Browse Source

Merge pull request #452 from mdr-engineering/feature/ftd_MSOCI-2193_RotateSaltMasterKeys

Rotates the salt master keys
Frederick Damstra 3 years ago
parent
commit
f4d2d9c049
1 changed files with 6 additions and 6 deletions
  1. 6 6
      base/salt_master_inventory_role/user.tf

+ 6 - 6
base/salt_master_inventory_role/user.tf

@@ -15,12 +15,12 @@ locals {
   user_count    = local.is_commercial && local.is_c2 ? 1 : 0
 }
 
-resource "aws_iam_access_key" "salt-master-v0" {
+resource "aws_iam_access_key" "salt-master-v1" {
   count = local.user_count
   user  = aws_iam_user.salt-master[count.index].name
 }
 
-resource "aws_iam_access_key" "salt-master-v1" {
+resource "aws_iam_access_key" "salt-master-v2" {
   count = local.user_count
   user  = aws_iam_user.salt-master[count.index].name
 }
@@ -29,12 +29,12 @@ output "access_keys" {
   # Only output the keys if there _are_ keys
   value = local.user_count == 0 ? null : {
     "current" = {
-      "aws_access_key_id" : aws_iam_access_key.salt-master-v1[0].id
-      "aws_secret_access_key" : aws_iam_access_key.salt-master-v1[0].secret
+      "aws_access_key_id" : aws_iam_access_key.salt-master-v2[0].id
+      "aws_secret_access_key" : aws_iam_access_key.salt-master-v2[0].secret
     },
     "previous" = {
-      "aws_access_key_id" : aws_iam_access_key.salt-master-v0[0].id
-      "aws_secret_access_key" : aws_iam_access_key.salt-master-v0[0].secret
+      "aws_access_key_id" : aws_iam_access_key.salt-master-v1[0].id
+      "aws_secret_access_key" : aws_iam_access_key.salt-master-v1[0].secret
     }
   }
   sensitive = true