diff --git a/terraform/environments/performance-hub/data.tf b/terraform/environments/performance-hub/data.tf index 6d448d41874..528f57fc3fe 100644 --- a/terraform/environments/performance-hub/data.tf +++ b/terraform/environments/performance-hub/data.tf @@ -26,8 +26,6 @@ data "template_file" "task_definition" { storage_bucket = "${aws_s3_bucket.upload_files.id}" friendly_name = local.app_data.accounts[local.environment].friendly_name hub_wwwroot = local.app_data.accounts[local.environment].hub_wwwroot - pecs_basm_prod_access_key_id = aws_secretsmanager_secret_version.pecs_basm_prod_access_key_id.arn - pecs_basm_prod_secret_access_key = aws_secretsmanager_secret_version.pecs_basm_prod_secret_access_key.arn ap_import_access_key_id = aws_secretsmanager_secret_version.ap_import_access_key_id.arn ap_import_secret_access_key = aws_secretsmanager_secret_version.ap_import_secret_access_key.arn ap_export_access_key_id = aws_secretsmanager_secret_version.ap_export_access_key_id.arn diff --git a/terraform/environments/performance-hub/secrets.tf b/terraform/environments/performance-hub/secrets.tf index b501e1914bd..e507672f145 100644 --- a/terraform/environments/performance-hub/secrets.tf +++ b/terraform/environments/performance-hub/secrets.tf @@ -140,40 +140,6 @@ resource "aws_secretsmanager_secret_version" "ap_export_secret_access_key" { secret_string = random_password.random_password.result } -#tfsec:ignore:AWS095 -resource "aws_secretsmanager_secret" "pecs_basm_prod_access_key_id" { - #checkov:skip=CKV_AWS_149 - name = "pecs_basm_prod_access_key_id" - recovery_window_in_days = 0 - tags = merge( - local.tags, - { - Name = "pecs_basm_prod_access_key_id" - }, - ) -} -resource "aws_secretsmanager_secret_version" "pecs_basm_prod_access_key_id" { - secret_id = aws_secretsmanager_secret.pecs_basm_prod_access_key_id.id - secret_string = random_password.random_password.result -} - -#tfsec:ignore:AWS095 -resource "aws_secretsmanager_secret" "pecs_basm_prod_secret_access_key" { - #checkov:skip=CKV_AWS_149 - name = "pecs_basm_prod_secret_access_key" - recovery_window_in_days = 0 - tags = merge( - local.tags, - { - Name = "pecs_basm_prod_secret_access_key" - }, - ) -} -resource "aws_secretsmanager_secret_version" "pecs_basm_prod_secret_access_key" { - secret_id = aws_secretsmanager_secret.pecs_basm_prod_secret_access_key.id - secret_string = random_password.random_password.result -} - #tfsec:ignore:AWS095 resource "aws_secretsmanager_secret" "db_password" { #checkov:skip=CKV_AWS_149