feat: Add variable to provide additional OIDC thumbprints (#1865)

Co-authored-by: Anton Babenko <anton@antonbabenko.com>
This commit is contained in:
Fernando Viana
2022-02-15 10:42:44 -03:00
committed by GitHub
parent c0571ab612
commit 3fc9f2d69c
3 changed files with 8 additions and 1 deletions

View File

@@ -156,7 +156,7 @@ resource "aws_iam_openid_connect_provider" "oidc_provider" {
count = var.create && var.enable_irsa ? 1 : 0
client_id_list = distinct(compact(concat(["sts.${data.aws_partition.current.dns_suffix}"], var.openid_connect_audiences)))
thumbprint_list = [data.tls_certificate.this[0].certificates[0].sha1_fingerprint]
thumbprint_list = concat([data.tls_certificate.this[0].certificates[0].sha1_fingerprint], var.custom_oidc_thumbprints)
url = aws_eks_cluster.this[0].identity[0].oidc[0].issuer
tags = merge(