Terraform: Adjust TTL for AWS credentials 64/33664/1
authorpmikus <pmikus@cisco.com>
Fri, 3 Sep 2021 12:22:24 +0000 (12:22 +0000)
committerpmikus <pmikus@cisco.com>
Fri, 3 Sep 2021 12:22:24 +0000 (12:22 +0000)
Signed-off-by: pmikus <pmikus@cisco.com>
Change-Id: Ieab27460dc116185fa8d9819523f4e388159acdc

fdio.infra.terraform/1n_nmd/aws/main.tf
fdio.infra.terraform/1n_nmd/aws/variables.tf

index 6768203..8084eb4 100644 (file)
@@ -3,8 +3,8 @@ resource "vault_aws_secret_backend" "aws" {
   secret_key                = var.aws_secret_key
   path                      = "${var.name}-path"
 
-  default_lease_ttl_seconds = "120"
-  max_lease_ttl_seconds     = "240"
+  default_lease_ttl_seconds = "43200"
+  max_lease_ttl_seconds     = "43200"
 }
 
 resource "vault_aws_secret_backend_role" "admin" {
@@ -34,4 +34,4 @@ output "backend" {
 
 output "role" {
   value                     = vault_aws_secret_backend_role.admin.name
-}
\ No newline at end of file
+}
index 11c3535..4e5f61f 100644 (file)
@@ -1,9 +1,11 @@
 variable "aws_access_key" {
+    sensitive = true
 }
 
 variable "aws_secret_key" {
+    sensitive = true
 }
 
 variable "name" {
-    default = "dynamic-aws-creds-vault-admin"
+    default   = "dynamic-aws-creds-vault-admin"
 }
\ No newline at end of file