[Enhancement]: support values_wo
in vault_generic_secret
to keep data out of state
#2406
Labels
values_wo
in vault_generic_secret
to keep data out of state
#2406
Description
The AWS provider's
aws_ssm_parameter
recently added a values_wo attribute that avoids persisting sensitive values to state. Thevault_generic_secret
resource (and probablyvault_kv_secret_v2
too) could benefit from a similar feature.In the AWS SSM case it needs to be used with
values_wo_version
to trigger an update. One option here is to use a hash of the sensitive value to trigger the update. But this is not required since some users may have stricter requirements that don't allow using an unsalted hash or have other mechanisms to trigger the update.This should address the open issue in #65
Affected Resource(s) and/or Data Source(s)
vault_generic_secret
vault_kv_secret_v2
Potential Terraform Configuration
References
Would you like to implement a fix?
Maybe
The text was updated successfully, but these errors were encountered: