28
28
data "aws_iam_policy_document" "recoder_publish_policy" {
29
29
statement {
30
30
actions = [" s3:PutObject" ]
31
- resources = [" ${ module . audit_log_bucket . this_bucket_arn } /config/AWSLogs/${ var . aws_account_id } /*" ]
31
+ resources = [" ${ module . audit_log_bucket . this_bucket . arn } /config/AWSLogs/${ var . aws_account_id } /*" ]
32
32
33
33
condition {
34
34
test = " StringLike"
@@ -39,29 +39,29 @@ data "aws_iam_policy_document" "recoder_publish_policy" {
39
39
40
40
statement {
41
41
actions = [" s3:GetBucketAcl" ]
42
- resources = [module . audit_log_bucket . this_bucket_arn ]
42
+ resources = [module . audit_log_bucket . this_bucket . arn ]
43
43
}
44
44
45
45
statement {
46
46
actions = [" sns:Publish" ]
47
47
48
48
resources = [
49
- module . config_baseline_ap-northeast-1 . config_topic_arn ,
50
- module . config_baseline_ap-northeast-2 . config_topic_arn ,
51
- module . config_baseline_ap-south-1 . config_topic_arn ,
52
- module . config_baseline_ap-southeast-1 . config_topic_arn ,
53
- module . config_baseline_ap-southeast-2 . config_topic_arn ,
54
- module . config_baseline_ca-central-1 . config_topic_arn ,
55
- module . config_baseline_eu-central-1 . config_topic_arn ,
56
- module . config_baseline_eu-north-1 . config_topic_arn ,
57
- module . config_baseline_eu-west-1 . config_topic_arn ,
58
- module . config_baseline_eu-west-2 . config_topic_arn ,
59
- module . config_baseline_eu-west-3 . config_topic_arn ,
60
- module . config_baseline_sa-east-1 . config_topic_arn ,
61
- module . config_baseline_us-east-1 . config_topic_arn ,
62
- module . config_baseline_us-east-2 . config_topic_arn ,
63
- module . config_baseline_us-west-1 . config_topic_arn ,
64
- module . config_baseline_us-west-2 . config_topic_arn ,
49
+ module . config_baseline_ap-northeast-1 . config_sns_topic . arn ,
50
+ module . config_baseline_ap-northeast-2 . config_sns_topic . arn ,
51
+ module . config_baseline_ap-south-1 . config_sns_topic . arn ,
52
+ module . config_baseline_ap-southeast-1 . config_sns_topic . arn ,
53
+ module . config_baseline_ap-southeast-2 . config_sns_topic . arn ,
54
+ module . config_baseline_ca-central-1 . config_sns_topic . arn ,
55
+ module . config_baseline_eu-central-1 . config_sns_topic . arn ,
56
+ module . config_baseline_eu-north-1 . config_sns_topic . arn ,
57
+ module . config_baseline_eu-west-1 . config_sns_topic . arn ,
58
+ module . config_baseline_eu-west-2 . config_sns_topic . arn ,
59
+ module . config_baseline_eu-west-3 . config_sns_topic . arn ,
60
+ module . config_baseline_sa-east-1 . config_sns_topic . arn ,
61
+ module . config_baseline_us-east-1 . config_sns_topic . arn ,
62
+ module . config_baseline_us-east-2 . config_sns_topic . arn ,
63
+ module . config_baseline_us-west-1 . config_sns_topic . arn ,
64
+ module . config_baseline_us-west-2 . config_sns_topic . arn ,
65
65
]
66
66
}
67
67
}
@@ -85,7 +85,7 @@ resource "aws_iam_role_policy_attachment" "recoder_read_policy" {
85
85
module "config_baseline_ap-northeast-1" {
86
86
source = " ./modules/config-baseline"
87
87
iam_role_arn = aws_iam_role. recorder . arn
88
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
88
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
89
89
s3_key_prefix = var. config_s3_bucket_key_prefix
90
90
delivery_frequency = var. config_delivery_frequency
91
91
sns_topic_name = var. config_sns_topic_name
@@ -98,7 +98,7 @@ module "config_baseline_ap-northeast-1" {
98
98
module "config_baseline_ap-northeast-2" {
99
99
source = " ./modules/config-baseline"
100
100
iam_role_arn = aws_iam_role. recorder . arn
101
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
101
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
102
102
s3_key_prefix = var. config_s3_bucket_key_prefix
103
103
delivery_frequency = var. config_delivery_frequency
104
104
sns_topic_name = var. config_sns_topic_name
@@ -111,7 +111,7 @@ module "config_baseline_ap-northeast-2" {
111
111
module "config_baseline_ap-south-1" {
112
112
source = " ./modules/config-baseline"
113
113
iam_role_arn = aws_iam_role. recorder . arn
114
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
114
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
115
115
s3_key_prefix = var. config_s3_bucket_key_prefix
116
116
delivery_frequency = var. config_delivery_frequency
117
117
sns_topic_name = var. config_sns_topic_name
@@ -124,7 +124,7 @@ module "config_baseline_ap-south-1" {
124
124
module "config_baseline_ap-southeast-1" {
125
125
source = " ./modules/config-baseline"
126
126
iam_role_arn = aws_iam_role. recorder . arn
127
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
127
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
128
128
s3_key_prefix = var. config_s3_bucket_key_prefix
129
129
delivery_frequency = var. config_delivery_frequency
130
130
sns_topic_name = var. config_sns_topic_name
@@ -137,7 +137,7 @@ module "config_baseline_ap-southeast-1" {
137
137
module "config_baseline_ap-southeast-2" {
138
138
source = " ./modules/config-baseline"
139
139
iam_role_arn = aws_iam_role. recorder . arn
140
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
140
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
141
141
s3_key_prefix = var. config_s3_bucket_key_prefix
142
142
delivery_frequency = var. config_delivery_frequency
143
143
sns_topic_name = var. config_sns_topic_name
@@ -150,7 +150,7 @@ module "config_baseline_ap-southeast-2" {
150
150
module "config_baseline_ca-central-1" {
151
151
source = " ./modules/config-baseline"
152
152
iam_role_arn = aws_iam_role. recorder . arn
153
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
153
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
154
154
s3_key_prefix = var. config_s3_bucket_key_prefix
155
155
delivery_frequency = var. config_delivery_frequency
156
156
sns_topic_name = var. config_sns_topic_name
@@ -163,7 +163,7 @@ module "config_baseline_ca-central-1" {
163
163
module "config_baseline_eu-central-1" {
164
164
source = " ./modules/config-baseline"
165
165
iam_role_arn = aws_iam_role. recorder . arn
166
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
166
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
167
167
s3_key_prefix = var. config_s3_bucket_key_prefix
168
168
delivery_frequency = var. config_delivery_frequency
169
169
sns_topic_name = var. config_sns_topic_name
@@ -176,7 +176,7 @@ module "config_baseline_eu-central-1" {
176
176
module "config_baseline_eu-north-1" {
177
177
source = " ./modules/config-baseline"
178
178
iam_role_arn = aws_iam_role. recorder . arn
179
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
179
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
180
180
s3_key_prefix = var. config_s3_bucket_key_prefix
181
181
delivery_frequency = var. config_delivery_frequency
182
182
sns_topic_name = var. config_sns_topic_name
@@ -189,7 +189,7 @@ module "config_baseline_eu-north-1" {
189
189
module "config_baseline_eu-west-1" {
190
190
source = " ./modules/config-baseline"
191
191
iam_role_arn = aws_iam_role. recorder . arn
192
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
192
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
193
193
s3_key_prefix = var. config_s3_bucket_key_prefix
194
194
delivery_frequency = var. config_delivery_frequency
195
195
sns_topic_name = var. config_sns_topic_name
@@ -202,7 +202,7 @@ module "config_baseline_eu-west-1" {
202
202
module "config_baseline_eu-west-2" {
203
203
source = " ./modules/config-baseline"
204
204
iam_role_arn = aws_iam_role. recorder . arn
205
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
205
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
206
206
s3_key_prefix = var. config_s3_bucket_key_prefix
207
207
delivery_frequency = var. config_delivery_frequency
208
208
sns_topic_name = var. config_sns_topic_name
@@ -215,7 +215,7 @@ module "config_baseline_eu-west-2" {
215
215
module "config_baseline_eu-west-3" {
216
216
source = " ./modules/config-baseline"
217
217
iam_role_arn = aws_iam_role. recorder . arn
218
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
218
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
219
219
s3_key_prefix = var. config_s3_bucket_key_prefix
220
220
delivery_frequency = var. config_delivery_frequency
221
221
sns_topic_name = var. config_sns_topic_name
@@ -228,7 +228,7 @@ module "config_baseline_eu-west-3" {
228
228
module "config_baseline_sa-east-1" {
229
229
source = " ./modules/config-baseline"
230
230
iam_role_arn = aws_iam_role. recorder . arn
231
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
231
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
232
232
s3_key_prefix = var. config_s3_bucket_key_prefix
233
233
delivery_frequency = var. config_delivery_frequency
234
234
sns_topic_name = var. config_sns_topic_name
@@ -241,7 +241,7 @@ module "config_baseline_sa-east-1" {
241
241
module "config_baseline_us-east-1" {
242
242
source = " ./modules/config-baseline"
243
243
iam_role_arn = aws_iam_role. recorder . arn
244
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
244
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
245
245
s3_key_prefix = var. config_s3_bucket_key_prefix
246
246
delivery_frequency = var. config_delivery_frequency
247
247
sns_topic_name = var. config_sns_topic_name
@@ -254,7 +254,7 @@ module "config_baseline_us-east-1" {
254
254
module "config_baseline_us-east-2" {
255
255
source = " ./modules/config-baseline"
256
256
iam_role_arn = aws_iam_role. recorder . arn
257
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
257
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
258
258
s3_key_prefix = var. config_s3_bucket_key_prefix
259
259
delivery_frequency = var. config_delivery_frequency
260
260
sns_topic_name = var. config_sns_topic_name
@@ -267,7 +267,7 @@ module "config_baseline_us-east-2" {
267
267
module "config_baseline_us-west-1" {
268
268
source = " ./modules/config-baseline"
269
269
iam_role_arn = aws_iam_role. recorder . arn
270
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
270
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
271
271
s3_key_prefix = var. config_s3_bucket_key_prefix
272
272
delivery_frequency = var. config_delivery_frequency
273
273
sns_topic_name = var. config_sns_topic_name
@@ -280,7 +280,7 @@ module "config_baseline_us-west-1" {
280
280
module "config_baseline_us-west-2" {
281
281
source = " ./modules/config-baseline"
282
282
iam_role_arn = aws_iam_role. recorder . arn
283
- s3_bucket_name = module. audit_log_bucket . this_bucket_id
283
+ s3_bucket_name = module. audit_log_bucket . this_bucket . id
284
284
s3_key_prefix = var. config_s3_bucket_key_prefix
285
285
delivery_frequency = var. config_delivery_frequency
286
286
sns_topic_name = var. config_sns_topic_name
0 commit comments