From b981c4c0fb20a7edc923a45e60a4ad6f5e047f3f Mon Sep 17 00:00:00 2001 From: sh1220 Date: Tue, 29 Jul 2025 23:33:44 +0900 Subject: [PATCH] refactor: delegate administrator --- identity-team-account/organization/organizations/main.tf | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/identity-team-account/organization/organizations/main.tf b/identity-team-account/organization/organizations/main.tf index a645c51..2b3e2db 100644 --- a/identity-team-account/organization/organizations/main.tf +++ b/identity-team-account/organization/organizations/main.tf @@ -37,7 +37,7 @@ resource "aws_organizations_delegated_administrator" "sso_delegate" { } # Delegate GuardDuty, SecurityHub, Inspector, Detective locals { - security_services = [ + operation_services = [ "guardduty.amazonaws.com", "securityhub.amazonaws.com", "inspector2.amazonaws.com", @@ -46,8 +46,8 @@ locals { } resource "aws_organizations_delegated_administrator" "security_delegates" { - for_each = toset(local.security_services) - account_id = aws_organizations_account.security_account.id + for_each = toset(local.operation_services) + account_id = aws_organizations_account.operation_account.id service_principal = each.value }