fast-vase-27755
01/09/2024, 2:34 AMgifted-gigabyte-53859
01/09/2024, 8:30 AMgifted-gigabyte-53859
01/09/2024, 8:33 AM###########################################
# A C M C E R T
# ----------------------------------------
# Create a cert for the custom API gateway domain and validate it via DNS record
# <https://www.pulumi.com/registry/packages/aws/api-docs/acm/certificate/>
# <https://www.pulumi.com/registry/packages/aws/api-docs/acm/certificatevalidation/>
###########################################
cert_wildcard:
type: aws:acm:Certificate
properties:
domainName: "*.${varConstructedDomainWithProductionTrimmed}"
validationMethod: "DNS"
# AWS tags
tags:
Environment: ${pulumi.stack}
CreatedBy: pulumi
cert_wildcard_validation:
type: aws:acm:CertificateValidation
properties:
certificateArn: ${cert_wildcard.arn}
validationRecordFqdns:
- ${dns_certvalidation.fqdn}
# record for cert validation
# <https://www.pulumi.com/registry/packages/aws/api-docs/acm/certificatevalidation/>
dns_certvalidation:
type: aws:route53:Record
properties:
zoneId: ${varRoute53ZoneID}
name: ${cert_wildcard.domainValidationOptions[0].resourceRecordName}
records:
- ${cert_wildcard.domainValidationOptions[0].resourceRecordValue}
type: ${cert_wildcard.domainValidationOptions[0].resourceRecordType}
ttl: 60
gifted-gigabyte-53859
01/09/2024, 8:37 AMfast-vase-27755
01/09/2024, 5:36 PMus-east-1
provider (in both certificate definition AND validation config)
it just can't find certificate , otherwise it is ok but failing in timeout in pending validation
I will try your example where you completely eliminate mentions of the providerfast-vase-27755
01/09/2024, 5:54 PMgifted-gigabyte-53859
01/10/2024, 2:57 AMfast-vase-27755
01/10/2024, 3:24 AM