infracloud/archives/invista-nexus_Fix-Unauthorized/modules/oke_cluster/oke_iam.tf
2026-03-09 15:02:41 -03:00

21 lines
No EOL
725 B
HCL

resource "oci_identity_policy" "oke_all_policy" {
compartment_id = var.tenancy_ocid
name = "policy-oke-${var.oke_cluster_name}"
description = "Todas as permissoes necessarias para o Cluster ${var.oke_cluster_name}."
statements = local.oke_all_policy_statements
freeform_tags = {
"ManagedBy" = "Terraform"
}
}
resource "oci_identity_dynamic_group" "oke_nodes_dynamic_group" {
compartment_id = var.tenancy_ocid
name = "dg-oke-nodes-${var.oke_cluster_name}"
description = "Dynamic Group para os Worker Nodes do OKE executarem o Autoscaler"
matching_rule = "ALL {instance.compartment.id = '${var.oke_compartment}'}"
freeform_tags = {
"ManagedBy" = "Terraform"
}
}