This commit is contained in:
Aleksandr Averbukh 2021-12-06 17:23:53 +01:00
parent 2d9c2fe774
commit 0e5fdda107
2 changed files with 17 additions and 17 deletions

View File

@ -16,10 +16,10 @@
output "data-uploader-credentials" {
description = "Data Uploader SA json key templates."
value = module.onprem-data-uploader.service_account_credentials
value = module.onprem-data-uploader.service_account_credentials
}
output "prisma-security-credentials" {
description = "Prisma Security SA json key templates."
value = module.onprem-prisma-security.service_account_credentials
value = module.onprem-prisma-security.service_account_credentials
}

View File

@ -66,26 +66,26 @@ locals {
: try(data.google_service_account.service_account.0, null)
)
service_account_credential_templates = {
for file, _ in local.public_keys_data : file => jsonencode(
for file, _ in local.public_keys_data : file => jsonencode(
{
type: "service_account",
project_id: var.project_id,
private_key_id: split("/",google_service_account_key.upload_key[file].id)[5]
private_key: "REPLASE_ME_WITH_PRIVATE_KEY_DATA"
client_email: local.resource_email_static
client_id: local.service_account.unique_id,
auth_uri: "https://accounts.google.com/o/oauth2/auth",
token_uri: "https://oauth2.googleapis.com/token",
auth_provider_x509_cert_url: "https://www.googleapis.com/oauth2/v1/certs",
client_x509_cert_url: "https://www.googleapis.com/robot/v1/metadata/x509/${urlencode(local.resource_email_static)}"
type : "service_account",
project_id : var.project_id,
private_key_id : split("/", google_service_account_key.upload_key[file].id)[5]
private_key : "REPLASE_ME_WITH_PRIVATE_KEY_DATA"
client_email : local.resource_email_static
client_id : local.service_account.unique_id,
auth_uri : "https://accounts.google.com/o/oauth2/auth",
token_uri : "https://oauth2.googleapis.com/token",
auth_provider_x509_cert_url : "https://www.googleapis.com/oauth2/v1/certs",
client_x509_cert_url : "https://www.googleapis.com/robot/v1/metadata/x509/${urlencode(local.resource_email_static)}"
}
)
}
public_keys_data = (
var.public_keys_directory != ""
? {
for file in fileset("${path.root}/${var.public_keys_directory}", "*.pem")
: file => filebase64("${path.root}/${var.public_keys_directory}/${file}")}
var.public_keys_directory != ""
? {
for file in fileset("${path.root}/${var.public_keys_directory}", "*.pem")
: file => filebase64("${path.root}/${var.public_keys_directory}/${file}") }
: {}
)
}