From 81b5846a2898896133c036a60570ad94f5f3003b Mon Sep 17 00:00:00 2001 From: nhyne Date: Mon, 9 Nov 2020 10:04:57 -0500 Subject: [PATCH] adding some debugging logs/outputs --- assume_role.sh | 2 ++ main.tf | 7 +++++++ 2 files changed, 9 insertions(+) diff --git a/assume_role.sh b/assume_role.sh index 3eb02c6..c7e9530 100644 --- a/assume_role.sh +++ b/assume_role.sh @@ -7,6 +7,8 @@ fi ACCOUNT="$1" ROLE="$2" +echo "Got account ID: $ACCOUNT and role: $ROLE" + role_session_name=`cat /proc/sys/kernel/random/uuid 2>/dev/null || date | cksum | cut -d " " -f 1` aws_creds=$(aws sts assume-role --role-arn arn:aws:iam::${ACCOUNT}:role/$ROLE --role-session-name $role_session_name --duration-seconds 3600 --output json) diff --git a/main.tf b/main.tf index 9549ea4..9974021 100644 --- a/main.tf +++ b/main.tf @@ -63,3 +63,10 @@ output "id" { value = null_resource.cli_resource.id } +output "assumed_role" { + value = local.account_id +} +output "assumed_role_command" { + value = local.assume_role_cmd +} +