Skip to content

Commit

Permalink
- iam-general-policies
Browse files Browse the repository at this point in the history
  - update cloudforms_ami to empty in EW (as we have no keys defined)
  • Loading branch information
badra001 committed May 22, 2023
1 parent 480fa41 commit 08fa58b
Show file tree
Hide file tree
Showing 5 changed files with 9 additions and 2 deletions.
4 changes: 4 additions & 0 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
Expand Up @@ -264,3 +264,7 @@
* 2.4.1 -- 2023-05-08
- terraform-organzation-info-role
- new role to allow remote account to read org data for sharing purposes

* 2.4.2 -- 2023-05-22
- iam-general-policies
- update cloudforms_ami to empty in EW (as we have no keys defined)
2 changes: 1 addition & 1 deletion common/version.tf
Original file line number Diff line number Diff line change
@@ -1,3 +1,3 @@
locals {
_module_version = "2.4.1"
_module_version = "2.4.2"
}
1 change: 1 addition & 0 deletions iam-general-policies/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -115,6 +115,7 @@ No modules.
| [aws_iam_policy_document.deny_billing](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_iam_policy_document.deny_readonly_data](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_iam_policy_document.ec2_assume](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_iam_policy_document.empty](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_iam_policy_document.full_billing](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_iam_policy_document.ip_restriction](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_iam_policy_document.lambda_assume](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
Expand Down
2 changes: 1 addition & 1 deletion iam-general-policies/custom_policies.tf
Original file line number Diff line number Diff line change
Expand Up @@ -67,7 +67,7 @@ locals {
name = "cloudforms-shared-ami"
path = "/"
description = "Policy for INF CSVD CloudForms Access shared AMIs"
policy = data.aws_iam_policy_document.cloudforms_ami.json
policy = length(local.cloudforms_ami_kms_keys[data.aws_arn.current.partition]) > 0 ? data.aws_iam_policy_document.cloudforms_ami.json : data.aws_iam_policy_document.empty.json
create_policy = true
}

Expand Down
2 changes: 2 additions & 0 deletions iam-general-policies/policy.cloudforms.tf
Original file line number Diff line number Diff line change
Expand Up @@ -164,3 +164,5 @@ data "aws_iam_policy_document" "cloudforms_ami" {
}
}
}

data "aws_iam_policy_document" "empty" {}

0 comments on commit 08fa58b

Please sign in to comment.