File tree Expand file tree Collapse file tree 2 files changed +32
-6
lines changed Expand file tree Collapse file tree 2 files changed +32
-6
lines changed Original file line number Diff line number Diff line change @@ -456,6 +456,7 @@ Resources:
456
456
Properties :
457
457
Name : TestRegion
458
458
SecretString : !Select [1, !Split [".", !Ref SCIMEndpointUrl]]
459
+ KmsKeyId : !Ref KeyAlias
459
460
460
461
SecretRegionPolicy :
461
462
Type : AWS::SecretsManager::ResourcePolicy
@@ -488,6 +489,7 @@ Resources:
488
489
Properties :
489
490
Name : TestIdentityStoreId
490
491
SecretString : !Ref IdentityStoreId
492
+ KmsKeyId : !Ref KeyAlias
491
493
492
494
SecretIdentityStoreIDPolicy :
493
495
Type : AWS::SecretsManager::ResourcePolicy
Original file line number Diff line number Diff line change @@ -41,12 +41,36 @@ Resources:
41
41
SemanticVersion : !Ref AppVersion
42
42
Parameters :
43
43
FunctionName : SSOSyncFunction
44
- GoogleAdminEmail : !Sub '{{resolve:secretsmanager:${GoogleAdminEmailArn}}}'
45
- GoogleCredentials : ' {{resolve:secretsmanager:${GoogleCredentials}}}'
46
- SCIMEndpointUrl : ' {{resolve:secretsmanager:$SCIMEndpointUrlArn}}}'
47
- SCIMEndpointAccessToken : ' {{resolve:secretsmanager:${SCIMAccessTokenArn}}}'
48
- Region : ' {{resolve:secretsmanager:${RegioArn}n}}'
49
- IdentityStoreID : ' {{resolve:secretsmanager:${IdentityStoreIdArn}}}'
44
+ GoogleAdminEmail : !Join
45
+ - ' '
46
+ - - '{{resolve:secretsmanager:'
47
+ - !Ref GoogleAdminEmailArn
48
+ - ' }}'
49
+ GoogleCredentials : !Join
50
+ - ' '
51
+ - - '{{resolve:secretsmanager:'
52
+ - !Ref GoogleCredentialsArn
53
+ - ' }}'
54
+ SCIMEndpointUrl : !Join
55
+ - ' '
56
+ - - '{{resolve:secretsmanager:'
57
+ - !Ref SCIMEndpointUrlArn
58
+ - ' }}'
59
+ SCIMEndpointAccessToken : !Join
60
+ - ' '
61
+ - - '{{resolve:secretsmanager:'
62
+ - !Ref SCIMAccessTokenArn
63
+ - ' }}'
64
+ Region : !Join
65
+ - ' '
66
+ - - '{{resolve:secretsmanager:'
67
+ - !Ref RegionArn
68
+ - ' }}'
69
+ IdentityStoreID : !Join
70
+ - ' '
71
+ - - '{{resolve:secretsmanager:'
72
+ - !Ref IdentityStoreIdArn
73
+ - ' }}'
50
74
SyncMethod : groups
51
75
GoogleGroupMatch : !Ref GroupMatch
52
76
LogLevel : warn
You can’t perform that action at this time.
0 commit comments