# Overview This module performs the following tasks - Create IAM roles based on job functions - Create IAM password policy - Enable IAM access analyzer ## Inputs: | Name | Description | Type | Default | Required | |------|-------------|------|---------|:-----:| | application | name of application | string | none | yes | | environment | capacity of environment (prd/dev/lab) | string | none | yes | | customer-name | owner of aws resources | string | none | yes | | project | name of project | string | none | yes | | default-tags | tags to be added to resources | list | none | yes | | aws-region-short | short name of aws region (e.g. apne1) | string | none | yes | | create-cloudhealth-resources | create cloudhealth role | bool | none | yes | | cloudheath-ext-id1 | cloudhealth role external id for sts | string | none | no | | cloudheath-ext-id2 | cloudhealth role external id for sts | string | none | no |