Skip to content

Commit 3cf400d

Browse files
author
iru
committed
chore: lower kms deletion window
1 parent 5dc0146 commit 3cf400d

File tree

1 file changed

+7
-5
lines changed
  • modules/infrastructure/cloudtrail

1 file changed

+7
-5
lines changed

modules/infrastructure/cloudtrail/kms.tf

Lines changed: 7 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -1,9 +1,11 @@
11
resource "aws_kms_key" "cloudtrail_kms" {
2-
count = var.cloudtrail_kms_enable ? 1 : 0
3-
is_enabled = true
4-
enable_key_rotation = true
5-
policy = data.aws_iam_policy_document.cloudtrail_kms[0].json
6-
tags = var.tags
2+
count = var.cloudtrail_kms_enable ? 1 : 0
3+
is_enabled = true
4+
enable_key_rotation = true
5+
policy = data.aws_iam_policy_document.cloudtrail_kms[0].json
6+
deletion_window_in_days = 7
7+
8+
tags = var.tags
79
}
810

911
resource "aws_kms_alias" "kms" {

0 commit comments

Comments
 (0)