File tree Expand file tree Collapse file tree 3 files changed +4
-6
lines changed Expand file tree Collapse file tree 3 files changed +4
-6
lines changed Original file line number Diff line number Diff line change @@ -235,7 +235,6 @@ module "s3_logs" {
235
235
source = " ./s3-logs"
236
236
name = " ${ var . name } "
237
237
environment = " ${ var . environment } "
238
- account_id = " ${ module . defaults . s3_logs_account_id } "
239
238
logs_expiration_enabled = " ${ var . logs_expiration_enabled } "
240
239
logs_expiration_days = " ${ var . logs_expiration_days } "
241
240
}
Original file line number Diff line number Diff line change @@ -4,9 +4,6 @@ variable "name" {
4
4
variable "environment" {
5
5
}
6
6
7
- variable "account_id" {
8
- }
9
-
10
7
variable "logs_expiration_enabled" {
11
8
default = false
12
9
}
@@ -15,12 +12,14 @@ variable "logs_expiration_days" {
15
12
default = 30
16
13
}
17
14
15
+ data "aws_elb_service_account" "main" {}
16
+
18
17
data "template_file" "policy" {
19
18
template = " ${ file (" ${ path . module } /policy.json" )} "
20
19
21
20
vars = {
22
21
bucket = " ${ var . name } -${ var . environment } -logs"
23
- account_id = " ${ var . account_id } "
22
+ elb_account_id = " ${ data . aws_elb_service_account . main . arn } "
24
23
}
25
24
}
26
25
Original file line number Diff line number Diff line change 5
5
"Action" : " s3:PutObject" ,
6
6
"Effect" : " Allow" ,
7
7
"Principal" : {
8
- "AWS" : " arn:aws:iam::${account_id}:root "
8
+ "AWS" : " ${elb_account_id} "
9
9
},
10
10
"Resource" : " arn:aws:s3:::${bucket}/*" ,
11
11
"Sid" : " log-bucket-policy"
You can’t perform that action at this time.
0 commit comments