Skip to content

Commit 1f4b8c4

Browse files
authored
fix: FluenBit add-on CW Log group fix (#228)
1 parent bd1df9c commit 1f4b8c4

File tree

1 file changed

+13
-1
lines changed

1 file changed

+13
-1
lines changed

main.tf

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -591,7 +591,7 @@ data "aws_iam_policy_document" "aws_for_fluentbit" {
591591
sid = "CreateCWLogs"
592592
effect = "Allow"
593593
resources = [
594-
"arn:${local.partition}:logs:${local.region}:${local.account_id}:log-group:${try(var.aws_for_fluentbit_cw_log_group.name, "*")}",
594+
"arn:${local.partition}:logs:${local.region}:${local.account_id}:log-group:${try(var.aws_for_fluentbit_cw_log_group.name, "*")}:*",
595595
]
596596

597597
actions = [
@@ -675,6 +675,18 @@ module "aws_for_fluentbit" {
675675
name = "cloudWatch.region"
676676
value = local.region
677677
},
678+
{
679+
name = "cloudWatchLogs.logGroupName"
680+
value = local.aws_for_fluentbit_cw_log_group_name
681+
},
682+
{
683+
name = "cloudWatchLogs.logGroupTemplate"
684+
value = ""
685+
},
686+
{
687+
name = "cloudWatchLogs.autoCreateGroup"
688+
value = false
689+
},
678690
{
679691
name = "cloudWatchLogs.region"
680692
value = local.region

0 commit comments

Comments
 (0)