mirror of
https://github.com/jlengrand/engine.git
synced 2026-03-10 08:11:21 +00:00
feat(ENG_1103): disable s3 public access (#586)
This commit is contained in:
@@ -64,4 +64,11 @@ resource "aws_s3_bucket" "loki_bucket" {
|
||||
"Name" = "Applications logs"
|
||||
}
|
||||
)
|
||||
}
|
||||
|
||||
resource "aws_s3_bucket_public_access_block" "loki_access" {
|
||||
bucket = aws_s3_bucket.loki_bucket.id
|
||||
|
||||
ignore_public_acls = true
|
||||
restrict_public_buckets = true
|
||||
}
|
||||
@@ -33,3 +33,10 @@ resource "aws_kms_key" "s3_kubeconfig_kms_encryption" {
|
||||
}
|
||||
)
|
||||
}
|
||||
|
||||
resource "aws_s3_bucket_public_access_block" "kubeconfigs_access" {
|
||||
bucket = aws_s3_bucket.kubeconfigs_bucket.id
|
||||
|
||||
ignore_public_acls = true
|
||||
restrict_public_buckets = true
|
||||
}
|
||||
Reference in New Issue
Block a user