenials
或者,我建议您的回购邮件中没有文件并使用private environment variables。在这种情况下,您可以在CircleCI的网络用户界面中设置变量AWS_ACCESS_KEY_ID
和AWS_SECRET_ACCESS_KEY
。然后,AWS CLI将在运行时查看并使用这些凭据。
可以在此处找到AWS CLI身份验证方法:http://docs.aws.amazon.com/cli/latest/userguide/cli-chap-getting-started.html
此致,
里卡多N费利西亚诺郎 CircleCI开发者传播者原始回复:
我并不是100%确定为什么会发生您所犯的错误,但看起来您遇到了更大的问题。该配置文件看起来并不正确。 CircleCI 1.0和2.0中的概念和配置语法以不兼容的方式混合。我在https://circleci.com/docs/检查配置语法,然后选择您要使用的CircleCI版本。
之后,无论是在这里还是CircleCI Discuss,我们都可以尝试进行问题排查。