-
Notifications
You must be signed in to change notification settings - Fork 0
/
variables.tf
79 lines (66 loc) · 2.03 KB
/
variables.tf
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
variable "cluster_name" {
description = "Name given to the Kubernetes cluster, and prefixed to some resource tags"
type = string
}
variable "cluster_email" {
description = "Email/Username of Kubernetes cluster owner"
type = string
default = null
}
variable "idp_client_id" {
description = "Client ID as shared by the Identity provider"
type = string
}
variable "idp_config_name" {
description = "Friendly name for this Identity provider config"
type = string
default = "idp"
}
variable "idp_issuer_url" {
description = "Issuer url as shared by the Identity provider"
type = string
}
variable "idp_group_claim" {
description = "Group claims provided by the Identity provider"
type = string
default = "groups"
}
variable "idp_group_prefix" {
description = "Group prefix for k8s cluster group name"
type = string
default = "oidc:"
}
variable "idp_username_claim" {
description = "Username claim provided by the Identity provider"
type = string
default = "preferred_username"
}
variable "idp_username_prefix" {
description = "Username prefix for k8s cluster username"
type = string
default = "oidc:"
}
variable "idp_cluster_admin_groups" {
description = "Groups on Identity provider which should have cluster admin access"
type = list(string)
default = []
}
variable "idp_cluster_admin_users" {
description = "Users on Identity provider which should have cluster admin access"
type = list(string)
default = []
}
variable "idp_cluster_readonly_groups" {
description = "Groups on Identity provider which should have cluster readonly access"
type = list(string)
default = []
}
variable "idp_cluster_readonly_users" {
description = "Users on Identity provider which should have cluster readonly access"
type = list(string)
default = []
}
variable "tags" {
description = "Tags to apply to AWS resources created by this Terraform configuration"
type = map(any)
}