fix: Correct service principal to rds.amazonaws.com (incl China) (#32)

Co-authored-by: Bryant Biggs <bryantbiggs@gmail.com>
Co-authored-by: Anton Babenko <anton@antonbabenko.com>
This commit is contained in:
vladislav-orlovskiy 2025-05-22 11:51:06 +02:00 committed by GitHub
parent 99df7e3913
commit bbbf50ce87
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
2 changed files with 7 additions and 1 deletions

View file

@ -91,6 +91,7 @@ No modules.
| [aws_iam_policy_document.this](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/iam_policy_document) | data source |
| [aws_partition.current](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/partition) | data source |
| [aws_region.current](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/region) | data source |
| [aws_service_principal.rds](https://registry.terraform.io/providers/hashicorp/aws/latest/docs/data-sources/service_principal) | data source |
## Inputs

View file

@ -6,7 +6,12 @@ locals {
data "aws_region" "current" {}
data "aws_partition" "current" {}
data "aws_service_principal" "rds" {
count = var.create && var.create_iam_role ? 1 : 0
service_name = "rds"
region = data.aws_region.current.name
}
################################################################################
# RDS Proxy
################################################################################
@ -111,7 +116,7 @@ data "aws_iam_policy_document" "assume_role" {
principals {
type = "Service"
identifiers = ["rds.${data.aws_partition.current.dns_suffix}"]
identifiers = [data.aws_service_principal.rds[0].name]
}
}
}