diff --git a/main.tf b/main.tf index 806359c..d3dfa7e 100644 --- a/main.tf +++ b/main.tf @@ -19,6 +19,7 @@ resource "aws_iam_role" "default" { name = "${var.name}${var.postfix ? "Role" : ""}" assume_role_policy = local.assume_policy max_session_duration = var.max_session_duration + path = var.path permissions_boundary = var.permissions_boundary tags = var.tags } diff --git a/variables.tf b/variables.tf index 09c3bb0..267a734 100644 --- a/variables.tf +++ b/variables.tf @@ -21,6 +21,12 @@ variable "max_session_duration" { description = "The maximum session duration (in seconds) for the role" } +variable "path" { + type = string + default = "/" + description = "Path to the role" +} + variable "permissions_boundary" { type = string default = null