diff --git a/files/vault_credentials_template.sh b/files/vault_credentials_template.sh index 9f0aedc..6800389 100644 --- a/files/vault_credentials_template.sh +++ b/files/vault_credentials_template.sh @@ -4,3 +4,7 @@ aws --profile ${AWS_PROFILE} --region ${AWS_REGION} s3 cp s3://${AWS_S3_BUCKET}/vault_creds_encrypted ./temp/vault_creds_encrypted aws --profile ${AWS_PROFILE} --region ${AWS_REGION} kms decrypt --key-id ${AWS_KMS_KEY_ID} --ciphertext-blob fileb://temp/vault_creds_encrypted --output text --query Plaintext | base64 --decode > ./temp/vault_creds_decrypted + +echo "Vault crednetials decrypted. Find them at ./temp/vault_creds_decrypted" +echo "----" +echo "Load Balancer DNS Name: ${LOAD_BALANCER_DNS_NAME}" \ No newline at end of file diff --git a/outputs.tf b/outputs.tf index b3bd722..5745c6f 100644 --- a/outputs.tf +++ b/outputs.tf @@ -19,6 +19,7 @@ resource "local_file" "vault_credentials" { AWS_REGION = data.aws_region.current.name AWS_S3_BUCKET = aws_s3_bucket.vault_data.id AWS_KMS_KEY_ID = aws_kms_key.seal.key_id + LOAD_BALANCER_DNS_NAME = aws_lb.alb.dns_name }) filename = "${path.root}/temp/vault_credentials.sh" }