危険な Terraform Provider の実行を防いで Security を担保するためのコマンドラインツールを作ったので紹介します。 # Only google provider and azurerm provider are allowed $ cat .tfprovidercheck.yaml providers: - name: registry.terraform.io/hashicorp/google version: ">= 4.0.0" - name: registry.terraform.io/hashicorp/azurerm # tfprovidercheck fails because aws provider is disallowed $ terraform version -json | tfprovidercheck FATA[0000] tfpro
![tfprovidercheck - 危険な Terraform Provider の実行を防ぐ](https://cdn-ak-scissors.b.st-hatena.com/image/square/52c709199aa3c0cd89e1cee969173e58828c316c/height=288;version=1;width=512/https%3A%2F%2Fres.cloudinary.com%2Fzenn%2Fimage%2Fupload%2Fs--OtvQ94BQ--%2Fc_fit%252Cg_north_west%252Cl_text%3Anotosansjp-medium.otf_55%3Atfprovidercheck%252520-%252520%2525E5%25258D%2525B1%2525E9%252599%2525BA%2525E3%252581%2525AA%252520Terraform%252520Provider%252520%2525E3%252581%2525AE%2525E5%2525AE%25259F%2525E8%2525A1%25258C%2525E3%252582%252592%2525E9%252598%2525B2%2525E3%252581%252590%252Cw_1010%252Cx_90%252Cy_100%2Fg_south_west%252Cl_text%3Anotosansjp-medium.otf_37%3AShunsuke%252520Suzuki%252Cx_203%252Cy_121%2Fg_south_west%252Ch_90%252Cl_fetch%3AaHR0cHM6Ly9saDMuZ29vZ2xldXNlcmNvbnRlbnQuY29tL2EtL0FPaDE0R2p0NzY1aTNueDRmTTFYRE1sRnluM1lYb1RmejRUMEJ6TlBZdWN2c1E9czk2LWM%3D%252Cr_max%252Cw_90%252Cx_87%252Cy_95%2Fv1627283836%2Fdefault%2Fog-base-w1200-v2.png)