You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-ui8u8Qk9udS4SXi5
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-DGZZjTgik7n5HHJL
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-A92exULZiv5CTzx2
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-SEUqiXYjZU9vL7ir
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-cUCZQDUdBP56ayPE
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-pUPgeHkhJoeqmQr7
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-aESNJhjpM4KnEchD
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-HqY7iaqyxvdffPQK
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-6urUBC3vYFbZDaae
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Terraform Validation 🤖Success! The configuration is valid.
Terraform Plan 📖success
Show Plan
Running plan in the remote backend. Output will stream here. Pressing Ctrl-C
will stop streaming the logs, but will not stop the plan running remotely.
Preparing the remote plan...
To view this run in a browser, visit:
https://app.terraform.io/app/honestbank/aws-iam-main/runs/run-2rdJVrKmGYii1Ebd
Waiting for the plan to start...
Terraform v1.1.4
on linux_amd64
Configuring remote state backend...
Initializing Terraform configuration...
Terraform used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:+ create
<= read (data resources)
Terraform will perform the following actions:# data.aws_iam_policy.test_policy2_arn will be read during apply# (config refers to values not yet known)<=data"aws_iam_policy""test_policy2_arn" {
+arn="arn:aws:iam::509042517039:policy/test-policy2"+description=(known after apply)
+id=(known after apply)
+name=(known after apply)
+path=(known after apply)
+policy=(known after apply)
+policy_id=(known after apply)
+tags=(known after apply)
}
# module.dummy_role.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ Service ="ec2.amazonaws.com"
}
}
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="dummy-role"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-group.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group"+path="/"+unique_id=(known after apply)
}
# module.test-group.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy"
}
# module.test-group2.aws_iam_group.group will be created+resource"aws_iam_group""group" {
+arn=(known after apply)
+id=(known after apply)
+name="test-group2"+path="/test2/"+unique_id=(known after apply)
}
# module.test-group2.aws_iam_group_policy_attachment.policy_attachments["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_group_policy_attachment""policy_attachments" {
+group="test-group2"+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"
}
# module.test-policy.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy"+id=(known after apply)
+name="test-policy"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="ec2:Describe*"+ Effect ="Allow"+ Resource ="*"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-policy2.aws_iam_policy.policy will be created+resource"aws_iam_policy""policy" {
+arn=(known after apply)
+description="test policy2"+id=(known after apply)
+name="test-policy2"+path="/"+policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Resource ="arn:aws:iam::509042517039:role/dummy-role"+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+policy_id=(known after apply)
+tags={
+"createdBy" = "terraform aws-iam/policy"
}
+tags_all={
+"createdBy" = "terraform aws-iam/policy"
}
}
# module.test-role2.aws_iam_role.role will be created+resource"aws_iam_role""role" {
+arn=(known after apply)
+assume_role_policy=jsonencode(
{
+ Statement = [
+ {
+ Action ="sts:AssumeRole"+ Effect ="Allow"+ Principal = {
+ AWS ="arn:aws:iam::509042517039:role/dummy-role"
}
+ Sid =""
},
]
+ Version ="2012-10-17"
}
)
+create_date=(known after apply)
+force_detach_policies=true+id=(known after apply)
+managed_policy_arns=(known after apply)
+max_session_duration=3600+name="test-role2"+name_prefix=(known after apply)
+path="/"+tags={
+"createdBy" = "terraform aws-iam/role"
}
+tags_all={
+"createdBy" = "terraform aws-iam/role"
}
+unique_id=(known after apply)
+inline_policy {
+name=(known after apply)
+policy=(known after apply)
}
}
# module.test-role2.aws_iam_role_policy_attachment.test-attach["arn:aws:iam::509042517039:policy/test-policy2"] will be created+resource"aws_iam_role_policy_attachment""test-attach" {
+id=(known after apply)
+policy_arn="arn:aws:iam::509042517039:policy/test-policy2"+role="test-role2"
}
# module.test-user.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user"+path="/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group",
]
+id=(known after apply)
+user="test-user"
}
# module.test-user2.aws_iam_user.user will be created+resource"aws_iam_user""user" {
+arn=(known after apply)
+force_destroy=true+id=(known after apply)
+name="test-user2"+path="/test2/"+tags={
+"createdBy" = "createdBy aws-iam/user"
}
+tags_all={
+"createdBy" = "createdBy aws-iam/user"
}
+unique_id=(known after apply)
}
# module.test-user2.aws_iam_user_group_membership.groups_attached will be created+resource"aws_iam_user_group_membership""groups_attached" {
+groups=[
+"test-group2",
]
+id=(known after apply)
+user="test-user2"
}
Plan:13 to add, 0 to change, 0 to destroy.
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
synced local file(s) with honestbank/.github.
This PR was created automatically by the repo-file-sync-action workflow run #10823257041
This change is