Create AWS external ID
tailscale_create_aws_external_idCreate or retrieve the AWS external ID to include in your IAM role trust policy for Tailscale S3 log streaming, then verify it with tailscale_validate_aws_trust_policy.
Instructions
Create or get the AWS external ID Tailscale presents when assuming your IAM role for S3 log streaming. Put it in the role trust policy's sts:ExternalId condition, then check it with tailscale_validate_aws_trust_policy.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| reusable | No | Default true: Tailscale returns the SAME external ID on repeat calls until that ID has been linked to an AWS account, so asking again does not invalidate the ID already pasted into an IAM trust policy. Set false to force a fresh ID (what Tailscale's Terraform provider does, one ID per resource). |