Skip to content

Commit bc1109f

Browse files
authored
Fix issue with Secret not located, reference to /kubernetes/ is still needed. (#267)
1 parent 2a753e2 commit bc1109f

File tree

1 file changed

+4
-1
lines changed

1 file changed

+4
-1
lines changed

templates/kubernetes/terraform/modules/kubernetes/external_secrets.tf

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -55,7 +55,10 @@ resource "aws_iam_policy" "external_secrets" {
5555
data "aws_iam_policy_document" "external_secrets_policy_doc" {
5656
statement {
5757
effect = "Allow"
58-
resources = ["arn:aws:secretsmanager:${var.region}:*:secret:${var.project}/application/${var.environment}/*"]
58+
resources = [
59+
"arn:aws:secretsmanager:${var.region}:*:secret:${var.project}/application/${var.environment}/*",
60+
"arn:aws:secretsmanager:${var.region}:*:secret:${var.project}/kubernetes/${var.environment}/*"
61+
]
5962

6063
actions = [
6164
"secretsmanager:GetResourcePolicy",

0 commit comments

Comments
 (0)