aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorpmikus <pmikus@cisco.com>2021-09-03 12:22:24 +0000
committerpmikus <pmikus@cisco.com>2021-09-03 12:22:24 +0000
commita20f38f8eb837c9d1edfad170864664d7dca441c (patch)
treeb056363fdd3e0378346520ac5f88686bf26805bf
parent70f8dc89cd0c27da2827addcbe66873ef7d4ad06 (diff)
Terraform: Adjust TTL for AWS credentials
Signed-off-by: pmikus <pmikus@cisco.com> Change-Id: Ieab27460dc116185fa8d9819523f4e388159acdc
-rw-r--r--fdio.infra.terraform/1n_nmd/aws/main.tf6
-rw-r--r--fdio.infra.terraform/1n_nmd/aws/variables.tf4
2 files changed, 6 insertions, 4 deletions
diff --git a/fdio.infra.terraform/1n_nmd/aws/main.tf b/fdio.infra.terraform/1n_nmd/aws/main.tf
index 6768203441..8084eb4e33 100644
--- a/fdio.infra.terraform/1n_nmd/aws/main.tf
+++ b/fdio.infra.terraform/1n_nmd/aws/main.tf
@@ -3,8 +3,8 @@ resource "vault_aws_secret_backend" "aws" {
secret_key = var.aws_secret_key
path = "${var.name}-path"
- default_lease_ttl_seconds = "120"
- max_lease_ttl_seconds = "240"
+ default_lease_ttl_seconds = "43200"
+ max_lease_ttl_seconds = "43200"
}
resource "vault_aws_secret_backend_role" "admin" {
@@ -34,4 +34,4 @@ output "backend" {
output "role" {
value = vault_aws_secret_backend_role.admin.name
-} \ No newline at end of file
+}
diff --git a/fdio.infra.terraform/1n_nmd/aws/variables.tf b/fdio.infra.terraform/1n_nmd/aws/variables.tf
index 11c3535266..4e5f61f238 100644
--- a/fdio.infra.terraform/1n_nmd/aws/variables.tf
+++ b/fdio.infra.terraform/1n_nmd/aws/variables.tf
@@ -1,9 +1,11 @@
variable "aws_access_key" {
+ sensitive = true
}
variable "aws_secret_key" {
+ sensitive = true
}
variable "name" {
- default = "dynamic-aws-creds-vault-admin"
+ default = "dynamic-aws-creds-vault-admin"
} \ No newline at end of file