1034 lines
37 KiB
JSON
1034 lines
37 KiB
JSON
{
|
|
"version": 4,
|
|
"terraform_version": "1.3.5",
|
|
"serial": 32,
|
|
"lineage": "b72dc65d-13d0-2661-89b8-fa46cc9e8bbd",
|
|
"outputs": {},
|
|
"resources": [
|
|
{
|
|
"mode": "data",
|
|
"type": "aws_caller_identity",
|
|
"name": "this",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"account_id": "410429265162",
|
|
"arn": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"id": "410429265162",
|
|
"user_id": "AIDAV7D35SUFD6WRSHFSO"
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"mode": "managed",
|
|
"type": "aws_identitystore_group",
|
|
"name": "sso-group",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"description": "Users with view permission",
|
|
"display_name": "Viewers",
|
|
"external_ids": [],
|
|
"group_id": "2422fcce-a051-7085-107a-afe88b5684fd",
|
|
"id": "d-c4673f6b60/2422fcce-a051-7085-107a-afe88b5684fd",
|
|
"identity_store_id": "d-c4673f6b60"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"mode": "managed",
|
|
"type": "aws_identitystore_group_membership",
|
|
"name": "sso-group-membership",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"index_key": "user1",
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"group_id": "2422fcce-a051-7085-107a-afe88b5684fd",
|
|
"id": "d-c4673f6b60/04225cfe-0071-70bd-1845-8ad98e64d0c0",
|
|
"identity_store_id": "d-c4673f6b60",
|
|
"member_id": "0422fcfe-50b1-708a-a599-aa68e028ef3a",
|
|
"membership_id": "04225cfe-0071-70bd-1845-8ad98e64d0c0"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"aws_identitystore_group.sso-group",
|
|
"aws_identitystore_user.sso-user",
|
|
"data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
},
|
|
{
|
|
"index_key": "user2",
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"group_id": "2422fcce-a051-7085-107a-afe88b5684fd",
|
|
"id": "d-c4673f6b60/f4028cfe-60b1-7038-df00-d1b5b1724f60",
|
|
"identity_store_id": "d-c4673f6b60",
|
|
"member_id": "d402ec2e-f001-70bf-63fa-f74aeda77b5f",
|
|
"membership_id": "f4028cfe-60b1-7038-df00-d1b5b1724f60"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"aws_identitystore_group.sso-group",
|
|
"aws_identitystore_user.sso-user",
|
|
"data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"mode": "managed",
|
|
"type": "aws_identitystore_user",
|
|
"name": "sso-user",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"index_key": "user1",
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"addresses": [],
|
|
"display_name": "John Doe",
|
|
"emails": [
|
|
{
|
|
"primary": true,
|
|
"type": "",
|
|
"value": "user1@acme.local"
|
|
}
|
|
],
|
|
"external_ids": [],
|
|
"id": "d-c4673f6b60/0422fcfe-50b1-708a-a599-aa68e028ef3a",
|
|
"identity_store_id": "d-c4673f6b60",
|
|
"locale": "",
|
|
"name": [
|
|
{
|
|
"family_name": "Doe",
|
|
"formatted": "",
|
|
"given_name": "John",
|
|
"honorific_prefix": "",
|
|
"honorific_suffix": "",
|
|
"middle_name": ""
|
|
}
|
|
],
|
|
"nickname": "user1",
|
|
"phone_numbers": [],
|
|
"preferred_language": "",
|
|
"profile_url": "",
|
|
"timezone": "",
|
|
"title": "",
|
|
"user_id": "0422fcfe-50b1-708a-a599-aa68e028ef3a",
|
|
"user_name": "user1",
|
|
"user_type": ""
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
},
|
|
{
|
|
"index_key": "user2",
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"addresses": [],
|
|
"display_name": "Jane Smith",
|
|
"emails": [
|
|
{
|
|
"primary": true,
|
|
"type": "",
|
|
"value": "user2@acme.local"
|
|
}
|
|
],
|
|
"external_ids": [],
|
|
"id": "d-c4673f6b60/d402ec2e-f001-70bf-63fa-f74aeda77b5f",
|
|
"identity_store_id": "d-c4673f6b60",
|
|
"locale": "",
|
|
"name": [
|
|
{
|
|
"family_name": "Smith",
|
|
"formatted": "",
|
|
"given_name": "Jane",
|
|
"honorific_prefix": "",
|
|
"honorific_suffix": "",
|
|
"middle_name": ""
|
|
}
|
|
],
|
|
"nickname": "user2",
|
|
"phone_numbers": [],
|
|
"preferred_language": "",
|
|
"profile_url": "",
|
|
"timezone": "",
|
|
"title": "",
|
|
"user_id": "d402ec2e-f001-70bf-63fa-f74aeda77b5f",
|
|
"user_name": "user2",
|
|
"user_type": ""
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_account_assignment",
|
|
"name": "pset-assignment",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"index_key": "1",
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "2422fcce-a051-7085-107a-afe88b5684fd,GROUP,865184416664,AWS_ACCOUNT,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c",
|
|
"principal_id": "2422fcce-a051-7085-107a-afe88b5684fd",
|
|
"principal_type": "GROUP",
|
|
"target_id": "865184416664",
|
|
"target_type": "AWS_ACCOUNT"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"aws_identitystore_group.sso-group",
|
|
"data.aws_caller_identity.this",
|
|
"data.aws_ssoadmin_instances.sso1",
|
|
"module.sso.aws_ssoadmin_managed_policy_attachment.psetatt",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
},
|
|
{
|
|
"index_key": "2",
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "2422fcce-a051-7085-107a-afe88b5684fd,GROUP,572802010687,AWS_ACCOUNT,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c",
|
|
"principal_id": "2422fcce-a051-7085-107a-afe88b5684fd",
|
|
"principal_type": "GROUP",
|
|
"target_id": "572802010687",
|
|
"target_type": "AWS_ACCOUNT"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"aws_identitystore_group.sso-group",
|
|
"data.aws_caller_identity.this",
|
|
"data.aws_ssoadmin_instances.sso1",
|
|
"module.sso.aws_ssoadmin_managed_policy_attachment.psetatt",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"BillingAdmin\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"BillingAdmin\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/job-function/Billing,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-741b160413072d1a,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/job-function/Billing",
|
|
"managed_policy_name": "Billing",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-741b160413072d1a"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"BillingAdmin\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-741b160413072d1a",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Billing admin access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-741b160413072d1a,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "BillingAdmin",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"DatabaseAdmin\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"DatabaseAdmin\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/job-function/DatabaseAdministrator,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-3ba41a4ccf37858b,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/job-function/DatabaseAdministrator",
|
|
"managed_policy_name": "DatabaseAdministrator",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-3ba41a4ccf37858b"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"DatabaseAdmin\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-3ba41a4ccf37858b",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Database admin access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-3ba41a4ccf37858b,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "DatabaseAdmin",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"FullAccess\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"FullAccess\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/AdministratorAccess,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-56d8a2c16f68a7d5,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/AdministratorAccess",
|
|
"managed_policy_name": "AdministratorAccess",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-56d8a2c16f68a7d5"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"FullAccess\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-56d8a2c16f68a7d5",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Full admin access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-56d8a2c16f68a7d5,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "FullAccess",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"NetworkAdmin\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"NetworkAdmin\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/job-function/NetworkAdministrator,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-b6d41e12b42a497f,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/job-function/NetworkAdministrator",
|
|
"managed_policy_name": "NetworkAdministrator",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-b6d41e12b42a497f"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"NetworkAdmin\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-b6d41e12b42a497f",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Network admin access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-b6d41e12b42a497f,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "NetworkAdmin",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"PowerUser\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"PowerUser\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/PowerUserAccess,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-385816375bd2af48,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/PowerUserAccess",
|
|
"managed_policy_name": "PowerUserAccess",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-385816375bd2af48"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"PowerUser\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-385816375bd2af48",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Full access excluding IAM",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-385816375bd2af48,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "PowerUser",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"ReadOnly\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"ReadOnly\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/ReadOnlyAccess,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-2e81d873215880a2,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/ReadOnlyAccess",
|
|
"managed_policy_name": "ReadOnlyAccess",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-2e81d873215880a2"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"ReadOnly\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-2e81d873215880a2",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Read only access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-2e81d873215880a2,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "ReadOnly",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"SecurityAudit\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"SecurityAudit\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/SecurityAudit,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-8750449339258dae,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/SecurityAudit",
|
|
"managed_policy_name": "SecurityAudit",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-8750449339258dae"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"SecurityAudit\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-8750449339258dae",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "Security admin access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-8750449339258dae,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "SecurityAudit",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"ViewOnly\"]",
|
|
"mode": "data",
|
|
"type": "aws_ssoadmin_instances",
|
|
"name": "sso1",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arns": [
|
|
"arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec"
|
|
],
|
|
"id": "ap-east-1",
|
|
"identity_store_ids": [
|
|
"d-c4673f6b60"
|
|
]
|
|
},
|
|
"sensitive_attributes": []
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"ViewOnly\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_managed_policy_attachment",
|
|
"name": "psetatt",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"id": "arn:aws:iam::aws:policy/job-function/ViewOnlyAccess,arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"managed_policy_arn": "arn:aws:iam::aws:policy/job-function/ViewOnlyAccess",
|
|
"managed_policy_name": "ViewOnlyAccess",
|
|
"permission_set_arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c"
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.aws_ssoadmin_permission_set.pset",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"module": "module.sso[\"ViewOnly\"]",
|
|
"mode": "managed",
|
|
"type": "aws_ssoadmin_permission_set",
|
|
"name": "pset",
|
|
"provider": "provider[\"registry.terraform.io/hashicorp/aws\"]",
|
|
"instances": [
|
|
{
|
|
"schema_version": 0,
|
|
"attributes": {
|
|
"arn": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c",
|
|
"created_date": "2022-12-08T04:05:25Z",
|
|
"description": "View only access",
|
|
"id": "arn:aws:sso:::permissionSet/ssoins-7158fc0aa3f872ec/ps-69eea04a59288b4c,arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"instance_arn": "arn:aws:sso:::instance/ssoins-7158fc0aa3f872ec",
|
|
"name": "ViewOnly",
|
|
"relay_state": "",
|
|
"session_duration": "PT4H",
|
|
"tags": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
},
|
|
"tags_all": {
|
|
"Application": "sso",
|
|
"BuildDate": "20221208",
|
|
"CreatedBy": "arn:aws:iam::410429265162:user/pam-admin-mgt-msp",
|
|
"Environment": "preview",
|
|
"Project": "security",
|
|
"ServiceProvider": "None",
|
|
"TerraformDir": "terraform.aws-baseline-infra/examples/bea-sso-preview",
|
|
"TerraformMode": "managed"
|
|
}
|
|
},
|
|
"sensitive_attributes": [],
|
|
"private": "bnVsbA==",
|
|
"dependencies": [
|
|
"data.aws_caller_identity.this",
|
|
"module.sso.data.aws_ssoadmin_instances.sso1"
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"check_results": null
|
|
}
|