{"repo":"terraform-aws-modules/terraform-aws-iam","free":true,"listed":false,"github":"https://github.com/terraform-aws-modules/terraform-aws-iam","clone":"git clone https://github.com/terraform-aws-modules/terraform-aws-iam.git","description":"Terraform module to create AWS IAM resources 🇺🇦","language":"HCL","stars":868,"topics":["aws","iam","aws-iam","terraform-module"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"AWS IAM Terraform module Terraform module which creates AWS IAM resources. Usage Please refer to the AWS published IAM Best Practices for up to date guidance on IAM best practices. IAM Account Creates an account policy and account alias. Module instantiation is once per account. IAM Group Creates an IAM group with IAM policy attached that one or more users can be added to. IAM OIDC Provider Creates an OpenID connect provider. Useful for trusting external identity providers such as GitHub, Bitbucket, etc. [!TIP] An IAM provider is 1 per account per given URL. This module would be provisioned once per AWS account, and then one or more roles can be created with this provider as the trusted identity. IAM Policy Creates an IAM policy. IAM ReadOnly Policy Creates an IAM policy that allows read-only access to the list of AWS services provided. IAM Role Creates an IAM role with a trust policy and (optional) IAM instance profile. Useful for service roles such as EC2, ECS, etc., or roles assumed across AWS accounts. IAM Role - GitHub OIDC Creates an IAM role that trusts an OpenID connect provider. Useful for trusting external identity providers such as GitHub, Bitbucket, etc. IAM Role - SAML 2.0 Creates an IAM role that trusts a SAML provider. Useful for trusting external identity providers such as Okta, OneLogin, etc. IAM Role for EKS Service Accounts (IRSA) [!TIP] Upgrade to use EKS Pod Identity instead of IRSA A similar module for EKS Pod Identity is available here. Creates an IAM r","default_branch":null,"files":null,"tree":[],"storefront":"/r/terraform-aws-modules","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/terraform-aws-modules/terraform-aws-iam/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}