Skip to content

Commit

Permalink
configurable vault s3 bucket versioning
Browse files Browse the repository at this point in the history
  • Loading branch information
abby-ng committed Mar 6, 2024
1 parent 91448eb commit 454bd71
Show file tree
Hide file tree
Showing 2 changed files with 11 additions and 4 deletions.
5 changes: 5 additions & 0 deletions modules/core/variables.tf
Original file line number Diff line number Diff line change
Expand Up @@ -400,6 +400,11 @@ variable "vault_s3_bucket_name" {
default = ""
}

variable "vault_enable_s3_bucket_versioning" {
description = "Whether to enable bucket versioning for the S3 bucket for Vault."
default = false
}

variable "vault_enable_auto_unseal" {
description = "Enable auto unseal of the Vault cluster"
default = false
Expand Down
10 changes: 6 additions & 4 deletions modules/core/vault.tf
Original file line number Diff line number Diff line change
Expand Up @@ -44,8 +44,9 @@ module "vault" {
allowed_ssh_cidr_blocks = concat([data.aws_vpc.this.cidr_block], var.allowed_ssh_cidr_blocks)
associate_public_ip_address = var.associate_public_ip_address

enable_s3_backend = var.vault_enable_s3_backend
s3_bucket_name = var.vault_s3_bucket_name
enable_s3_backend = var.vault_enable_s3_backend
s3_bucket_name = var.vault_s3_bucket_name
enable_s3_bucket_versioning = var.vault_enable_s3_bucket_versioning

enable_auto_unseal = var.vault_enable_auto_unseal
auto_unseal_kms_key_arn = var.vault_auto_unseal_kms_key_arn
Expand Down Expand Up @@ -91,8 +92,9 @@ data "template_file" "user_data_vault_cluster" {
kms_aes_root = "/opt/aes-kms"

# S3 Variables
enable_s3_backend = var.vault_enable_s3_backend ? "true" : "false"
s3_bucket_name = var.vault_s3_bucket_name
enable_s3_backend = var.vault_enable_s3_backend ? "true" : "false"
s3_bucket_name = var.vault_s3_bucket_name
enable_s3_bucket_versioning = var.vault_enable_s3_bucket_versioning

consul_prefix = var.integration_consul_prefix

Expand Down

0 comments on commit 454bd71

Please sign in to comment.