Skip to content

Commit 72a6682

Browse files
committed
update
1 parent 9a96435 commit 72a6682

File tree

2 files changed

+9
-4
lines changed

2 files changed

+9
-4
lines changed

solutions/fully-configurable/README.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ The following resources are provisioned by this example:
2727
| <a name="module_existing_cluster_kms_key_crn_parser"></a> [existing\_cluster\_kms\_key\_crn\_parser](#module\_existing\_cluster\_kms\_key\_crn\_parser) | terraform-ibm-modules/common-utilities/ibm//modules/crn-parser | 1.1.0 |
2828
| <a name="module_existing_kms_crn_parser"></a> [existing\_kms\_crn\_parser](#module\_existing\_kms\_crn\_parser) | terraform-ibm-modules/common-utilities/ibm//modules/crn-parser | 1.1.0 |
2929
| <a name="module_existing_vpc_crn_parser"></a> [existing\_vpc\_crn\_parser](#module\_existing\_vpc\_crn\_parser) | terraform-ibm-modules/common-utilities/ibm//modules/crn-parser | 1.1.0 |
30-
| <a name="module_kms"></a> [kms](#module\_kms) | terraform-ibm-modules/kms-all-inclusive/ibm | 4.21.2 |
30+
| <a name="module_kms"></a> [kms](#module\_kms) | terraform-ibm-modules/kms-all-inclusive/ibm | 4.21.4 |
3131
| <a name="module_ocp_base"></a> [ocp\_base](#module\_ocp\_base) | ../.. | n/a |
3232
| <a name="module_resource_group"></a> [resource\_group](#module\_resource\_group) | terraform-ibm-modules/resource-group/ibm | 1.1.6 |
3333

solutions/fully-configurable/main.tf

Lines changed: 8 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -93,9 +93,9 @@ module "kms" {
9393
providers = {
9494
ibm = ibm.kms
9595
}
96-
count = (var.kms_encryption_enabled_boot_volume || var.kms_encryption_enabled_cluster) && var.existing_cluster_kms_key_crn == null ? 1 : 0
96+
count = (var.kms_encryption_enabled_boot_volume && var.existing_boot_volume_kms_key_crn == null) || (var.kms_encryption_enabled_cluster && var.existing_cluster_kms_key_crn == null) ? 1 : 0
9797
source = "terraform-ibm-modules/kms-all-inclusive/ibm"
98-
version = "4.21.2"
98+
version = "4.21.4"
9999
create_key_protect_instance = false
100100
region = local.cluster_kms_region
101101
existing_kms_instance_crn = var.existing_kms_instance_crn
@@ -167,7 +167,12 @@ locals {
167167
}
168168
additional_security_group_ids = var.additional_security_group_ids
169169
}
170-
], [for pool in var.additional_worker_pools : pool if length(pool.vpc_subnets) > 0],
170+
], [for pool in var.additional_worker_pools : merge(pool, { resource_group_id = module.resource_group.resource_group_id
171+
boot_volume_encryption_kms_config = {
172+
crk = local.boot_volume_kms_key_id
173+
kms_instance_id = local.boot_volume_existing_kms_guid
174+
kms_account_id = local.boot_volume_kms_account_id
175+
} }) if length(pool.vpc_subnets) > 0],
171176
[for pool in var.additional_worker_pools : {
172177
pool_name = pool.pool_name
173178
machine_type = pool.machine_type

0 commit comments

Comments
 (0)