Ver código fonte

[MSOCI-1388] increase some roles to 8hrs to avoid packer issues

Duane Waddle 5 anos atrás
pai
commit
44d01b5fff

+ 1 - 0
submodules/iam/child_account_roles/role-mdr_engineer_readonly.tf

@@ -12,6 +12,7 @@ resource aws_iam_role "role-mdr_engineer_readonly" {
   name                  = "mdr_engineer_readonly"
   path                  = "/user/"
   assume_role_policy    = data.aws_iam_policy_document.non_saml_assume_role_policy.json
+  max_session_duration  = 28800
 }
 
 resource "aws_iam_role_policy_attachment" "mdr_engineer_readonly_ViewOnlyAccess" {

+ 1 - 0
submodules/iam/child_account_roles/role-mdr_terraformer.tf

@@ -2,6 +2,7 @@ resource aws_iam_role "mdr_terraformer" {
   name                  = "mdr_terraformer"
   path                  = "/user/"
   assume_role_policy    = data.aws_iam_policy_document.non_saml_assume_role_policy.json
+  max_session_duration  = 28800
 }
 
 resource aws_iam_role_policy_attachment "mdr_terraformer-mdr_terraformer" {

+ 1 - 0
submodules/iam/common_services_roles/role-mdr_developer_readonly.tf

@@ -16,6 +16,7 @@ module "role-mdr_developer_readonly" {
   path                  = "/user/"
   assume_role_policy    = data.aws_iam_policy_document.okta_saml_assume_role_policy.json
   okta_app_id           = data.okta_app.awsapp.id
+  max_session_duration  = 28800
 }
 
 resource "aws_iam_role_policy_attachment" "mdr_devloper_readonly_ViewOnlyAccess" {