Skip to content

Commit a869767

Browse files
authored
feat: resource to grant CAN_USE permissions to groups
1 parent b3afd8c commit a869767

File tree

1 file changed

+17
-0
lines changed

1 file changed

+17
-0
lines changed

cluster.tf

+17
Original file line numberDiff line numberDiff line change
@@ -116,6 +116,23 @@ resource "databricks_cluster_policy" "this" {
116116
definition = jsonencode(each.value)
117117
}
118118

119+
resource "databricks_permissions" "this" {
120+
for_each = {
121+
for param in var.custom_cluster_policies : (param.name) => param.can_use
122+
if param.can_use != null
123+
}
124+
125+
cluster_policy_id = databricks_cluster_policy.this[each.key].id
126+
127+
dynamic "access_control" {
128+
for_each = each.value
129+
content {
130+
group_name = access_control.value
131+
permission_level = "CAN_USE"
132+
}
133+
}
134+
}
135+
119136
resource "databricks_cluster_policy" "overrides" {
120137
for_each = {
121138
for param in var.default_cluster_policies_override : (param.name) => param

0 commit comments

Comments
 (0)