@@ -277,7 +277,7 @@ module eventGridSubscription '../../shared/event/eventgrid.bicep' = {
277
277
}
278
278
279
279
module openAiRoleAKS '../../shared/security/role.bicep' = if (openAiHost == 'azure' ) {
280
- scope : openAiResourceGroup
280
+ scope : resourceGroup
281
281
name : 'openai-role-aks'
282
282
params : {
283
283
principalId : aks .outputs .clusterIdentity .objectId
@@ -286,7 +286,7 @@ module openAiRoleAKS '../../shared/security/role.bicep' = if (openAiHost == 'azu
286
286
}
287
287
288
288
module formRecognizerRoleAKS '../../shared/security/role.bicep' = {
289
- scope : formRecognizerResourceGroup
289
+ scope : resourceGroup
290
290
name : 'formrecognizer-role-aks'
291
291
params : {
292
292
principalId : aks .outputs .clusterIdentity .objectId
@@ -295,7 +295,7 @@ module formRecognizerRoleAKS '../../shared/security/role.bicep' = {
295
295
}
296
296
297
297
module storageRoleAKS '../../shared/security/role.bicep' = {
298
- scope : storageResourceGroup
298
+ scope : resourceGroup
299
299
name : 'storage-role-aks'
300
300
params : {
301
301
principalId : aks .outputs .clusterIdentity .objectId
@@ -304,7 +304,7 @@ module storageRoleAKS '../../shared/security/role.bicep' = {
304
304
}
305
305
306
306
module storageContribRoleAKS '../../shared/security/role.bicep' = {
307
- scope : storageResourceGroup
307
+ scope : resourceGroup
308
308
name : 'storage-contribrole-aks'
309
309
params : {
310
310
principalId : aks .outputs .clusterIdentity .objectId
@@ -313,7 +313,7 @@ module storageContribRoleAKS '../../shared/security/role.bicep' = {
313
313
}
314
314
315
315
module searchRoleAKS '../../shared/security/role.bicep' = {
316
- scope : searchServiceResourceGroup
316
+ scope : resourceGroup
317
317
name : 'search-role-aks'
318
318
params : {
319
319
principalId : aks .outputs .clusterIdentity .objectId
@@ -322,7 +322,7 @@ module searchRoleAKS '../../shared/security/role.bicep' = {
322
322
}
323
323
324
324
module searchContribRoleAKS '../../shared/security/role.bicep' = {
325
- scope : searchServiceResourceGroup
325
+ scope : resourceGroup
326
326
name : 'search-contrib-role-aks'
327
327
params : {
328
328
principalId : aks .outputs .clusterIdentity .objectId
@@ -331,14 +331,34 @@ module searchContribRoleAKS '../../shared/security/role.bicep' = {
331
331
}
332
332
333
333
module searchSvcContribRoleAKS '../../shared/security/role.bicep' = {
334
- scope : searchServiceResourceGroup
334
+ scope : resourceGroup
335
335
name : 'search-svccontrib-role-aks'
336
336
params : {
337
337
principalId : aks .outputs .clusterIdentity .objectId
338
338
roleDefinitionId : '7ca78c08-252a-4471-8644-bb5ff32d4ba0'
339
339
}
340
340
}
341
341
342
+ module servicesBusDataOwnerRoleAKS '../../shared/security/role.bicep' = {
343
+ scope : resourceGroup
344
+ name : 'service-bus-data-owner-role-aks'
345
+ params : {
346
+ principalId : aks .outputs .clusterIdentity .objectId
347
+ roleDefinitionId : '090c5cfd-751d-490a-894a-3ce6f1109419'
348
+ }
349
+ }
350
+
351
+ module eventGridContributorRoleAKS '../../shared/security/role.bicep' = {
352
+ scope : resourceGroup
353
+ name : 'event-grid-contributor-role-aks'
354
+ params : {
355
+ principalId : aks .outputs .clusterIdentity .objectId
356
+ roleDefinitionId : '1e241071-0855-49ea-94dc-649edcd759de'
357
+ }
358
+ }
359
+
360
+
361
+
342
362
output AZURE_LOCATION string = location
343
363
output AZURE_TENANT_ID string = tenant ().tenantId
344
364
output AZURE_RESOURCE_GROUP string = resourceGroup .name
0 commit comments