Skip to content

Commit

Permalink
Update secrets.yaml
Browse files Browse the repository at this point in the history
  • Loading branch information
ChrisPates committed Feb 5, 2024
1 parent 0edb2bf commit 6b1b628
Showing 1 changed file with 18 additions and 0 deletions.
18 changes: 18 additions & 0 deletions cicd/cloudformation/secrets.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -203,6 +203,8 @@ Resources:

KeyForSecrets:
Type: AWS::KMS::Key
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Description: Key for protecting SSOSync Secrets in cross-account deployment
Enabled: true
Expand Down Expand Up @@ -248,6 +250,8 @@ Resources:
SecretGoogleCredentials:
Type: "AWS::SecretsManager::Secret"
Condition: CreateGoogle
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestGoogleCredentials
SecretString: !Ref GoogleCredentials
Expand Down Expand Up @@ -283,6 +287,8 @@ Resources:
SecretGoogleAdminEmail:
Type: "AWS::SecretsManager::Secret"
Condition: CreateGoogle
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestGoogleAdminEmail
SecretString: !Ref GoogleAdminEmail
Expand Down Expand Up @@ -318,6 +324,8 @@ Resources:
SecretWIFServiceAccountEmail:
Type: "AWS::SecretsManager::Secret"
Condition: CreateWIF
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestWIFServiceAccountEmail
SecretString: !Ref WIFServiceAccountEmail
Expand Down Expand Up @@ -353,6 +361,8 @@ Resources:
SecretWIFClientLibraryConfig:
Type: "AWS::SecretsManager::Secret"
Condition: CreateWIF
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestWIFClientLibraryConfigSecret
SecretString: !Ref WIFClientLibraryConfig
Expand Down Expand Up @@ -387,6 +397,8 @@ Resources:

SecretSCIMEndpoint: # This can be moved to custom provider
Type: "AWS::SecretsManager::Secret"
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestSCIMEndpointUrl
SecretString: !Ref SCIMEndpointUrl
Expand Down Expand Up @@ -420,6 +432,8 @@ Resources:

SecretSCIMAccessToken: # This can be moved to custom provider
Type: "AWS::SecretsManager::Secret"
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestSCIMAccessToken
SecretString: !Ref SCIMEndpointAccessToken
Expand Down Expand Up @@ -453,6 +467,8 @@ Resources:

SecretRegion:
Type: "AWS::SecretsManager::Secret"
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestRegion
SecretString: !Select [1, !Split [".", !Ref SCIMEndpointUrl]]
Expand Down Expand Up @@ -486,6 +502,8 @@ Resources:

SecretIdentityStoreID:
Type: "AWS::SecretsManager::Secret"
DeletionPolicy: Retain
UpdateReplacePolicy: Delete
Properties:
Name: TestIdentityStoreId
SecretString: !Ref IdentityStoreId
Expand Down

0 comments on commit 6b1b628

Please sign in to comment.