diff --git a/terraform/aws-groups.tf b/terraform/aws-groups.tf index fc2c0a8..646f677 100644 --- a/terraform/aws-groups.tf +++ b/terraform/aws-groups.tf @@ -10,3 +10,19 @@ module "iam_read_only_group" { } } +//import ops-leads group +resource "aws_iam_group" "ops_leads_group" { + name = "ops-leads" +} + +resource "aws_iam_group_policy_attachment" "admin"{ + group = aws_iam_group.ops_leads_group.name + policy_arn = "arn:aws:iam::aws:policy/AdministratorAccess" +} + +resource "aws_iam_group_policy_attachment" "manageAccessKeys"{ + group = aws_iam_group.ops_leads_group.name + policy_arn = "arn:aws:iam::035866691871:policy/ManageAccessKeys" +} + + diff --git a/terraform/imports.tf b/terraform/imports.tf new file mode 100644 index 0000000..932b142 --- /dev/null +++ b/terraform/imports.tf @@ -0,0 +1,4 @@ +import { + to = aws_iam_group.ops_leads_group + id = "ops-leads" +}