diff --git a/modules/services/service-principal/main.tf b/modules/services/service-principal/main.tf index 6e993e1..a179ceb 100644 --- a/modules/services/service-principal/main.tf +++ b/modules/services/service-principal/main.tf @@ -45,12 +45,12 @@ resource "azurerm_role_assignment" "sysdig_reader" { # Create a Custom role for collecting authsettings #--------------------------------------------------------------------------------------------- resource "azurerm_role_definition" "sysdig_cspm_role" { - name = "sysdig-cspm-role" + name = "sysdig-cspm-role-${var.subscription_id}" scope = data.azurerm_subscription.primary.id description = "Custom role for collecting Authsettings for CIS Benchmark" permissions { - actions = [ + actions = [ "Microsoft.Web/sites/config/list/action" ] not_actions = []