fix(apigateway): drop orphaned authorizer invoke role from state (#137)

Apply destroyed the inline policy then failed deleting the role on
iam:ListInstanceProfilesForRole; the role was removed out of band.
This commit is contained in:
Adam Moussa 2026-08-10 17:48:05 -04:00 • committed by GitHub
parent 60abc9fb50
commit 10c86f2de6
No known key found for this signature in database
GPG key ID: B5690EEEBB952194

View file

@ -123,3 +123,13 @@ resource "aws_lambda_permission" "admin_authorizer" {
principal = "apigateway.amazonaws.com"
source_arn = "${aws_apigatewayv2_api.order_api.execution_arn}/authorizers/${aws_apigatewayv2_authorizer.admin_google.id}"
}
# PLAT-102 follow-up: role already deleted in AWS after apply failed on
# iam:ListInstanceProfilesForRole. Drop from state without a destroy call.
removed {
from = aws_iam_role.admin_authorizer_invoke
lifecycle {
destroy = false
}
}