From b4ff8f95c25b496531a32598da07ed5f22ac4b1f Mon Sep 17 00:00:00 2001 From: Miguel Elhaiek Date: Tue, 9 Apr 2024 17:55:17 -0300 Subject: [PATCH] adding Module to test if Logs for ALB work --- .github/workflows/build_and_deploy.yml | 6 +++--- terraform/iam.tf | 20 -------------------- 2 files changed, 3 insertions(+), 23 deletions(-) diff --git a/.github/workflows/build_and_deploy.yml b/.github/workflows/build_and_deploy.yml index ffc9d0b..71580b3 100644 --- a/.github/workflows/build_and_deploy.yml +++ b/.github/workflows/build_and_deploy.yml @@ -36,9 +36,9 @@ jobs: run: terraform init working-directory: terraform - - name: Terraform Refresh - run: terraform refresh - working-directory: terraform + # - name: Terraform Refresh + # run: terraform refresh + # working-directory: terraform - name: Terraform Plan run: terraform plan -out=tfplan diff --git a/terraform/iam.tf b/terraform/iam.tf index 199cf82..09a60df 100644 --- a/terraform/iam.tf +++ b/terraform/iam.tf @@ -1,25 +1,5 @@ # # POLICY TO LET BUCKET PERMISSIONS: -data "aws_elb_service_account" "main" {} - -data "aws_iam_policy_document" "bucket_policy" { - statement { - actions = ["s3:PutObject"] - resources = ["${aws_s3_bucket.logging_bucket.arn}/*"] - - principals { - type = "AWS" - identifiers = [data.aws_elb_service_account.main.arn] - } - } -} - -resource "aws_s3_bucket_policy" "bucket_policy" { - bucket = aws_s3_bucket.nlb_logs.id - policy = data.aws_iam_policy_document.bucket_policy.json -} - - # # subir como data y statement como en el infra ops en vez de esta forma: # resource "aws_s3_bucket_policy" "alb_log_bucket_policy" {