Skip to main content

ClusterSecret

Resource ClusterSecret in pulumi-buildkite.
3 min read

Resource ClusterSecret in pulumi-buildkite.

Pulumi type: buildkite:index/clusterSecret:ClusterSecret.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
clusterIdstringyesThe UUID of the cluster this secret belongs to.
descriptionstringnoA description of what this secret is for.
keystringyesThe key name for the secret. Must start with a letter and only contain letters, numbers, and underscores. Maximum 255 characters. Must not start with buildkite or bk (case-insensitive) as these prefixes are reserved.
policystringnoYAML access policy defining which pipelines and branches can access this secret.
valuestringnoThe secret value. Must be less than 8KB. Exactly one of value or valueWo must be configured. This value is stored in Terraform state; use valueWo with valueWoVersion to avoid storing secret values in state.
valueWostringnoNOTE: This field is write-only and its value will not be updated in state as part of read operations. Write-only secret value. Must be less than 8KB. Exactly one of value or valueWo must be configured. This value is not stored in Terraform plan or state artifacts. Pair with valueWoVersion to trigger secret value updates.
valueWoVersionstringnoNon-empty, non-secret version identifier for valueWo. Required when valueWo is configured. Change this value when the write-only secret value changes, for example by using an external secret manager version ID.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
clusterIdstringnoThe UUID of the cluster this secret belongs to.
createdAtstringyesThe time when the secret was created.
descriptionstringnoA description of what this secret is for.
keystringnoThe key name for the secret. Must start with a letter and only contain letters, numbers, and underscores. Maximum 255 characters. Must not start with buildkite or bk (case-insensitive) as these prefixes are reserved.
policystringnoYAML access policy defining which pipelines and branches can access this secret.
updatedAtstringyesThe time when the secret was last updated.
valuestringnoThe secret value. Must be less than 8KB. Exactly one of value or valueWo must be configured. This value is stored in Terraform state; use valueWo with valueWoVersion to avoid storing secret values in state.
valueWostringnoNOTE: This field is write-only and its value will not be updated in state as part of read operations. Write-only secret value. Must be less than 8KB. Exactly one of value or valueWo must be configured. This value is not stored in Terraform plan or state artifacts. Pair with valueWoVersion to trigger secret value updates.
valueWoVersionstringnoNon-empty, non-secret version identifier for valueWo. Required when valueWo is configured. Change this value when the write-only secret value changes, for example by using an external secret manager version ID.