Skip to content

Commit c2dd2bc

Browse files
committed
[IT-4031] Add openchallenges developer SSO access
Setup developer access to AWS org-sagebase-openchallenges-dev account.
1 parent 1a7eae9 commit c2dd2bc

File tree

1 file changed

+21
-0
lines changed

1 file changed

+21
-0
lines changed

org-formation/700-aws-sso/_tasks.yaml

Lines changed: 21 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -313,6 +313,10 @@ Parameters:
313313
Type: String
314314
Default: '2448e4e8-50b1-70e5-def0-07e0f4fcd60e'
315315

316+
OpenchallengesDevDeveloperGroup: # JC aws-openchallenges-dev-developers
317+
Type: String
318+
Default: '44183438-a051-7070-f706-284ffd41907b'
319+
316320
OpenchallengesDevAdminGroup: # JC aws-openchallenges-dev-admins
317321
Type: String
318322
Default: 'e4388458-2011-7096-3f98-3a6eeb10e458'
@@ -2164,6 +2168,23 @@ SsoItsandboxDeveloper:
21642168
principalId: !Ref itsandboxDeveloperGroup
21652169
permissionSetArn: !CopyValue [ !Sub '${resourcePrefix}-${appName}-developer-permission-set-arn' ]
21662170

2171+
SsoOpenchallengesDevDeveloper:
2172+
Type: update-stacks
2173+
DependsOn: SsoDeveloper
2174+
Template: https://raw.githubusercontent.com/Sage-Bionetworks/aws-infra/v0.3.8/templates/SSO/aws-sso.yaml
2175+
StackName: !Sub '${resourcePrefix}-${appName}-openchallenges-dev-developer'
2176+
StackDescription: 'SSO: Developer role used by openchallenges developer group'
2177+
DefaultOrganizationBindingRegion: !Ref primaryRegion
2178+
DefaultOrganizationBinding:
2179+
IncludeMasterAccount: true
2180+
OrganizationBindings:
2181+
TargetBinding:
2182+
Account: !Ref OpenChallengesDevAccount
2183+
Parameters:
2184+
instanceArn: !Ref instanceArn
2185+
principalId: !Ref OpenchallengesDevDeveloperGroup
2186+
permissionSetArn: !CopyValue [ !Sub '${resourcePrefix}-${appName}-developer-permission-set-arn' ]
2187+
21672188
SsoOpenchallengesDevAdmin:
21682189
Type: update-stacks
21692190
DependsOn: SsoAdministrator

0 commit comments

Comments
 (0)