| <aname="output_this_caller_identity_account_id"></a>[this\_caller\_identity\_account\_id](#output\_this\_caller\_identity\_account\_id) | The ID of the AWS account |
| <aname="output_this_iam_account_password_policy_expire_passwords"></a>[this\_iam\_account\_password\_policy\_expire\_passwords](#output\_this\_iam\_account\_password\_policy\_expire\_passwords) | Indicates whether passwords in the account expire. Returns true if max\_password\_age contains a value greater than 0. Returns false if it is 0 or not present. |
| <aname="output_caller_identity_account_id"></a>[caller\_identity\_account\_id](#output\_caller\_identity\_account\_id) | The ID of the AWS account |
| <aname="output_iam_account_password_policy_expire_passwords"></a>[iam\_account\_password\_policy\_expire\_passwords](#output\_iam\_account\_password\_policy\_expire\_passwords) | Indicates whether passwords in the account expire. Returns true if max\_password\_age contains a value greater than 0. Returns false if it is 0 or not present. |
description="Indicates whether passwords in the account expire. Returns true if max_password_age contains a value greater than 0. Returns false if it is 0 or not present."
| <aname="output_this_assumable_roles"></a>[this\_assumable\_roles](#output\_this\_assumable\_roles) | List of ARNs of IAM roles which members of IAM group can assume |
| <aname="output_this_group_users"></a>[this\_group\_users](#output\_this\_group\_users) | List of IAM users in IAM group |
| <aname="output_this_policy_arn"></a>[this\_policy\_arn](#output\_this\_policy\_arn) | Assume role policy ARN for IAM group |
| <aname="output_assumable_roles"></a>[assumable\_roles](#output\_assumable\_roles) | List of ARNs of IAM roles which members of IAM group can assume |
| <aname="output_group_users"></a>[group\_users](#output\_group\_users) | List of IAM users in IAM group |
| <aname="output_policy_arn"></a>[policy\_arn](#output\_policy\_arn) | Assume role policy ARN for IAM group |
| <aname="output_assumable_roles"></a>[assumable\_roles](#output\_assumable\_roles) | List of ARNs of IAM roles which members of IAM group can assume |
| <aname="output_group_users"></a>[group\_users](#output\_group\_users) | List of IAM users in IAM group |
| <aname="output_iam_account_id"></a>[iam\_account\_id](#output\_iam\_account\_id) | IAM AWS account id (this code is managing resources in this account) |
| <aname="output_policy_arn"></a>[policy\_arn](#output\_policy\_arn) | Assume role policy ARN for IAM group |
| <aname="output_production_account_id"></a>[production\_account\_id](#output\_production\_account\_id) | Production AWS account id |
| <aname="output_this_assumable_roles"></a>[this\_assumable\_roles](#output\_this\_assumable\_roles) | List of ARNs of IAM roles which members of IAM group can assume |
| <aname="output_this_group_users"></a>[this\_group\_users](#output\_this\_group\_users) | List of IAM users in IAM group |
| <aname="output_this_policy_arn"></a>[this\_policy\_arn](#output\_this\_policy\_arn) | Assume role policy ARN for IAM group |
| <aname="output_iam_access_key_encrypted_secret"></a>[iam\_access\_key\_encrypted\_secret](#output\_iam\_access\_key\_encrypted\_secret) | The encrypted secret, base64 encoded |
| <aname="output_iam_access_key_id"></a>[iam\_access\_key\_id](#output\_iam\_access\_key\_id) | The access key ID |
| <aname="output_iam_access_key_key_fingerprint"></a>[iam\_access\_key\_key\_fingerprint](#output\_iam\_access\_key\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the secret |
| <aname="output_iam_access_key_secret"></a>[iam\_access\_key\_secret](#output\_iam\_access\_key\_secret) | The access key secret |
| <aname="output_iam_access_key_ses_smtp_password_v4"></a>[iam\_access\_key\_ses\_smtp\_password\_v4](#output\_iam\_access\_key\_ses\_smtp\_password\_v4) | The secret access key converted into an SES SMTP password |
| <aname="output_iam_access_key_status"></a>[iam\_access\_key\_status](#output\_iam\_access\_key\_status) | Active or Inactive. Keys are initially active, but can be made inactive by other means. |
| <aname="output_iam_user_arn"></a>[iam\_user\_arn](#output\_iam\_user\_arn) | The ARN assigned by AWS for this user |
| <aname="output_iam_user_login_profile_encrypted_password"></a>[iam\_user\_login\_profile\_encrypted\_password](#output\_iam\_user\_login\_profile\_encrypted\_password) | The encrypted password, base64 encoded |
| <aname="output_iam_user_login_profile_key_fingerprint"></a>[iam\_user\_login\_profile\_key\_fingerprint](#output\_iam\_user\_login\_profile\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the password |
| <aname="output_iam_user_name"></a>[iam\_user\_name](#output\_iam\_user\_name) | The user's name |
| <aname="output_iam_user_unique_id"></a>[iam\_user\_unique\_id](#output\_iam\_user\_unique\_id) | The unique ID assigned by AWS |
| <aname="output_keybase_password_decrypt_command"></a>[keybase\_password\_decrypt\_command](#output\_keybase\_password\_decrypt\_command) | Decrypt user password command |
| <aname="output_pgp_key"></a>[pgp\_key](#output\_pgp\_key) | PGP key used to encrypt sensitive data for this user (if empty - secrets are not encrypted) |
| <aname="output_this_iam_access_key_encrypted_secret"></a>[this\_iam\_access\_key\_encrypted\_secret](#output\_this\_iam\_access\_key\_encrypted\_secret) | The encrypted secret, base64 encoded |
| <aname="output_this_iam_access_key_id"></a>[this\_iam\_access\_key\_id](#output\_this\_iam\_access\_key\_id) | The access key ID |
| <aname="output_this_iam_access_key_key_fingerprint"></a>[this\_iam\_access\_key\_key\_fingerprint](#output\_this\_iam\_access\_key\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the secret |
| <aname="output_this_iam_access_key_secret"></a>[this\_iam\_access\_key\_secret](#output\_this\_iam\_access\_key\_secret) | The access key secret |
| <aname="output_this_iam_access_key_ses_smtp_password_v4"></a>[this\_iam\_access\_key\_ses\_smtp\_password\_v4](#output\_this\_iam\_access\_key\_ses\_smtp\_password\_v4) | The secret access key converted into an SES SMTP password |
| <aname="output_this_iam_access_key_status"></a>[this\_iam\_access\_key\_status](#output\_this\_iam\_access\_key\_status) | Active or Inactive. Keys are initially active, but can be made inactive by other means. |
| <aname="output_this_iam_user_arn"></a>[this\_iam\_user\_arn](#output\_this\_iam\_user\_arn) | The ARN assigned by AWS for this user |
| <aname="output_this_iam_user_login_profile_encrypted_password"></a>[this\_iam\_user\_login\_profile\_encrypted\_password](#output\_this\_iam\_user\_login\_profile\_encrypted\_password) | The encrypted password, base64 encoded |
| <aname="output_this_iam_user_login_profile_key_fingerprint"></a>[this\_iam\_user\_login\_profile\_key\_fingerprint](#output\_this\_iam\_user\_login\_profile\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the password |
| <aname="output_this_iam_user_name"></a>[this\_iam\_user\_name](#output\_this\_iam\_user\_name) | The user's name |
| <aname="output_this_iam_user_unique_id"></a>[this\_iam\_user\_unique\_id](#output\_this\_iam\_user\_unique\_id) | The unique ID assigned by AWS |
| <aname="output_this_caller_identity_account_id"></a>[this\_caller\_identity\_account\_id](#output\_this\_caller\_identity\_account\_id) | The AWS Account ID number of the account that owns or contains the calling entity |
| <aname="output_this_caller_identity_arn"></a>[this\_caller\_identity\_arn](#output\_this\_caller\_identity\_arn) | The AWS ARN associated with the calling entity |
| <aname="output_this_caller_identity_user_id"></a>[this\_caller\_identity\_user\_id](#output\_this\_caller\_identity\_user\_id) | The unique identifier of the calling entity |
| <aname="output_this_iam_account_password_policy_expire_passwords"></a>[this\_iam\_account\_password\_policy\_expire\_passwords](#output\_this\_iam\_account\_password\_policy\_expire\_passwords) | Indicates whether passwords in the account expire. Returns true if max\_password\_age contains a value greater than 0. Returns false if it is 0 or not present. |
| <aname="output_caller_identity_account_id"></a>[caller\_identity\_account\_id](#output\_caller\_identity\_account\_id) | The AWS Account ID number of the account that owns or contains the calling entity |
| <aname="output_caller_identity_arn"></a>[caller\_identity\_arn](#output\_caller\_identity\_arn) | The AWS ARN associated with the calling entity |
| <aname="output_caller_identity_user_id"></a>[caller\_identity\_user\_id](#output\_caller\_identity\_user\_id) | The unique identifier of the calling entity |
| <aname="output_iam_account_password_policy_expire_passwords"></a>[iam\_account\_password\_policy\_expire\_passwords](#output\_iam\_account\_password\_policy\_expire\_passwords) | Indicates whether passwords in the account expire. Returns true if max\_password\_age contains a value greater than 0. Returns false if it is 0 or not present. |
description="Indicates whether passwords in the account expire. Returns true if max_password_age contains a value greater than 0. Returns false if it is 0 or not present."
| <aname="output_iam_instance_profile_arn"></a>[iam\_instance\_profile\_arn](#output\_iam\_instance\_profile\_arn) | ARN of IAM instance profile |
| <aname="output_iam_instance_profile_name"></a>[iam\_instance\_profile\_name](#output\_iam\_instance\_profile\_name) | Name of IAM instance profile |
| <aname="output_iam_instance_profile_path"></a>[iam\_instance\_profile\_path](#output\_iam\_instance\_profile\_path) | Path of IAM instance profile |
| <aname="output_iam_role_arn"></a>[iam\_role\_arn](#output\_iam\_role\_arn) | ARN of IAM role |
| <aname="output_iam_role_name"></a>[iam\_role\_name](#output\_iam\_role\_name) | Name of IAM role |
| <aname="output_iam_role_path"></a>[iam\_role\_path](#output\_iam\_role\_path) | Path of IAM role |
| <aname="output_iam_role_unique_id"></a>[iam\_role\_unique\_id](#output\_iam\_role\_unique\_id) | Unique ID of IAM role |
| <aname="output_role_requires_mfa"></a>[role\_requires\_mfa](#output\_role\_requires\_mfa) | Whether IAM role requires MFA |
| <aname="output_role_sts_externalid"></a>[role\_sts\_externalid](#output\_role\_sts\_externalid) | STS ExternalId condition value to use with a role |
| <aname="output_this_iam_instance_profile_arn"></a>[this\_iam\_instance\_profile\_arn](#output\_this\_iam\_instance\_profile\_arn) | ARN of IAM instance profile |
| <aname="output_this_iam_instance_profile_name"></a>[this\_iam\_instance\_profile\_name](#output\_this\_iam\_instance\_profile\_name) | Name of IAM instance profile |
| <aname="output_this_iam_instance_profile_path"></a>[this\_iam\_instance\_profile\_path](#output\_this\_iam\_instance\_profile\_path) | Path of IAM instance profile |
| <aname="output_this_iam_role_arn"></a>[this\_iam\_role\_arn](#output\_this\_iam\_role\_arn) | ARN of IAM role |
| <aname="output_this_iam_role_name"></a>[this\_iam\_role\_name](#output\_this\_iam\_role\_name) | Name of IAM role |
| <aname="output_this_iam_role_path"></a>[this\_iam\_role\_path](#output\_this\_iam\_role\_path) | Path of IAM role |
| <aname="output_this_iam_role_unique_id"></a>[this\_iam\_role\_unique\_id](#output\_this\_iam\_role\_unique\_id) | Unique ID of IAM role |
| <aname="output_assumable_roles"></a>[assumable\_roles](#output\_assumable\_roles) | List of ARNs of IAM roles which members of IAM group can assume |
| <aname="output_group_arn"></a>[group\_arn](#output\_group\_arn) | IAM group arn |
| <aname="output_group_name"></a>[group\_name](#output\_group\_name) | IAM group name |
| <aname="output_this_assumable_roles"></a>[this\_assumable\_roles](#output\_this\_assumable\_roles) | List of ARNs of IAM roles which members of IAM group can assume |
| <aname="output_this_group_users"></a>[this\_group\_users](#output\_this\_group\_users) | List of IAM users in IAM group |
| <aname="output_this_policy_arn"></a>[this\_policy\_arn](#output\_this\_policy\_arn) | Assume role policy ARN of IAM group |
| <aname="output_group_users"></a>[group\_users](#output\_group\_users) | List of IAM users in IAM group |
| <aname="output_policy_arn"></a>[policy\_arn](#output\_policy\_arn) | Assume role policy ARN of IAM group |
| <aname="output_iam_access_key_encrypted_secret"></a>[iam\_access\_key\_encrypted\_secret](#output\_iam\_access\_key\_encrypted\_secret) | The encrypted secret, base64 encoded |
| <aname="output_iam_access_key_id"></a>[iam\_access\_key\_id](#output\_iam\_access\_key\_id) | The access key ID |
| <aname="output_iam_access_key_key_fingerprint"></a>[iam\_access\_key\_key\_fingerprint](#output\_iam\_access\_key\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the secret |
| <aname="output_iam_access_key_secret"></a>[iam\_access\_key\_secret](#output\_iam\_access\_key\_secret) | The access key secret |
| <aname="output_iam_access_key_ses_smtp_password_v4"></a>[iam\_access\_key\_ses\_smtp\_password\_v4](#output\_iam\_access\_key\_ses\_smtp\_password\_v4) | The secret access key converted into an SES SMTP password by applying AWS's Sigv4 conversion algorithm |
| <aname="output_iam_access_key_status"></a>[iam\_access\_key\_status](#output\_iam\_access\_key\_status) | Active or Inactive. Keys are initially active, but can be made inactive by other means. |
| <aname="output_iam_user_arn"></a>[iam\_user\_arn](#output\_iam\_user\_arn) | The ARN assigned by AWS for this user |
| <aname="output_iam_user_login_profile_encrypted_password"></a>[iam\_user\_login\_profile\_encrypted\_password](#output\_iam\_user\_login\_profile\_encrypted\_password) | The encrypted password, base64 encoded |
| <aname="output_iam_user_login_profile_key_fingerprint"></a>[iam\_user\_login\_profile\_key\_fingerprint](#output\_iam\_user\_login\_profile\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the password |
| <aname="output_iam_user_name"></a>[iam\_user\_name](#output\_iam\_user\_name) | The user's name |
| <aname="output_iam_user_ssh_key_fingerprint"></a>[iam\_user\_ssh\_key\_fingerprint](#output\_iam\_user\_ssh\_key\_fingerprint) | The MD5 message digest of the SSH public key |
| <aname="output_iam_user_ssh_key_ssh_public_key_id"></a>[iam\_user\_ssh\_key\_ssh\_public\_key\_id](#output\_iam\_user\_ssh\_key\_ssh\_public\_key\_id) | The unique identifier for the SSH public key |
| <aname="output_iam_user_unique_id"></a>[iam\_user\_unique\_id](#output\_iam\_user\_unique\_id) | The unique ID assigned by AWS |
| <aname="output_keybase_password_decrypt_command"></a>[keybase\_password\_decrypt\_command](#output\_keybase\_password\_decrypt\_command) | Decrypt user password command |
| <aname="output_pgp_key"></a>[pgp\_key](#output\_pgp\_key) | PGP key used to encrypt sensitive data for this user (if empty - secrets are not encrypted) |
| <aname="output_this_iam_access_key_encrypted_secret"></a>[this\_iam\_access\_key\_encrypted\_secret](#output\_this\_iam\_access\_key\_encrypted\_secret) | The encrypted secret, base64 encoded |
| <aname="output_this_iam_access_key_id"></a>[this\_iam\_access\_key\_id](#output\_this\_iam\_access\_key\_id) | The access key ID |
| <aname="output_this_iam_access_key_key_fingerprint"></a>[this\_iam\_access\_key\_key\_fingerprint](#output\_this\_iam\_access\_key\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the secret |
| <aname="output_this_iam_access_key_secret"></a>[this\_iam\_access\_key\_secret](#output\_this\_iam\_access\_key\_secret) | The access key secret |
| <aname="output_this_iam_access_key_ses_smtp_password_v4"></a>[this\_iam\_access\_key\_ses\_smtp\_password\_v4](#output\_this\_iam\_access\_key\_ses\_smtp\_password\_v4) | The secret access key converted into an SES SMTP password by applying AWS's Sigv4 conversion algorithm |
| <aname="output_this_iam_access_key_status"></a>[this\_iam\_access\_key\_status](#output\_this\_iam\_access\_key\_status) | Active or Inactive. Keys are initially active, but can be made inactive by other means. |
| <aname="output_this_iam_user_arn"></a>[this\_iam\_user\_arn](#output\_this\_iam\_user\_arn) | The ARN assigned by AWS for this user |
| <aname="output_this_iam_user_login_profile_encrypted_password"></a>[this\_iam\_user\_login\_profile\_encrypted\_password](#output\_this\_iam\_user\_login\_profile\_encrypted\_password) | The encrypted password, base64 encoded |
| <aname="output_this_iam_user_login_profile_key_fingerprint"></a>[this\_iam\_user\_login\_profile\_key\_fingerprint](#output\_this\_iam\_user\_login\_profile\_key\_fingerprint) | The fingerprint of the PGP key used to encrypt the password |
| <aname="output_this_iam_user_name"></a>[this\_iam\_user\_name](#output\_this\_iam\_user\_name) | The user's name |
| <aname="output_this_iam_user_ssh_key_fingerprint"></a>[this\_iam\_user\_ssh\_key\_fingerprint](#output\_this\_iam\_user\_ssh\_key\_fingerprint) | The MD5 message digest of the SSH public key |
| <aname="output_this_iam_user_ssh_key_ssh_public_key_id"></a>[this\_iam\_user\_ssh\_key\_ssh\_public\_key\_id](#output\_this\_iam\_user\_ssh\_key\_ssh\_public\_key\_id) | The unique identifier for the SSH public key |
| <aname="output_this_iam_user_unique_id"></a>[this\_iam\_user\_unique\_id](#output\_this\_iam\_user\_unique\_id) | The unique ID assigned by AWS |