Skip to content

Commit 8f4cf89

Browse files
committed
fix: updated condition for secret scope
1 parent 9522e60 commit 8f4cf89

File tree

1 file changed

+9
-9
lines changed

1 file changed

+9
-9
lines changed

permissions.tf

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -1,12 +1,12 @@
11
locals {
2-
secret_scope_object = {
3-
value = [for param in var.secret_scope : {
4-
scope_name = databricks_secret_scope.this[param.scope_name].name
5-
acl = param.acl
6-
} if param.acl != null]
7-
}
8-
9-
secrets_acl_objects_list = flatten([for param in local.secret_scope_object : [
2+
# secret_scope_object = {
3+
# value = [for param in var.secret_scope : {
4+
# scope_name = databricks_secret_scope.this[param.scope_name].name
5+
# acl = param.acl
6+
# } if param.acl != null]
7+
# }
8+
9+
secrets_acl_objects_list = flatten([for param in var.secret_scope : [
1010
for permission in param.acl : {
1111
scope = param.scope_name, principal = permission.principal, permission = permission.permission
1212
}] if param.acl != null
@@ -50,7 +50,7 @@ resource "databricks_permissions" "sql_endpoint" {
5050
resource "databricks_secret_acl" "this" {
5151
for_each = { for entry in local.secrets_acl_objects_list : "${entry.scope}.${entry.principal}.${entry.permission}" => entry }
5252

53-
scope = each.value.scope
53+
scope = databricks_secret_scope.this[each.value.scope].name
5454
principal = databricks_group.this[each.value.principal].display_name
5555
permission = each.value.permission
5656
}

0 commit comments

Comments
 (0)