Skip to content

Commit

Permalink
[Infrastructure] Specify PermissionsBoundaryPolicy and IAMRoleAndPoli…
Browse files Browse the repository at this point in the history
…cyPrefix in PCAPI only if not empty.

Also fix the parameter used in PCAPI: PermissionsBoundaryPolicyPCAPI rather than PermissionsBoundaryPolicy.
  • Loading branch information
gmarciani committed Dec 13, 2023
1 parent 0d0c3dc commit 162a101
Showing 1 changed file with 4 additions and 2 deletions.
6 changes: 4 additions & 2 deletions infrastructure/parallelcluster-ui.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -142,6 +142,8 @@ Conditions:
- !Equals ['5', !Select [ 1, !Split ['.', !Ref Version] ] ]
InGovCloud: !Equals ['us-gov-west-1', !Ref "AWS::Region"]
UsePermissionBoundary: !Not [!Equals [!Ref PermissionsBoundaryPolicy, '']]
UsePermissionBoundaryPCAPI: !Not [!Equals [!Ref PermissionsBoundaryPolicyPCAPI, '']]
UseIAMRoleAndPolicyPrefix: !Not [!Equals [!Ref IAMRoleAndPolicyPrefix, '']]

Mappings:
ParallelClusterUI:
Expand Down Expand Up @@ -172,8 +174,8 @@ Resources:
Type: AWS::CloudFormation::Stack
Properties:
Parameters:
PermissionsBoundaryPolicy: !Ref PermissionsBoundaryPolicy
IAMRoleAndPolicyPrefix: !Ref IAMRoleAndPolicyPrefix
PermissionsBoundaryPolicy: !If [ UsePermissionBoundaryPCAPI, !Ref PermissionsBoundaryPolicyPCAPI, !Ref AWS::NoValue ]
IAMRoleAndPolicyPrefix: !If [ UseIAMRoleAndPolicyPrefix, !Ref IAMRoleAndPolicyPrefix, !Ref AWS::NoValue ]
ApiDefinitionS3Uri: !Sub s3://${AWS::Region}-aws-parallelcluster/parallelcluster/${Version}/api/ParallelCluster.openapi.yaml
CreateApiUserRole: False
EnableIamAdminAccess: True
Expand Down

0 comments on commit 162a101

Please sign in to comment.