fix: Avoid re-naming the primary security group through a Name tag and leave to the EKS service to manage (#2010)

This commit is contained in:
Bryant Biggs
2022-04-12 04:36:03 -04:00
committed by GitHub
parent 69a815c7df
commit b5ae5daa39
2 changed files with 11 additions and 1 deletions

View File

@@ -67,6 +67,13 @@ module "eks" {
resources = ["secrets"]
}]
cluster_tags = {
# This should not affect the name of the cluster primary security group
# Ref: https://github.com/terraform-aws-modules/terraform-aws-eks/pull/2006
# Ref: https://github.com/terraform-aws-modules/terraform-aws-eks/pull/2008
Name = local.name
}
vpc_id = module.vpc.vpc_id
subnet_ids = module.vpc.private_subnets

View File

@@ -60,7 +60,10 @@ resource "aws_eks_cluster" "this" {
}
resource "aws_ec2_tag" "cluster_primary_security_group" {
for_each = { for k, v in merge(var.tags, var.cluster_tags) : k => v if local.create }
# This should not affect the name of the cluster primary security group
# Ref: https://github.com/terraform-aws-modules/terraform-aws-eks/pull/2006
# Ref: https://github.com/terraform-aws-modules/terraform-aws-eks/pull/2008
for_each = { for k, v in merge(var.tags, var.cluster_tags) : k => v if local.create && k != "Name" }
resource_id = aws_eks_cluster.this[0].vpc_config[0].cluster_security_group_id
key = each.key