Skip to main content

DynamicSecretAwsIam

Resource DynamicSecretAwsIam in pulumi-infisical.
6 min read

Resource DynamicSecretAwsIam in pulumi-infisical.

Pulumi type: infisical:index/dynamicSecretAwsIam:DynamicSecretAwsIam.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
configurationDynamicSecretAwsIamConfiguration (input)yesThe configuration of the dynamic secret
defaultTtlstringyesThe default TTL that will be applied for all the leases.
environmentSlugstringyesThe slug of the environment to create the dynamic secret in.
maxTtlstringnoThe maximum limit a TTL can be leased or renewed for.
metadatasDynamicSecretAwsIamMetadata (input)[]noThe metadata associated with this dynamic secret
namestringnoThe name of the dynamic secret.
pathstringyesThe path to create the dynamic secret in.
projectSlugstringyesThe slug of the project to create dynamic secret in.
usernameTemplatestringnoThe username template of the dynamic secret

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
configurationDynamicSecretAwsIamConfiguration (output)noThe configuration of the dynamic secret
defaultTtlstringnoThe default TTL that will be applied for all the leases.
environmentSlugstringnoThe slug of the environment to create the dynamic secret in.
maxTtlstringnoThe maximum limit a TTL can be leased or renewed for.
metadatasDynamicSecretAwsIamMetadata (output)[]noThe metadata associated with this dynamic secret
namestringnoThe name of the dynamic secret.
pathstringnoThe path to create the dynamic secret in.
projectSlugstringnoThe slug of the project to create dynamic secret in.
usernameTemplatestringnoThe username template of the dynamic secret

DynamicSecretAwsIamConfiguration (input)#

Input object DynamicSecretAwsIamConfiguration. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
accessKeyConfigDynamicSecretAwsIamConfigurationAccessKeyConfig (input)noConfiguration for the 'access_key' authentication method.
assumeRoleConfigDynamicSecretAwsIamConfigurationAssumeRoleConfig (input)noConfiguration for the 'assume_role' authentication method.
awsPathstringnoIAM AWS Path to scope created IAM User resource access.
methodstringyesThe authentication method to use. Must be 'access_key' or 'assume_role'.
permissionBoundaryPolicyArnstringnoThe IAM Policy ARN of the AWS Permissions Boundary to attach to IAM users created in the role.
policyArnsstringnoThe AWS IAM managed policies that should be attached to the created users. Multiple values can be provided by separating them with commas
policyDocumentstringnoThe AWS IAM inline policy that should be attached to the created users. Multiple values can be provided by separating them with commas
regionstringyesThe AWS data center region.
userGroupsstringnoThe AWS IAM groups that should be assigned to the created users. Multiple values can be provided by separating them with commas

DynamicSecretAwsIamConfigurationAccessKeyConfig (input)#

Input object DynamicSecretAwsIamConfigurationAccessKeyConfig. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
accessKeystringyesThe managing AWS IAM User Access Key
secretAccessKeystringyesThe managing AWS IAM User Secret Key

DynamicSecretAwsIamConfigurationAssumeRoleConfig (input)#

Input object DynamicSecretAwsIamConfigurationAssumeRoleConfig. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
roleArnstringyesThe ARN of the AWS Role to assume.

DynamicSecretAwsIamMetadata (input)#

Input object DynamicSecretAwsIamMetadata. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
keystringyesThe key of the metadata object
valuestringyesThe value of the metadata object

DynamicSecretAwsIamConfiguration (output)#

Output object DynamicSecretAwsIamConfiguration. Fields below belong to this object.

PropertyTypeAlways presentDescription
accessKeyConfigDynamicSecretAwsIamConfigurationAccessKeyConfig (output)noConfiguration for the 'access_key' authentication method.
assumeRoleConfigDynamicSecretAwsIamConfigurationAssumeRoleConfig (output)noConfiguration for the 'assume_role' authentication method.
awsPathstringnoIAM AWS Path to scope created IAM User resource access.
methodstringyesThe authentication method to use. Must be 'access_key' or 'assume_role'.
permissionBoundaryPolicyArnstringnoThe IAM Policy ARN of the AWS Permissions Boundary to attach to IAM users created in the role.
policyArnsstringnoThe AWS IAM managed policies that should be attached to the created users. Multiple values can be provided by separating them with commas
policyDocumentstringnoThe AWS IAM inline policy that should be attached to the created users. Multiple values can be provided by separating them with commas
regionstringyesThe AWS data center region.
userGroupsstringnoThe AWS IAM groups that should be assigned to the created users. Multiple values can be provided by separating them with commas

DynamicSecretAwsIamConfigurationAccessKeyConfig (output)#

Output object DynamicSecretAwsIamConfigurationAccessKeyConfig. Fields below belong to this object.

PropertyTypeAlways presentDescription
accessKeystringyesThe managing AWS IAM User Access Key
secretAccessKeystringyesThe managing AWS IAM User Secret Key

DynamicSecretAwsIamConfigurationAssumeRoleConfig (output)#

Output object DynamicSecretAwsIamConfigurationAssumeRoleConfig. Fields below belong to this object.

PropertyTypeAlways presentDescription
roleArnstringyesThe ARN of the AWS Role to assume.

DynamicSecretAwsIamMetadata (output)#

Output object DynamicSecretAwsIamMetadata. Fields below belong to this object.

PropertyTypeAlways presentDescription
keystringyesThe key of the metadata object
valuestringyesThe value of the metadata object