Skip to content

Commit 93bc758

Browse files
authored
fix: cos policy creation condition and typo (#619)
* fix: typos
1 parent af1eb2e commit 93bc758

File tree

5 files changed

+12
-4
lines changed

5 files changed

+12
-4
lines changed

README.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -657,6 +657,7 @@ statement instead the previous block.
657657
| <a name="output_app_repo_url"></a> [app\_repo\_url](#output\_app\_repo\_url) | The App Repo URL |
658658
| <a name="output_cc_pipeline_id"></a> [cc\_pipeline\_id](#output\_cc\_pipeline\_id) | The CC pipeline Id |
659659
| <a name="output_cd_pipeline_id"></a> [cd\_pipeline\_id](#output\_cd\_pipeline\_id) | The CD pipeline Id |
660+
| <a name="output_change_management_repo_tool_id"></a> [change\_management\_repo\_tool\_id](#output\_change\_management\_repo\_tool\_id) | The ID of the Change Management repo tool. |
660661
| <a name="output_change_management_repo_url"></a> [change\_management\_repo\_url](#output\_change\_management\_repo\_url) | The Change Management Repo URL. |
661662
| <a name="output_ci_pipeline_id"></a> [ci\_pipeline\_id](#output\_ci\_pipeline\_id) | The CI pipeline Id |
662663
| <a name="output_compliance_cc_toolchain_id"></a> [compliance\_cc\_toolchain\_id](#output\_compliance\_cc\_toolchain\_id) | The ID of the Compliance CC Toolchain |

main.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -314,7 +314,7 @@ module "prereqs" {
314314
privateworker_secret_name = var.privateworker_credentials_secret_name
315315
privateworker_secret_value = var.privateworker_secret_value
316316
signing_key_secret_name = var.ci_signing_key_secret_name
317-
signing_certifcate_secret_name = var.cd_code_signing_cert_secret_name
317+
signing_certificate_secret_name = var.cd_code_signing_cert_secret_name
318318
repo_git_token_secret_name = var.repo_git_token_secret_name
319319
repo_git_token_secret_value = var.repo_git_token_secret_value
320320
rotation_period = var.rotation_period

outputs.tf

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -92,4 +92,10 @@ output "icr_namespace_name" {
9292
value = (var.prefix == "") ? local.registry_namespace_suffix : local.registry_namespace
9393
}
9494

95+
96+
output "change_management_repo_tool_id" {
97+
description = "The ID of the Change Management repo tool."
98+
value = try(module.devsecops_cd_toolchain[0].change_management_repo.tool_id, "")
99+
}
100+
95101
#############################################################################

prereqs/main.tf

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -104,6 +104,7 @@ resource "ibm_iam_service_policy" "cos_bucket_policy" {
104104
}
105105

106106
resource "ibm_iam_service_policy" "cos_policy" {
107+
count = (local.create_cos_service_api_key) ? 1 : 0
107108
iam_service_id = ibm_iam_service_id.cos_service_id[0].id
108109
roles = ["Reader"]
109110

@@ -202,7 +203,7 @@ data "external" "signing_keys" {
202203
region = var.sm_location
203204
secret_group_id = (var.create_secret_group == false) ? data.ibm_sm_secret_group.existing_sm_secret_group[0].secret_group_id : ibm_sm_secret_group.sm_secret_group[0].secret_group_id
204205
signing_key_name = var.signing_key_secret_name
205-
signing_cert_name = var.signing_certifcate_secret_name
206+
signing_cert_name = var.signing_certificate_secret_name
206207
rotate_signing_key = var.rotate_signing_key
207208
}
208209
}
@@ -244,7 +245,7 @@ resource "ibm_sm_arbitrary_secret" "secret_signing_certifcate" {
244245
region = var.sm_location
245246
instance_id = (local.sm_instance_id != "") ? local.sm_instance_id : var.sm_instance_id
246247
secret_group_id = (var.create_secret_group == false) ? data.ibm_sm_secret_group.existing_sm_secret_group[0].secret_group_id : ibm_sm_secret_group.sm_secret_group[0].secret_group_id
247-
name = var.signing_certifcate_secret_name
248+
name = var.signing_certificate_secret_name
248249
description = "The public component of the GPG signing key for validating image signatures."
249250
labels = []
250251
payload = (var.signing_certificate_secret == "") ? data.external.signing_keys[0].result.publickey : var.signing_certificate_secret

prereqs/variables.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -177,7 +177,7 @@ variable "signing_certificate_secret" {
177177
default = ""
178178
}
179179

180-
variable "signing_certifcate_secret_name" {
180+
variable "signing_certificate_secret_name" {
181181
type = string
182182
description = "The name of the secret as it appears in Secret Manager."
183183
default = "signing-certificate"

0 commit comments

Comments
 (0)