|
1 | | -locals { |
2 | | - deploy_user_list = toset([ |
3 | | - "snowflake_deploy_staging", |
4 | | - "snowflake_deploy_prod", |
5 | | - ]) |
6 | | -} |
| 1 | +# locals { |
| 2 | +# deploy_user_list = toset([ |
| 3 | +# "snowflake_deploy_staging", |
| 4 | +# "snowflake_deploy_prod", |
| 5 | +# ]) |
| 6 | +# } |
7 | 7 |
|
8 | | -# This authentication policy allows only keypair and is used for service users. |
9 | | -resource "snowflake_authentication_policy" "allow_only_keypair" { |
10 | | - provider = snowflake.securityadmin |
11 | | - database = snowflake_database.common_db.name |
12 | | - schema = snowflake_schema.common_common_schema.name |
13 | | - name = "ALLOW_ONLY_KEYPAIR" |
14 | | - authentication_methods = ["KEYPAIR"] |
15 | | - comment = "Allow only authentication by keypair" |
16 | | - depends_on = [ |
17 | | - snowflake_database.common_db, |
18 | | - snowflake_schema.common_common_schema, |
19 | | - ] |
20 | | -} |
| 8 | +# # This authentication policy allows only keypair and is used for service users. |
| 9 | +# resource "snowflake_authentication_policy" "allow_only_keypair" { |
| 10 | +# provider = snowflake.securityadmin |
| 11 | +# database = snowflake_database.common_db.name |
| 12 | +# schema = snowflake_schema.common_common_schema.name |
| 13 | +# name = "ALLOW_ONLY_KEYPAIR" |
| 14 | +# authentication_methods = ["KEYPAIR"] |
| 15 | +# comment = "Allow only authentication by keypair" |
| 16 | +# depends_on = [ |
| 17 | +# snowflake_database.common_db, |
| 18 | +# snowflake_schema.common_common_schema, |
| 19 | +# ] |
| 20 | +# } |
21 | 21 |
|
22 | | -# Attach keypair auth policy to all deploy users defined in the local variable |
23 | | -resource "snowflake_user_authentication_policy_attachment" "attach_allow_only_keypair_to_service_users" { |
24 | | - provider = snowflake.securityadmin |
25 | | - for_each = local.deploy_user_list |
26 | | - authentication_policy_name = snowflake_authentication_policy.allow_only_keypair.fully_qualified_name |
27 | | - user_name = each.value |
28 | | - depends_on = [ |
29 | | - snowflake_authentication_policy.allow_only_keypair, |
30 | | - ] |
31 | | -} |
| 22 | +# # Attach keypair auth policy to all deploy users defined in the local variable |
| 23 | +# resource "snowflake_user_authentication_policy_attachment" "attach_allow_only_keypair_to_service_users" { |
| 24 | +# provider = snowflake.securityadmin |
| 25 | +# for_each = local.deploy_user_list |
| 26 | +# authentication_policy_name = snowflake_authentication_policy.allow_only_keypair.fully_qualified_name |
| 27 | +# user_name = each.value |
| 28 | +# depends_on = [ |
| 29 | +# snowflake_authentication_policy.allow_only_keypair, |
| 30 | +# ] |
| 31 | +# } |
0 commit comments