Skip to content

Commit 0cad62a

Browse files
authored
Disable provider role assumption if enabled is false (#56)
* Check if enabled * Update requester.tf
1 parent 93d3a0b commit 0cad62a

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

accepter.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ provider "aws" {
66
skip_metadata_api_check = var.skip_metadata_api_check
77

88
dynamic "assume_role" {
9-
for_each = var.accepter_aws_assume_role_arn != "" ? ["true"] : []
9+
for_each = local.enabled && var.accepter_aws_assume_role_arn != "" ? ["true"] : []
1010
content {
1111
role_arn = var.accepter_aws_assume_role_arn
1212
}

requester.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -64,7 +64,7 @@ provider "aws" {
6464
skip_metadata_api_check = var.skip_metadata_api_check
6565

6666
dynamic "assume_role" {
67-
for_each = var.requester_aws_assume_role_arn != "" ? ["true"] : []
67+
for_each = local.enabled && var.requester_aws_assume_role_arn != "" ? ["true"] : []
6868
content {
6969
role_arn = var.requester_aws_assume_role_arn
7070
}

0 commit comments

Comments
 (0)