This section describes how to use the Zesty AWS account Terraform module to connect AWS accounts to Zesty and enable Commitment Manager, Kompass, or base read-only access.
The module creates and manages the AWS account resources required by Zesty, including:
an IAM role that Zesty can assume
an IAM policy with the permissions required by the selected products
an external ID for secure role assumption
a Cost and Usage Report (CUR) and S3 bucket when required, or access to an existing CUR
Athena and Glue resources when Kompass is enabled on a management account
Zesty account registration
Helm values for Kompass cluster installation when Kompass is enabled
Use one module block for each AWS account. When multiple Zesty products are enabled in the same AWS account, they share the same IAM role, IAM policy, and Zesty account registration.