diff --git a/dev-aws/kafka-shared-msk/dev-enablement/kafka-connect.tf b/dev-aws/kafka-shared-msk/dev-enablement/kafka-connect.tf index 18a86c3d..a6be0511 100644 --- a/dev-aws/kafka-shared-msk/dev-enablement/kafka-connect.tf +++ b/dev-aws/kafka-shared-msk/dev-enablement/kafka-connect.tf @@ -45,4 +45,22 @@ module "kafka_connect_full_internal_topics" { produce_topics = ["dev-enablement.connect-configs", "dev-enablement.connect-offsets", "dev-enablement.connect-status"] consume_groups = ["dev-enablement.kafka-connect-group"] cert_common_name = "dev-enablement/kafka-connect" +} + +resource "kafka_acl" "kafka_connect_describe_topic_all" { + resource_name = "*" + resource_type = "Topic" + acl_principal = "User:CN=dev-enablement/kafka-connect" + acl_host = "*" + acl_operation = "Describe" + acl_permission_type = "Allow" +} + +resource "kafka_acl" "kafka_connect_describe_group_all" { + resource_name = "*" + resource_type = "Group" + acl_principal = "User:CN=dev-enablement/kafka-connect" + acl_host = "*" + acl_operation = "Describe" + acl_permission_type = "Allow" } \ No newline at end of file