terraform.aws-baseline-infra/modules/security_identity_compliance/five-deployer-roles
2023-09-29 13:09:16 +08:00
..
locals.tf NEW: modules for creating deployer roles and using deployer roles 2023-09-29 12:30:10 +08:00
main.tf NEW: modules for creating deployer roles and using deployer roles 2023-09-29 12:30:10 +08:00
outputs.tf NEW: modules for creating deployer roles and using deployer roles 2023-09-29 12:30:10 +08:00
provider.tf NEW: modules for creating deployer roles and using deployer roles 2023-09-29 12:30:10 +08:00
README.md DOC: updated readme 2023-09-29 13:09:16 +08:00
variables.tf NEW: modules for creating deployer roles and using deployer roles 2023-09-29 12:30:10 +08:00

five-deployer-roles

This module create IAM roles for use with IAC execution. 5 roles are created and each role has permissions to perform different tasks. The 5 roles are:

  • NetworkDeployer: Role with access to manage network related resources
  • SecurityDeployer: Role with access to manage IAM related resources
  • DatabaseDeployer: Role with access to manage database related resources
  • StorageDeployer: Role with access to manage storage related resources
  • CommonDeployer: Role with access to manage all resources, excluding access granted to the 4 other roles

Changelog

  • 20230313: Initial release
  • 20230929: Added iam:PassRole to NetworkDeployer for creating vpc flowlogs