Skip to main content

SecretSyncAwsSecretsManager

Resource SecretSyncAwsSecretsManager in pulumi-infisical.
5 min read

Resource SecretSyncAwsSecretsManager in pulumi-infisical.

Pulumi type: infisical:index/secretSyncAwsSecretsManager:SecretSyncAwsSecretsManager.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
autoSyncEnabledbooleannoWhether secrets should be automatically synced when changes occur at the source location or not.
connectionIdstringyesThe ID of the aws Connection to use for syncing.
descriptionstringnoAn optional description for the AWS Secrets Manager sync.
destinationConfigSecretSyncAwsSecretsManagerDestinationConfig (input)yesThe destination configuration for the secret sync.
environmentstringyesThe slug of the project environment to sync secrets from.
namestringnoThe name of the AWS Secrets Manager sync to create. Must be slug-friendly.
projectIdstringyesThe ID of the Infisical project to create the sync in.
secretPathstringyesThe folder path to sync secrets from.
syncOptionsSecretSyncAwsSecretsManagerSyncOptions (input)yesParameters to modify how secrets are synced.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
autoSyncEnabledbooleannoWhether secrets should be automatically synced when changes occur at the source location or not.
connectionIdstringnoThe ID of the aws Connection to use for syncing.
descriptionstringnoAn optional description for the AWS Secrets Manager sync.
destinationConfigSecretSyncAwsSecretsManagerDestinationConfig (output)noThe destination configuration for the secret sync.
environmentstringnoThe slug of the project environment to sync secrets from.
namestringnoThe name of the AWS Secrets Manager sync to create. Must be slug-friendly.
projectIdstringnoThe ID of the Infisical project to create the sync in.
secretPathstringnoThe folder path to sync secrets from.
syncOptionsSecretSyncAwsSecretsManagerSyncOptions (output)noParameters to modify how secrets are synced.

SecretSyncAwsSecretsManagerDestinationConfig (input)#

Input object SecretSyncAwsSecretsManagerDestinationConfig. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
awsRegionstringyesThe AWS region of your AWS Secrets Manager
awsSecretsManagerSecretNamestringnoThe name of the AWS secret to map to. This only applies when mappingBehavior is set to 'many-to-one'.
mappingBehaviorstringnoThe behavior of the mapping. Can be 'many-to-one' or 'one-to-one'. Many to One: All Infisical secrets will be mapped to a single AWS secret. One to One: Each Infisical secret will be mapped to its own AWS secret.

SecretSyncAwsSecretsManagerSyncOptions (input)#

Input object SecretSyncAwsSecretsManagerSyncOptions. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
awsKmsKeyIdstringnoThe AWS KMS key ID to use for encryption
disableSecretDeletionbooleannoWhen set to true, Infisical will not remove secrets from AWS Secrets Manager. Enable this option if you intend to manage some secrets manually outside of Infisical.
initialSyncBehaviorstringyesSpecify how Infisical should resolve the initial sync to the destination. Supported options: overwrite-destination, import-prioritize-source, import-prioritize-destination
keySchemastringnoThe format to use for structuring secret keys in the AWS Secrets Manager destination.
syncSecretMetadataAsTagsbooleannoWhether to sync the secret metadata as tags. This is only supported for the 'one-to-one' mapping behavior.
tagsSecretSyncAwsSecretsManagerSyncOptionsTag (input)[]noThe tags to sync to the secret

SecretSyncAwsSecretsManagerSyncOptionsTag (input)#

Input object SecretSyncAwsSecretsManagerSyncOptionsTag. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
keystringyesThe key of the tag
valuestringyesThe value of the tag

SecretSyncAwsSecretsManagerDestinationConfig (output)#

Output object SecretSyncAwsSecretsManagerDestinationConfig. Fields below belong to this object.

PropertyTypeAlways presentDescription
awsRegionstringyesThe AWS region of your AWS Secrets Manager
awsSecretsManagerSecretNamestringnoThe name of the AWS secret to map to. This only applies when mappingBehavior is set to 'many-to-one'.
mappingBehaviorstringyesThe behavior of the mapping. Can be 'many-to-one' or 'one-to-one'. Many to One: All Infisical secrets will be mapped to a single AWS secret. One to One: Each Infisical secret will be mapped to its own AWS secret.

SecretSyncAwsSecretsManagerSyncOptions (output)#

Output object SecretSyncAwsSecretsManagerSyncOptions. Fields below belong to this object.

PropertyTypeAlways presentDescription
awsKmsKeyIdstringnoThe AWS KMS key ID to use for encryption
disableSecretDeletionbooleanyesWhen set to true, Infisical will not remove secrets from AWS Secrets Manager. Enable this option if you intend to manage some secrets manually outside of Infisical.
initialSyncBehaviorstringyesSpecify how Infisical should resolve the initial sync to the destination. Supported options: overwrite-destination, import-prioritize-source, import-prioritize-destination
keySchemastringnoThe format to use for structuring secret keys in the AWS Secrets Manager destination.
syncSecretMetadataAsTagsbooleanyesWhether to sync the secret metadata as tags. This is only supported for the 'one-to-one' mapping behavior.
tagsSecretSyncAwsSecretsManagerSyncOptionsTag (output)[]noThe tags to sync to the secret

SecretSyncAwsSecretsManagerSyncOptionsTag (output)#

Output object SecretSyncAwsSecretsManagerSyncOptionsTag. Fields below belong to this object.

PropertyTypeAlways presentDescription
keystringyesThe key of the tag
valuestringyesThe value of the tag