Skip to content

Commit 3917194

Browse files
authored
Merge pull request #26 from data-platform-hq/fix/condition-in-resource-permissions
fix: updated condition for resource permissions
2 parents c9b4a0e + 52abfd1 commit 3917194

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

permissions.tf

+3-3
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ resource "databricks_permissions" "clusters" {
1717
dynamic "access_control" {
1818
for_each = each.value.permissions
1919
content {
20-
group_name = length(var.iam_workspace_groups) != 0 ? data.databricks_group.account_groups[access_control.value.group_name].display_name : databricks_group.this[access_control.value.group_name].display_name
20+
group_name = length(var.iam_account_groups) != 0 ? data.databricks_group.account_groups[access_control.value.group_name].display_name : databricks_group.this[access_control.value.group_name].display_name
2121
permission_level = access_control.value.permission_level
2222
}
2323
}
@@ -34,7 +34,7 @@ resource "databricks_permissions" "sql_endpoint" {
3434
dynamic "access_control" {
3535
for_each = each.value.permissions
3636
content {
37-
group_name = length(var.iam_workspace_groups) != 0 ? data.databricks_group.account_groups[access_control.value.group_name].display_name : databricks_group.this[access_control.value.group_name].display_name
37+
group_name = length(var.iam_account_groups) != 0 ? data.databricks_group.account_groups[access_control.value.group_name].display_name : databricks_group.this[access_control.value.group_name].display_name
3838
permission_level = access_control.value.permission_level
3939
}
4040
}
@@ -44,6 +44,6 @@ resource "databricks_secret_acl" "this" {
4444
for_each = { for entry in local.secrets_acl_objects_list : "${entry.scope}.${entry.principal}.${entry.permission}" => entry }
4545

4646
scope = databricks_secret_scope.this[each.value.scope].name
47-
principal = length(var.iam_workspace_groups) != 0 ? data.databricks_group.account_groups[each.value.principal].display_name : databricks_group.this[each.value.principal].display_name
47+
principal = length(var.iam_account_groups) != 0 ? data.databricks_group.account_groups[each.value.principal].display_name : databricks_group.this[each.value.principal].display_name
4848
permission = each.value.permission
4949
}

0 commit comments

Comments
 (0)