Skip to content

Commit d892ba1

Browse files
committed
update: set recov window to 0 for secret deletion
1 parent 94a3a8e commit d892ba1

File tree

1 file changed

+6
-2
lines changed

1 file changed

+6
-2
lines changed

terraform/secrets.tf

Lines changed: 6 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,14 @@
11
# Secrets for rotated IAM user access keys
22
resource "aws_secretsmanager_secret" "access_key" {
33
name = "${var.env_name}-${var.lambda_name}-access-key"
4-
description = "Access Key ID for github copilot usage lambda IAM user"
4+
description = "Access Key ID for copilot usage lambda IAM user"
5+
recovery_window_in_days = 0 // Secret will be deleted immediately
6+
force_overwrite_replica_secret = true // Allow overwriting the secret in case of changes
57
}
68

79
resource "aws_secretsmanager_secret" "secret_key" {
810
name = "${var.env_name}-${var.lambda_name}-secret-key"
9-
description = "Secret Access Key for github copilot usage lambda IAM user"
11+
description = "Secret Access Key for copilot usage lambda IAM user"
12+
recovery_window_in_days = 0 // Secret will be deleted immediately
13+
force_overwrite_replica_secret = true // Allow overwriting the secret in case of changes
1014
}

0 commit comments

Comments
 (0)