Skip to main content

SecretApprovalPolicy

Resource SecretApprovalPolicy in pulumi-infisical.
4 min read

Resource SecretApprovalPolicy in pulumi-infisical.

Pulumi type: infisical:index/secretApprovalPolicy:SecretApprovalPolicy.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
allowSelfApprovalbooleannoWhether to allow the approvers to approve their own changes
approversSecretApprovalPolicyApprover (input)[]yesThe required approvers
bypassApprovalsForMachineIdentitiesbooleannoWhether machine identities can bypass the policy. If not set, the Infisical default is used on creation and the current value is left unchanged on update
bypassersSecretApprovalPolicyBypasser (input)[]noThe bypassers who can bypass the approval policy
enforcementLevelstringnoThe enforcement level of the policy. This can either be hard or soft
environmentSlugstringno(DEPRECATED, Use environmentSlugs instead) The environment to apply the secret approval policy to
environmentSlugsstring[]noThe environments to apply the secret approval policy to
namestringnoThe name of the secret approval policy
projectIdstringyesThe ID of the project to add the secret approval policy
requiredApprovalsnumberyesThe number of required approvers
secretPathstringyesThe secret path to apply the secret approval policy to

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
allowSelfApprovalbooleannoWhether to allow the approvers to approve their own changes
approversSecretApprovalPolicyApprover (output)[]noThe required approvers
bypassApprovalsForMachineIdentitiesbooleannoWhether machine identities can bypass the policy. If not set, the Infisical default is used on creation and the current value is left unchanged on update
bypassersSecretApprovalPolicyBypasser (output)[]noThe bypassers who can bypass the approval policy
enforcementLevelstringnoThe enforcement level of the policy. This can either be hard or soft
environmentSlugstringno(DEPRECATED, Use environmentSlugs instead) The environment to apply the secret approval policy to
environmentSlugsstring[]noThe environments to apply the secret approval policy to
namestringnoThe name of the secret approval policy
projectIdstringnoThe ID of the project to add the secret approval policy
requiredApprovalsnumbernoThe number of required approvers
secretPathstringnoThe secret path to apply the secret approval policy to

SecretApprovalPolicyApprover (input)#

Input object SecretApprovalPolicyApprover. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
idstringnoThe ID of the approver
typestringyesThe type of approver. Either group or user
usernamestringnoThe username of the approver. By default, this is the email

SecretApprovalPolicyBypasser (input)#

Input object SecretApprovalPolicyBypasser. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
idstringnoThe ID of the bypasser
typestringyesThe type of bypasser. Either group or user
usernamestringnoThe username of the bypasser. By default, this is the email

SecretApprovalPolicyApprover (output)#

Output object SecretApprovalPolicyApprover. Fields below belong to this object.

PropertyTypeAlways presentDescription
idstringnoThe ID of the approver
typestringyesThe type of approver. Either group or user
usernamestringnoThe username of the approver. By default, this is the email

SecretApprovalPolicyBypasser (output)#

Output object SecretApprovalPolicyBypasser. Fields below belong to this object.

PropertyTypeAlways presentDescription
idstringnoThe ID of the bypasser
typestringyesThe type of bypasser. Either group or user
usernamestringnoThe username of the bypasser. By default, this is the email