diff --git a/iam_policy.tf b/iam_policy.tf index d676520..8f29ce0 100644 --- a/iam_policy.tf +++ b/iam_policy.tf @@ -85,7 +85,7 @@ resource "aws_iam_policy" "rhel_x86_codepipeline_permissions" { "kms:GenerateDataKey", "kms:DescribeKey" ], - Resource = aws_kms_key.rhel_x86_codepipeline_key.arn + Resource = "arn:aws-us-gov:kms:us-gov-west-1:229685449397:key/${aws_kms_key.rhel_x86_codepipeline_key.id}" }, { Effect = "Allow", @@ -168,7 +168,7 @@ resource "aws_iam_policy" "rhel_x86_ec2_permissions" { "kms:GenerateDataKey", "kms:DescribeKey" ], - Resource = aws_kms_key.rhel_x86_codepipeline_key.arn + Resource = "arn:aws-us-gov:kms:us-gov-west-1:229685449397:key/${aws_kms_key.rhel_x86_codepipeline_key.id}" } ] }) diff --git a/kms.tf b/kms.tf index 6828142..ac84978 100644 --- a/kms.tf +++ b/kms.tf @@ -1,6 +1,5 @@ resource "aws_kms_key" "rhel_x86_codepipeline_key" { description = "KMS key for RHEL x86 CodePipeline" - policy = <