Skip to content

Commit

Permalink
fix: Add iam permission required for vault version greater than 1.11 … (
Browse files Browse the repository at this point in the history
  • Loading branch information
dcb-imvaria authored Jun 13, 2024
1 parent 07f181b commit 0e127ba
Showing 1 changed file with 6 additions and 0 deletions.
6 changes: 6 additions & 0 deletions modules/cluster/iam.tf
Original file line number Diff line number Diff line change
Expand Up @@ -49,6 +49,12 @@ resource "google_kms_crypto_key_iam_member" "ck-iam" {
member = local.service_account_member
}

resource "google_kms_crypto_key_iam_member" "ck-iam-viewer" {
crypto_key_id = google_kms_crypto_key.vault-init.id
role = "roles/cloudkms.viewer"
member = local.service_account_member
}

resource "google_kms_crypto_key_iam_member" "tls-ck-iam" {
count = var.manage_tls == false ? 1 : 0

Expand Down

0 comments on commit 0e127ba

Please sign in to comment.