You're on your way to the next level! Join the Kudos program to earn points and save your progress.
Level 1: Seed
25 / 150 points
1 badge earned
Challenges come and go, but your rewards stay with you. Do more to earn more!
What goes around comes around! Share the love by gifting kudos to your peers.
Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!
Join now to unlock these features and more
I try to integrate my IAC/Terraform bitbucket repo to Atlantis using webhook, the Atlantis are deployed in GKE, but when I create pull request on allowed repo(already configured on `values.yaml`) it return "Bitbucket Cloud does not support webhook secrets...", The detail log that I have from Atlantis is like this
"msg": "Bitbucket Cloud does not support webhook secrets. This could allow attackers to spoof requests from Bitbucket. Ensure you are allowing only Bitbucket IPs",
the `values.yaml` that I used to deploy the Atlantis is like this, any suggestion about my issue? please feel free to answer my question.
# Replace this with your own repo allowlist:
# logLevel: "debug"
# If using Bitbucket, specify like the following:
Hi @Yogi wahyu and welcome to the community!
The warning that you get is correct, Bitbucket Cloud webhooks do not support secrets at the moment. We have a feature request about this in our issue tracker:
If you want to restrict access only to Bitbucket IPs, the IP addresses used for Bitbucket Cloud webhook delivery are listed below in the Outgoing Connections section:
Is the delivery of the webhook successful? You can check the following troubleshooting guide:
If you enable history for the webhook and then perform an action that triggers the webhook, what is the status code for this event? If you select View details next to the status code, what response do you see from your server and do you get the body of the request?