Skip to content

Commit 5063dc1

Browse files
committed
Enable protection for eks_cluster and managed node group
1 parent 0a17f65 commit 5063dc1

File tree

2 files changed

+5
-0
lines changed

2 files changed

+5
-0
lines changed

main.tf

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -88,6 +88,10 @@ resource "aws_eks_cluster" "this" {
8888
aws_cloudwatch_log_group.this,
8989
aws_iam_policy.cni_ipv6_policy,
9090
]
91+
92+
lifecycle {
93+
prevent_destroy = true
94+
}
9195
}
9296

9397
resource "aws_ec2_tag" "cluster_primary_security_group" {

modules/eks-managed-node-group/main.tf

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -382,6 +382,7 @@ resource "aws_eks_node_group" "this" {
382382
ignore_changes = [
383383
scaling_config[0].desired_size,
384384
]
385+
prevent_destroy = true
385386
}
386387

387388
tags = merge(

0 commit comments

Comments
 (0)