I think it would be useful if there were a resource named something like ad_group_member which could be used to control if a single entity was a member of an Active Directory Group. Other memberships to the target group would be ignored and preserved. Syntax would be similar to the existing ad_group_membership resource.
Obviously, using ad_group_membership and ad_group_member with the same Active Directory Group would cause issues.
Description
I think it would be useful if there were a resource named something like
ad_group_member
which could be used to control if a single entity was a member of an Active Directory Group. Other memberships to the target group would be ignored and preserved. Syntax would be similar to the existingad_group_membership
resource.Obviously, using
ad_group_membership
andad_group_member
with the same Active Directory Group would cause issues.Potential Terraform Configuration
References
Community Note