Skip to content

Commit 0961904

Browse files
committed
allow departmental role to see the user upload database
1 parent 7852907 commit 0961904

File tree

1 file changed

+12
-3
lines changed

1 file changed

+12
-3
lines changed

terraform/core/05-departments.tf

Lines changed: 12 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -155,7 +155,7 @@ module "department_data_and_insight" {
155155
user_uploads_bucket = module.user_uploads
156156
cloudtrail_bucket = module.cloudtrail_storage
157157
additional_glue_database_access = {
158-
read_only = []
158+
read_only = ["data_and_insight_user_uploads_db"]
159159
read_write = ["arcus_archive", "metastore"]
160160
}
161161
additional_s3_access = [
@@ -277,6 +277,10 @@ module "department_unrestricted" {
277277
mwaa_etl_scripts_bucket_arn = aws_s3_bucket.mwaa_etl_scripts_bucket.arn
278278
mwaa_key_arn = aws_kms_key.mwaa_key.arn
279279
user_uploads_bucket = module.user_uploads
280+
additional_glue_database_access = {
281+
read_only = ["unrestricted_user_uploads_db"]
282+
read_write = []
283+
}
280284
}
281285

282286
module "department_sandbox" {
@@ -389,6 +393,7 @@ module "department_revenues" {
389393
read_only = [
390394
"nndr_raw_zone",
391395
"ctax_raw_zone",
396+
"revenues_user_uploads_db",
392397
]
393398
read_write = []
394399
}
@@ -427,6 +432,10 @@ module "department_environmental_services" {
427432
mwaa_etl_scripts_bucket_arn = aws_s3_bucket.mwaa_etl_scripts_bucket.arn
428433
mwaa_key_arn = aws_kms_key.mwaa_key.arn
429434
user_uploads_bucket = module.user_uploads
435+
additional_glue_database_access = {
436+
read_only = ["env_services_user_uploads_db"]
437+
read_write = []
438+
}
430439
}
431440

432441
module "department_housing" {
@@ -483,7 +492,7 @@ module "department_housing" {
483492
}
484493
]
485494
additional_glue_database_access = {
486-
read_only = []
495+
read_only = ["housing_user_uploads_db"]
487496
read_write = ["housing_service_requests_ieg4", "housing_nec_migration", "housing_nec_migration_outputs"]
488497
}
489498
}
@@ -659,7 +668,7 @@ module "department_children_family_services" {
659668
mwaa_key_arn = aws_kms_key.mwaa_key.arn
660669
user_uploads_bucket = module.user_uploads
661670
additional_glue_database_access = {
662-
read_only = ["child_edu_refined", "hackney_casemanagement_live", "hackney_synergy_live"]
671+
read_only = ["child_edu_refined", "hackney_casemanagement_live", "hackney_synergy_live", "child_fam_services_user_uploads_db"]
663672
read_write = []
664673
}
665674
}

0 commit comments

Comments
 (0)