Skip to content

Commit 343ddbd

Browse files
committed
updating policy arn to use a map and adding the admin group
1 parent 22f3b36 commit 343ddbd

1 file changed

Lines changed: 15 additions & 1 deletion

File tree

terraform/aws-groups.tf

Lines changed: 15 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,5 +3,19 @@ module "iam_read_only_group" {
33
source = "./modules/aws-groups"
44

55
group_name = "read-only-group"
6-
policy_arn = ["arn:aws:iam::aws:policy/ReadOnlyAccess", "arn:aws:iam::aws:policy/IAMUserChangePassword"]
6+
policy_arn = {
7+
"ReadOnlyAccess" = "arn:aws:iam::aws:policy/ReadOnlyAccess",
8+
"IAMUserChangePassword" = "arn:aws:iam::aws:policy/IAMUserChangePassword"
9+
}
710
}
11+
12+
// Create iam services admin group
13+
module "iam_services_admin_group" {
14+
source = "./modules/aws-groups"
15+
16+
group_name = "iam-services-admin-group"
17+
policy_arn = {
18+
"IAMServicesAdmin" = module.aws_custom_policies.policy_arns["IAMServicesAdmin"]
19+
}
20+
}
21+

0 commit comments

Comments
 (0)