We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 2a753e2 commit bc1109fCopy full SHA for bc1109f
templates/kubernetes/terraform/modules/kubernetes/external_secrets.tf
@@ -55,7 +55,10 @@ resource "aws_iam_policy" "external_secrets" {
55
data "aws_iam_policy_document" "external_secrets_policy_doc" {
56
statement {
57
effect = "Allow"
58
- resources = ["arn:aws:secretsmanager:${var.region}:*:secret:${var.project}/application/${var.environment}/*"]
+ resources = [
59
+ "arn:aws:secretsmanager:${var.region}:*:secret:${var.project}/application/${var.environment}/*",
60
+ "arn:aws:secretsmanager:${var.region}:*:secret:${var.project}/kubernetes/${var.environment}/*"
61
+ ]
62
63
actions = [
64
"secretsmanager:GetResourcePolicy",
0 commit comments