|
Variable
|
Description
|
|---|---|
|
subscription_id
|
Azure subscription where policy will be applied.
|
|
location
|
Azure region. It must match IaC deployment.
|
|
resource_group_name
|
Target resource group where policies will be assigned.
|
|
allowed_oidc_issuers
|
AKS OIDC issuer URL. This is used for workload identity restriction.
|
|
allowed_private_endpoint_subnet_ids
|
Subnet IDs where private endpoints are allowed.
|
|
environment
|
Unique environment name. This is used for policy naming.
|
subscription_id = "<subscription_id>"
location = "<region>"
resource_group_name = "<resource_group_name>"
allowed_oidc_issuers = ["<oidc_issuer>"]
allowed_private_endpoint_subnet_ids = ["<subnet_id>"]
environment = "<environment_name>"
resource_group_name = "<resource_group_name>"
storage_account_name = "<storage_account_name>"
container_name = "<container_name>"
key = "<terraform.tfstate>"