diff --git a/modules/config-posture/main.tf b/modules/config-posture/main.tf index ec296c9..b09cd75 100644 --- a/modules/config-posture/main.tf +++ b/modules/config-posture/main.tf @@ -29,10 +29,7 @@ resource "oci_identity_policy" "admit_cspm_policy" { statements = [ "Define tenancy sysdigTenancy as ${data.sysdig_secure_trusted_oracle_app.config_posture.tenancy_ocid}", "Define group configPostureGroup as ${data.sysdig_secure_trusted_oracle_app.config_posture.group_ocid}", - var.compartment_ocid != "" ? - "Admit group configPostureGroup of tenancy sysdigTenancy to read all-resources in compartment ${data.oci_identity_compartment.compartment[0].name}" - : - "Admit group configPostureGroup of tenancy sysdigTenancy to read all-resources in tenancy", + "Admit group configPostureGroup of tenancy sysdigTenancy to read all-resources in tenancy", ] } diff --git a/modules/onboarding/main.tf b/modules/onboarding/main.tf index 1d785cf..4673edb 100644 --- a/modules/onboarding/main.tf +++ b/modules/onboarding/main.tf @@ -36,10 +36,7 @@ resource "oci_identity_policy" "admit_onboarding_policy" { "Define tenancy sysdigTenancy as ${data.sysdig_secure_trusted_oracle_app.onboarding.tenancy_ocid}", "Define group onboardingGroup as ${data.sysdig_secure_trusted_oracle_app.onboarding.group_ocid}", "Admit group onboardingGroup of tenancy sysdigTenancy to inspect tenancies in tenancy", - var.compartment_ocid != "" ? - "Admit group onboardingGroup of tenancy sysdigTenancy to inspect compartments in compartment ${data.oci_identity_compartment.compartment[0].name}" - : - "Admit group onboardingGroup of tenancy sysdigTenancy to inspect compartments in tenancy", + "Admit group onboardingGroup of tenancy sysdigTenancy to inspect compartments in tenancy", ] }