blob: 067781e4f55cf5a91076dae71521a730a8f070fa [file] [log] [blame]
# Copyright (c) HashiCorp, Inc.
# SPDX-License-Identifier: BUSL-1.1
terraform {
required_providers {
aws = {
source = "hashicorp/aws"
enos = {
source = ""
variable "vault_agent_template_destination" {
type = string
description = "The destination of the template rendered by Agent"
variable "vault_agent_template_contents" {
type = string
description = "The template contents to be rendered by Agent"
variable "vault_root_token" {
type = string
description = "The Vault root token"
variable "vault_instances" {
type = map(object({
private_ip = string
public_ip = string
description = "The Vault cluster instances that were created"
variable "vault_instance_count" {
type = number
description = "How many vault instances are in the cluster"
variable "vault_install_dir" {
type = string
description = "The directory where the Vault binary will be installed"
locals {
vault_instances = {
for idx in range(var.vault_instance_count) : idx => {
public_ip = values(var.vault_instances)[idx].public_ip
private_ip = values(var.vault_instances)[idx].private_ip
resource "enos_remote_exec" "set_up_approle_auth_and_agent" {
environment = {
VAULT_INSTALL_DIR = var.vault_install_dir,
VAULT_TOKEN = var.vault_root_token,
VAULT_AGENT_TEMPLATE_DESTINATION = var.vault_agent_template_destination,
VAULT_AGENT_TEMPLATE_CONTENTS = var.vault_agent_template_contents,
scripts = [abspath("${path.module}/scripts/")]
transport = {
ssh = {
host = local.vault_instances[0].public_ip