From 9fafa93c9dbdff231e29385f673066921e22e264 Mon Sep 17 00:00:00 2001 From: xpk Date: Wed, 27 Jan 2021 11:47:20 +0800 Subject: [PATCH] NEW: added cloudhealth role --- .../iam_roles/main.tf | 2 + .../roles_iam_resources/cloudhealth-role.tf | 138 ++++++++++++++++++ .../roles_iam_resources/variables.tf | 2 + 3 files changed, 142 insertions(+) create mode 100644 modules/security_identity_compliance/roles_iam_resources/cloudhealth-role.tf diff --git a/layers/security_identity_compliance/iam_roles/main.tf b/layers/security_identity_compliance/iam_roles/main.tf index eaeb3e3..98a312e 100644 --- a/layers/security_identity_compliance/iam_roles/main.tf +++ b/layers/security_identity_compliance/iam_roles/main.tf @@ -8,4 +8,6 @@ module iam-module { project = var.project aws-region-short = var.aws-region-short default-tags = local.default-tags + cloudheath-ext-id1 = "87adcc8d76e0bc18ac67e1c4a7acbc" + cloudheath-ext-id2 = "68c32aa2f429c59528ae79c713159f" } \ No newline at end of file diff --git a/modules/security_identity_compliance/roles_iam_resources/cloudhealth-role.tf b/modules/security_identity_compliance/roles_iam_resources/cloudhealth-role.tf new file mode 100644 index 0000000..1f4f3d7 --- /dev/null +++ b/modules/security_identity_compliance/roles_iam_resources/cloudhealth-role.tf @@ -0,0 +1,138 @@ +resource aws_iam_role cloudhealth-role { + name = "CloudHealth-Role" + tags = var.default-tags + assume_role_policy = <