fix: Include all certificate fingerprints in the OIDC provider thumbprint list (#2307)

Co-authored-by: gdjensen <gjensen@tradewelltech.co>
This commit is contained in:
ThetaSinner
2022-11-22 16:16:39 +00:00
committed by GitHub
parent fe85170cab
commit 7436178cc1

View File

@@ -213,7 +213,7 @@ resource "aws_iam_openid_connect_provider" "oidc_provider" {
count = local.create && var.enable_irsa ? 1 : 0 count = local.create && var.enable_irsa ? 1 : 0
client_id_list = distinct(compact(concat(["sts.${local.dns_suffix}"], var.openid_connect_audiences))) client_id_list = distinct(compact(concat(["sts.${local.dns_suffix}"], var.openid_connect_audiences)))
thumbprint_list = concat([data.tls_certificate.this[0].certificates[0].sha1_fingerprint], var.custom_oidc_thumbprints) thumbprint_list = concat(data.tls_certificate.this[0].certificates[*].sha1_fingerprint, var.custom_oidc_thumbprints)
url = aws_eks_cluster.this[0].identity[0].oidc[0].issuer url = aws_eks_cluster.this[0].identity[0].oidc[0].issuer
tags = merge( tags = merge(