Skip to content

Commit 986f72f

Browse files
cosmosdb issues
Added depends_on for key creation, and changed access policy to loo kat block rather than data.cosmsodb
1 parent d92109d commit 986f72f

1 file changed

Lines changed: 6 additions & 5 deletions

File tree

main.tf

Lines changed: 6 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -278,7 +278,7 @@ resource "azurerm_key_vault" "kv1" {
278278
access_policy {
279279
# Access policy for CosmosDB
280280
tenant_id = data.azurerm_client_config.current.tenant_id
281-
object_id = data.azurerm_cosmosdb_account.cs_cosmosdb[0].principal_id
281+
object_id = azurerm_cosmosdb_account.cs_cosmosdb.identity[0].principal_id
282282
key_permissions = ["Get", "Create", "List", "Delete", "GetRotationPolicy", "SetRotationPolicy"]
283283

284284
secret_permissions = [
@@ -994,6 +994,7 @@ resource "azurerm_cosmosdb_account" "cs_cosmosdb" {
994994

995995
local_authentication_disabled = true
996996
key_vault_key_id = azurerm_key_vault_key.cosmosdb_key.id
997+
depends_on = [azurerm_key_vault_key.cosmosdb_key]
997998
}
998999

9991000
resource "azurerm_key_vault_key" "cosmosdb_key" {
@@ -1006,10 +1007,10 @@ resource "azurerm_key_vault_key" "cosmosdb_key" {
10061007
expiration_date = local.expiration_date
10071008
}
10081009

1009-
data "azurerm_cosmosdb_account" "cs_cosmosdb" {
1010-
name = azurerm_cosmosdb_account.cs_cosmosdb.name
1011-
resource_group_name = azurerm_cosmosdb_account.cs_cosmosdb.resource_group_name
1012-
}
1010+
# data "azurerm_cosmosdb_account" "cs_cosmosdb" {
1011+
# name = azurerm_cosmosdb_account.cs_cosmosdb.name
1012+
# resource_group_name = azurerm_cosmosdb_account.cs_cosmosdb.resource_group_name
1013+
# }
10131014

10141015
/*******************************************************************************
10151016
CREATE EVENT HUB

0 commit comments

Comments
 (0)