diff options
author | pmikus <pmikus@cisco.com> | 2021-09-03 12:22:24 +0000 |
---|---|---|
committer | pmikus <pmikus@cisco.com> | 2021-09-03 12:22:24 +0000 |
commit | a20f38f8eb837c9d1edfad170864664d7dca441c (patch) | |
tree | b056363fdd3e0378346520ac5f88686bf26805bf | |
parent | 70f8dc89cd0c27da2827addcbe66873ef7d4ad06 (diff) |
Terraform: Adjust TTL for AWS credentials
Signed-off-by: pmikus <pmikus@cisco.com>
Change-Id: Ieab27460dc116185fa8d9819523f4e388159acdc
-rw-r--r-- | fdio.infra.terraform/1n_nmd/aws/main.tf | 6 | ||||
-rw-r--r-- | fdio.infra.terraform/1n_nmd/aws/variables.tf | 4 |
2 files changed, 6 insertions, 4 deletions
diff --git a/fdio.infra.terraform/1n_nmd/aws/main.tf b/fdio.infra.terraform/1n_nmd/aws/main.tf index 6768203441..8084eb4e33 100644 --- a/fdio.infra.terraform/1n_nmd/aws/main.tf +++ b/fdio.infra.terraform/1n_nmd/aws/main.tf @@ -3,8 +3,8 @@ resource "vault_aws_secret_backend" "aws" { secret_key = var.aws_secret_key path = "${var.name}-path" - default_lease_ttl_seconds = "120" - max_lease_ttl_seconds = "240" + default_lease_ttl_seconds = "43200" + max_lease_ttl_seconds = "43200" } resource "vault_aws_secret_backend_role" "admin" { @@ -34,4 +34,4 @@ output "backend" { output "role" { value = vault_aws_secret_backend_role.admin.name -}
\ No newline at end of file +} diff --git a/fdio.infra.terraform/1n_nmd/aws/variables.tf b/fdio.infra.terraform/1n_nmd/aws/variables.tf index 11c3535266..4e5f61f238 100644 --- a/fdio.infra.terraform/1n_nmd/aws/variables.tf +++ b/fdio.infra.terraform/1n_nmd/aws/variables.tf @@ -1,9 +1,11 @@ variable "aws_access_key" { + sensitive = true } variable "aws_secret_key" { + sensitive = true } variable "name" { - default = "dynamic-aws-creds-vault-admin" + default = "dynamic-aws-creds-vault-admin" }
\ No newline at end of file |