mirror of
https://github.com/ysoftdevs/terraform-aws-eks.git
synced 2026-01-17 00:57:28 +01:00
fix: Correct DNS suffix for OIDC provider (#2026)
Co-authored-by: Xin Chen <chenxin@konvery.com> Co-authored-by: Bryant Biggs <bryantbiggs@gmail.com>
This commit is contained in:
2
main.tf
2
main.tf
@@ -174,7 +174,7 @@ data "tls_certificate" "this" {
|
|||||||
resource "aws_iam_openid_connect_provider" "oidc_provider" {
|
resource "aws_iam_openid_connect_provider" "oidc_provider" {
|
||||||
count = local.create && var.enable_irsa ? 1 : 0
|
count = local.create && var.enable_irsa ? 1 : 0
|
||||||
|
|
||||||
client_id_list = distinct(compact(concat(["sts.${data.aws_partition.current.dns_suffix}"], var.openid_connect_audiences)))
|
client_id_list = distinct(compact(concat(["sts.${local.dns_suffix}"], var.openid_connect_audiences)))
|
||||||
thumbprint_list = concat([data.tls_certificate.this[0].certificates[0].sha1_fingerprint], var.custom_oidc_thumbprints)
|
thumbprint_list = concat([data.tls_certificate.this[0].certificates[0].sha1_fingerprint], var.custom_oidc_thumbprints)
|
||||||
url = aws_eks_cluster.this[0].identity[0].oidc[0].issuer
|
url = aws_eks_cluster.this[0].identity[0].oidc[0].issuer
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user