Skip to main content

SecretSyncGcpSecretManager

Resource SecretSyncGcpSecretManager in pulumi-infisical.
4 min read

Resource SecretSyncGcpSecretManager in pulumi-infisical.

Pulumi type: infisical:index/secretSyncGcpSecretManager:SecretSyncGcpSecretManager.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
autoSyncEnabledbooleannoWhether secrets should be automatically synced when changes occur at the source location or not.
connectionIdstringyesThe ID of the GCP Connection to use for syncing.
descriptionstringnoAn optional description for the GCP Secret Manager sync.
destinationConfigSecretSyncGcpSecretManagerDestinationConfig (input)yesThe destination configuration for the secret sync.
environmentstringyesThe slug of the project environment to sync secrets from.
namestringnoThe name of the GCP Secret Manager sync to create. Must be slug-friendly.
projectIdstringyesThe ID of the Infisical project to create the sync in.
secretPathstringyesThe folder path to sync secrets from.
syncOptionsSecretSyncGcpSecretManagerSyncOptions (input)yesParameters to modify how secrets are synced.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
autoSyncEnabledbooleannoWhether secrets should be automatically synced when changes occur at the source location or not.
connectionIdstringnoThe ID of the GCP Connection to use for syncing.
descriptionstringnoAn optional description for the GCP Secret Manager sync.
destinationConfigSecretSyncGcpSecretManagerDestinationConfig (output)noThe destination configuration for the secret sync.
environmentstringnoThe slug of the project environment to sync secrets from.
namestringnoThe name of the GCP Secret Manager sync to create. Must be slug-friendly.
projectIdstringnoThe ID of the Infisical project to create the sync in.
secretPathstringnoThe folder path to sync secrets from.
syncOptionsSecretSyncGcpSecretManagerSyncOptions (output)noParameters to modify how secrets are synced.

SecretSyncGcpSecretManagerDestinationConfig (input)#

Input object SecretSyncGcpSecretManagerDestinationConfig. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
locationIdstringnoThe GCP region to sync secrets to (e.g. us-east1). Required when scope is 'region' and must not be set when scope is 'global'.
projectIdstringyesThe ID of the GCP project to sync with
scopestringnoThe scope of the sync with GCP Secret Manager. Supported options: global, region
userReplicaLocationIdsstring[]noThe GCP regions to replicate secrets to (e.g. us-east1). Only applicable when scope is 'global'. When not defined, it will use the automatic replication policy

SecretSyncGcpSecretManagerSyncOptions (input)#

Input object SecretSyncGcpSecretManagerSyncOptions. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
disableSecretDeletionbooleannoWhen set to true, Infisical will not remove secrets from GCP Secret Manager. Enable this option if you intend to manage some secrets manually outside of Infisical.
initialSyncBehaviorstringyesSpecify how Infisical should resolve the initial sync to the destination. Supported options: overwrite-destination, import-prioritize-source, import-prioritize-destination
keySchemastringnoThe format to use for structuring secret keys in the GCP Secret Manager destination.

SecretSyncGcpSecretManagerDestinationConfig (output)#

Output object SecretSyncGcpSecretManagerDestinationConfig. Fields below belong to this object.

PropertyTypeAlways presentDescription
locationIdstringnoThe GCP region to sync secrets to (e.g. us-east1). Required when scope is 'region' and must not be set when scope is 'global'.
projectIdstringyesThe ID of the GCP project to sync with
scopestringyesThe scope of the sync with GCP Secret Manager. Supported options: global, region
userReplicaLocationIdsstring[]noThe GCP regions to replicate secrets to (e.g. us-east1). Only applicable when scope is 'global'. When not defined, it will use the automatic replication policy

SecretSyncGcpSecretManagerSyncOptions (output)#

Output object SecretSyncGcpSecretManagerSyncOptions. Fields below belong to this object.

PropertyTypeAlways presentDescription
disableSecretDeletionbooleanyesWhen set to true, Infisical will not remove secrets from GCP Secret Manager. Enable this option if you intend to manage some secrets manually outside of Infisical.
initialSyncBehaviorstringyesSpecify how Infisical should resolve the initial sync to the destination. Supported options: overwrite-destination, import-prioritize-source, import-prioritize-destination
keySchemastringnoThe format to use for structuring secret keys in the GCP Secret Manager destination.