shoc-backend/terraform/bootstrap/outputs.tf
Adam Moussa 25c2e84e8f feat(terraform): adopt live deployment roles safely
Add import-only dev and staging state with least-privilege HCP authentication and plan safety guards.
2026-08-28 19:12:34 -04:00

29 lines
947 B
HCL

output "tfc_oidc_provider_arn" {
description = "app.terraform.io OIDC provider ARN"
value = local.tfc_oidc_arn
}
output "hcp_plan_role_arn" {
description = "Set TFC_AWS_PLAN_ROLE_ARN on workspace shoc-backend-tf-poc"
value = aws_iam_role.hcp_plan.arn
}
output "hcp_apply_role_arn" {
description = "Set TFC_AWS_APPLY_ROLE_ARN on workspace shoc-backend-tf-poc"
value = aws_iam_role.hcp_apply.arn
}
output "create_tfc_oidc_provider" {
description = "Whether this bootstrap created the OIDC provider (false means it was data-sourced)"
value = var.create_tfc_oidc_provider
}
output "live_workspace_roles" {
description = "HCP Terraform dynamic credential roles for dev and staging."
value = {
for environment in keys(local.live_environments) : environment => {
plan_role_arn = aws_iam_role.live_plan[environment].arn
apply_role_arn = aws_iam_role.live_apply[environment].arn
}
}
}