diff --git a/terraform/modules/cloudtrailconsole/s3/iam.tf b/terraform/modules/cloudtrailconsole/s3/iam.tf index d040cb8..96b4a5f 100644 --- a/terraform/modules/cloudtrailconsole/s3/iam.tf +++ b/terraform/modules/cloudtrailconsole/s3/iam.tf @@ -29,7 +29,7 @@ data "aws_iam_policy_document" "default" { "logs:CreateLogGroup", ] resources = [ - "arn:aws:logs:${data.aws_region.current.name}:${data.aws_caller_identity.current.account_id}:/aws/lambda/${var.name}", + "arn:aws:logs:${data.aws_region.current.region}:${data.aws_caller_identity.current.account_id}:/aws/lambda/${var.name}", ] } @@ -39,7 +39,7 @@ data "aws_iam_policy_document" "default" { "logs:PutLogEvents", ] resources = [ - "arn:aws:logs:${data.aws_region.current.name}:${data.aws_caller_identity.current.account_id}:log-group:/aws/lambda/${var.name}:log-stream:*", + "arn:aws:logs:${data.aws_region.current.region}:${data.aws_caller_identity.current.account_id}:log-group:/aws/lambda/${var.name}:log-stream:*", ] } diff --git a/terraform/modules/cloudtrailconsole/s3/locals.tf b/terraform/modules/cloudtrailconsole/s3/locals.tf index 8fc4b38..f4693af 100644 --- a/terraform/modules/cloudtrailconsole/s3/locals.tf +++ b/terraform/modules/cloudtrailconsole/s3/locals.tf @@ -1 +1,3 @@ data "aws_caller_identity" "current" {} + +data "aws_region" "current" {} diff --git a/terraform/modules/cloudtrailconsole/sns/iam.tf b/terraform/modules/cloudtrailconsole/sns/iam.tf index d040cb8..96b4a5f 100644 --- a/terraform/modules/cloudtrailconsole/sns/iam.tf +++ b/terraform/modules/cloudtrailconsole/sns/iam.tf @@ -29,7 +29,7 @@ data "aws_iam_policy_document" "default" { "logs:CreateLogGroup", ] resources = [ - "arn:aws:logs:${data.aws_region.current.name}:${data.aws_caller_identity.current.account_id}:/aws/lambda/${var.name}", + "arn:aws:logs:${data.aws_region.current.region}:${data.aws_caller_identity.current.account_id}:/aws/lambda/${var.name}", ] } @@ -39,7 +39,7 @@ data "aws_iam_policy_document" "default" { "logs:PutLogEvents", ] resources = [ - "arn:aws:logs:${data.aws_region.current.name}:${data.aws_caller_identity.current.account_id}:log-group:/aws/lambda/${var.name}:log-stream:*", + "arn:aws:logs:${data.aws_region.current.region}:${data.aws_caller_identity.current.account_id}:log-group:/aws/lambda/${var.name}:log-stream:*", ] }