Skip to content

Commit

Permalink
Cleanup permissions
Browse files Browse the repository at this point in the history
  • Loading branch information
ImDevinC committed Oct 31, 2023
1 parent 8262556 commit 1d3cbe2
Show file tree
Hide file tree
Showing 2 changed files with 10 additions and 5 deletions.
10 changes: 6 additions & 4 deletions terraform/bucket.tf
@@ -1,7 +1,8 @@
// Site bucket
module "bucket" {
source = "terraform-aws-modules/s3-bucket/aws"
bucket = local.bucket_name
source = "terraform-aws-modules/s3-bucket/aws"
version = "3.15.1"
bucket = local.bucket_name
server_side_encryption_configuration = {
rule = {
apply_server_side_encryption_by_default = {
Expand Down Expand Up @@ -36,8 +37,9 @@ resource "aws_s3_bucket_policy" "bucket_policy" {

// Blog bucket
module "blog_bucket" {
source = "terraform-aws-modules/s3-bucket/aws"
bucket = local.blog_bucket_name
source = "terraform-aws-modules/s3-bucket/aws"
version = "3.15.1"
bucket = local.blog_bucket_name
server_side_encryption_configuration = {
rule = {
apply_server_side_encryption_by_default = {
Expand Down
5 changes: 4 additions & 1 deletion terraform/kms.tf
Expand Up @@ -34,7 +34,10 @@ data "aws_iam_policy_document" "kms_key_policy" {
condition {
test = "StringEquals"
variable = "AWS:SourceArn"
values = [module.blog_cloudfront.cloudfront_distribution_arn]
values = [
module.blog_cloudfront.cloudfront_distribution_arn,
module.cloudfront.cloudfront_distribution_arn,
]
}
}
}

0 comments on commit 1d3cbe2

Please sign in to comment.