From 48b6c290b1573ec2d6d5687ef3a5ccf52d4538db Mon Sep 17 00:00:00 2001 From: Toni de la Fuente Date: Mon, 11 May 2020 16:32:43 +0200 Subject: [PATCH] Enhance handing region on assume role when default is not us-east-1 --- include/assume_role | 2 ++ 1 file changed, 2 insertions(+) diff --git a/include/assume_role b/include/assume_role index 25a244f4..7bdf0079 100644 --- a/include/assume_role +++ b/include/assume_role @@ -31,11 +31,13 @@ if [[ $ACCOUNT_TO_ASSUME ]]; then # assume role command $AWSCLI $PROFILE_OPT sts assume-role --role-arn arn:${AWS_PARTITION}:iam::$ACCOUNT_TO_ASSUME:role/$ROLE_TO_ASSUME \ --role-session-name ProwlerAssessmentSession \ + --region $REGION \ --duration-seconds $SESSION_DURATION_TO_ASSUME > $TEMP_STS_ASSUMED_FILE else $AWSCLI $PROFILE_OPT sts assume-role --role-arn arn:${AWS_PARTITION}:iam::$ACCOUNT_TO_ASSUME:role/$ROLE_TO_ASSUME \ --role-session-name ProwlerAssessmentSession \ --duration-seconds $SESSION_DURATION_TO_ASSUME \ + --region $REGION \ --external-id $ROLE_EXTERNAL_ID > $TEMP_STS_ASSUMED_FILE fi