mirror of
https://github.com/Sea-Haven-Industries/shoc-backend.git
synced 2026-10-01 07:33:14 +00:00
Add import-only dev and staging state with least-privilege HCP authentication and plan safety guards.
29 lines
947 B
HCL
29 lines
947 B
HCL
output "tfc_oidc_provider_arn" {
|
|
description = "app.terraform.io OIDC provider ARN"
|
|
value = local.tfc_oidc_arn
|
|
}
|
|
|
|
output "hcp_plan_role_arn" {
|
|
description = "Set TFC_AWS_PLAN_ROLE_ARN on workspace shoc-backend-tf-poc"
|
|
value = aws_iam_role.hcp_plan.arn
|
|
}
|
|
|
|
output "hcp_apply_role_arn" {
|
|
description = "Set TFC_AWS_APPLY_ROLE_ARN on workspace shoc-backend-tf-poc"
|
|
value = aws_iam_role.hcp_apply.arn
|
|
}
|
|
|
|
output "create_tfc_oidc_provider" {
|
|
description = "Whether this bootstrap created the OIDC provider (false means it was data-sourced)"
|
|
value = var.create_tfc_oidc_provider
|
|
}
|
|
|
|
output "live_workspace_roles" {
|
|
description = "HCP Terraform dynamic credential roles for dev and staging."
|
|
value = {
|
|
for environment in keys(local.live_environments) : environment => {
|
|
plan_role_arn = aws_iam_role.live_plan[environment].arn
|
|
apply_role_arn = aws_iam_role.live_apply[environment].arn
|
|
}
|
|
}
|
|
}
|