@@ -71,13 +71,13 @@ data "aws_iam_policy_document" "recorder_publish_policy" {
71
71
resource "aws_iam_role_policy" "recorder_publish_policy" {
72
72
count = var. config_baseline_enabled ? 1 : 0
73
73
name = var. config_iam_role_policy_name
74
- role = join ( " " , aws_iam_role. recorder . * . id )
74
+ role = one ( aws_iam_role. recorder [ * ] . id )
75
75
policy = data. aws_iam_policy_document . recorder_publish_policy [0 ]. json
76
76
}
77
77
78
78
resource "aws_iam_role_policy_attachment" "recorder_read_policy" {
79
79
count = var. config_baseline_enabled ? 1 : 0
80
- role = join ( " " , aws_iam_role. recorder . * . id )
80
+ role = one ( aws_iam_role. recorder [ * ] . id )
81
81
policy_arn = " arn:aws:iam::aws:policy/service-role/AWS_ConfigRole"
82
82
}
83
83
@@ -94,7 +94,7 @@ module "config_baseline_ap-northeast-1" {
94
94
}
95
95
96
96
enabled = var. config_baseline_enabled && contains (var. target_regions , " ap-northeast-1" )
97
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
97
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
98
98
s3_bucket_name = local. audit_log_bucket_id
99
99
s3_key_prefix = var. config_s3_bucket_key_prefix
100
100
delivery_frequency = var. config_delivery_frequency
@@ -111,7 +111,7 @@ module "config_baseline_ap-northeast-2" {
111
111
}
112
112
113
113
enabled = var. config_baseline_enabled && contains (var. target_regions , " ap-northeast-2" )
114
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
114
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
115
115
s3_bucket_name = local. audit_log_bucket_id
116
116
s3_key_prefix = var. config_s3_bucket_key_prefix
117
117
delivery_frequency = var. config_delivery_frequency
@@ -128,7 +128,7 @@ module "config_baseline_ap-northeast-3" {
128
128
}
129
129
130
130
enabled = var. config_baseline_enabled && contains (var. target_regions , " ap-northeast-3" )
131
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
131
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
132
132
s3_bucket_name = local. audit_log_bucket_id
133
133
s3_key_prefix = var. config_s3_bucket_key_prefix
134
134
delivery_frequency = var. config_delivery_frequency
@@ -145,7 +145,7 @@ module "config_baseline_ap-south-1" {
145
145
}
146
146
147
147
enabled = var. config_baseline_enabled && contains (var. target_regions , " ap-south-1" )
148
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
148
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
149
149
s3_bucket_name = local. audit_log_bucket_id
150
150
s3_key_prefix = var. config_s3_bucket_key_prefix
151
151
delivery_frequency = var. config_delivery_frequency
@@ -162,7 +162,7 @@ module "config_baseline_ap-southeast-1" {
162
162
}
163
163
164
164
enabled = var. config_baseline_enabled && contains (var. target_regions , " ap-southeast-1" )
165
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
165
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
166
166
s3_bucket_name = local. audit_log_bucket_id
167
167
s3_key_prefix = var. config_s3_bucket_key_prefix
168
168
delivery_frequency = var. config_delivery_frequency
@@ -179,7 +179,7 @@ module "config_baseline_ap-southeast-2" {
179
179
}
180
180
181
181
enabled = var. config_baseline_enabled && contains (var. target_regions , " ap-southeast-2" )
182
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
182
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
183
183
s3_bucket_name = local. audit_log_bucket_id
184
184
s3_key_prefix = var. config_s3_bucket_key_prefix
185
185
delivery_frequency = var. config_delivery_frequency
@@ -196,7 +196,7 @@ module "config_baseline_ca-central-1" {
196
196
}
197
197
198
198
enabled = var. config_baseline_enabled && contains (var. target_regions , " ca-central-1" )
199
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
199
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
200
200
s3_bucket_name = local. audit_log_bucket_id
201
201
s3_key_prefix = var. config_s3_bucket_key_prefix
202
202
delivery_frequency = var. config_delivery_frequency
@@ -213,7 +213,7 @@ module "config_baseline_eu-central-1" {
213
213
}
214
214
215
215
enabled = var. config_baseline_enabled && contains (var. target_regions , " eu-central-1" )
216
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
216
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
217
217
s3_bucket_name = local. audit_log_bucket_id
218
218
s3_key_prefix = var. config_s3_bucket_key_prefix
219
219
delivery_frequency = var. config_delivery_frequency
@@ -230,7 +230,7 @@ module "config_baseline_eu-north-1" {
230
230
}
231
231
232
232
enabled = var. config_baseline_enabled && contains (var. target_regions , " eu-north-1" )
233
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
233
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
234
234
s3_bucket_name = local. audit_log_bucket_id
235
235
s3_key_prefix = var. config_s3_bucket_key_prefix
236
236
delivery_frequency = var. config_delivery_frequency
@@ -247,7 +247,7 @@ module "config_baseline_eu-west-1" {
247
247
}
248
248
249
249
enabled = var. config_baseline_enabled && contains (var. target_regions , " eu-west-1" )
250
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
250
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
251
251
s3_bucket_name = local. audit_log_bucket_id
252
252
s3_key_prefix = var. config_s3_bucket_key_prefix
253
253
delivery_frequency = var. config_delivery_frequency
@@ -264,7 +264,7 @@ module "config_baseline_eu-west-2" {
264
264
}
265
265
266
266
enabled = var. config_baseline_enabled && contains (var. target_regions , " eu-west-2" )
267
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
267
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
268
268
s3_bucket_name = local. audit_log_bucket_id
269
269
s3_key_prefix = var. config_s3_bucket_key_prefix
270
270
delivery_frequency = var. config_delivery_frequency
@@ -281,7 +281,7 @@ module "config_baseline_eu-west-3" {
281
281
}
282
282
283
283
enabled = var. config_baseline_enabled && contains (var. target_regions , " eu-west-3" )
284
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
284
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
285
285
s3_bucket_name = local. audit_log_bucket_id
286
286
s3_key_prefix = var. config_s3_bucket_key_prefix
287
287
delivery_frequency = var. config_delivery_frequency
@@ -298,7 +298,7 @@ module "config_baseline_sa-east-1" {
298
298
}
299
299
300
300
enabled = var. config_baseline_enabled && contains (var. target_regions , " sa-east-1" )
301
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
301
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
302
302
s3_bucket_name = local. audit_log_bucket_id
303
303
s3_key_prefix = var. config_s3_bucket_key_prefix
304
304
delivery_frequency = var. config_delivery_frequency
@@ -315,7 +315,7 @@ module "config_baseline_us-east-1" {
315
315
}
316
316
317
317
enabled = var. config_baseline_enabled && contains (var. target_regions , " us-east-1" )
318
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
318
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
319
319
s3_bucket_name = local. audit_log_bucket_id
320
320
s3_key_prefix = var. config_s3_bucket_key_prefix
321
321
delivery_frequency = var. config_delivery_frequency
@@ -332,7 +332,7 @@ module "config_baseline_us-east-2" {
332
332
}
333
333
334
334
enabled = var. config_baseline_enabled && contains (var. target_regions , " us-east-2" )
335
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
335
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
336
336
s3_bucket_name = local. audit_log_bucket_id
337
337
s3_key_prefix = var. config_s3_bucket_key_prefix
338
338
delivery_frequency = var. config_delivery_frequency
@@ -349,7 +349,7 @@ module "config_baseline_us-west-1" {
349
349
}
350
350
351
351
enabled = var. config_baseline_enabled && contains (var. target_regions , " us-west-1" )
352
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
352
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
353
353
s3_bucket_name = local. audit_log_bucket_id
354
354
s3_key_prefix = var. config_s3_bucket_key_prefix
355
355
delivery_frequency = var. config_delivery_frequency
@@ -366,7 +366,7 @@ module "config_baseline_us-west-2" {
366
366
}
367
367
368
368
enabled = var. config_baseline_enabled && contains (var. target_regions , " us-west-2" )
369
- iam_role_arn = join ( " " , aws_iam_role. recorder . * . arn )
369
+ iam_role_arn = one ( aws_iam_role. recorder [ * ] . arn )
370
370
s3_bucket_name = local. audit_log_bucket_id
371
371
s3_key_prefix = var. config_s3_bucket_key_prefix
372
372
delivery_frequency = var. config_delivery_frequency
0 commit comments