Skip to content
Snippets Groups Projects
Commit b231b1d1 authored by Aliaksandr Ramanovich (EPAM)'s avatar Aliaksandr Ramanovich (EPAM)
Browse files

GONRG-9046 - add WI for secret SA

parent fe83ff8b
No related branches found
No related tags found
No related merge requests found
Pipeline #250747 passed
Pipeline: GC Infrastructure code

#250748

    /**
    * Copyright 2023 Google LLC
    * Copyright 2023 EPAM
    *
    * Licensed under the Apache License, Version 2.0 (the "License");
    * you may not use this file except in compliance with the License.
    * You may obtain a copy of the License at
    *
    * http://www.apache.org/licenses/LICENSE-2.0
    *
    * Unless required by applicable law or agreed to in writing, software
    * distributed under the License is distributed on an "AS IS" BASIS,
    * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
    * See the License for the specific language governing permissions and
    * limitations under the License.
    */
    locals {
    secret_name = "secret"
    secret_roles_name = [
    "roles/secretmanager.admin"
    ]
    }
    module "secret_workload_identity" {
    source = "terraform-google-modules/kubernetes-engine/google//modules/workload-identity"
    version = "29.0.0"
    use_existing_k8s_sa = true
    annotate_k8s_sa = false
    name = local.secret_name
    gcp_sa_name = format("wi-%s-gc", local.secret_name)
    namespace = "default"
    project_id = var.project_id
    roles = local.secret_roles_name
    }
    0% Loading or .
    You are about to add 0 people to the discussion. Proceed with caution.
    Finish editing this message first!
    Please register or to comment