diff --git a/terraform-state/group.tf b/terraform-state/group.tf index c028f56..3912e8f 100644 --- a/terraform-state/group.tf +++ b/terraform-state/group.tf @@ -21,8 +21,9 @@ resource "aws_iam_group_policy_attachment" "terraform_managed" { } resource "aws_iam_group_policy_attachment" "terraform_assume" { + count = !var.application_mode ? 1 : 0 group = aws_iam_group.terraform.name - policy_arn = aws_iam_policy.allow_assume_role.arn + policy_arn = !var.application_mode ? aws_iam_policy.allow_assume_role[0].arn : null }