diff --git a/modules/authentik/main.tf b/modules/authentik/main.tf index c5864bd..d928702 100644 --- a/modules/authentik/main.tf +++ b/modules/authentik/main.tf @@ -284,6 +284,13 @@ resource "authentik_policy_binding" "app_access" { order = 0 } +# Created server-side, but its post-create read-back hit the Authentik Postgres +# read replica before the row replicated and 404'd, so it never reached state. +import { + to = authentik_policy_binding.app_access["akP-artifactapi-admin"] + id = "c9f22628-d48c-477b-b9ac-a952c7d081ce" +} + # Service accounts: non-human identities for automation. Kept out of the group # hierarchy above (which models human app access) and given capabilities through # RBAC roles instead.