resource "aws_iam_user" "terraform" { name = "terraform" } resource "aws_s3_bucket" "tfstate" { bucket = "0rng-terraform" acl = "private" versioning { enabled = true } lifecycle_rule { enabled = true noncurrent_version_expiration { days = 10 } } } resource "aws_iam_user_policy" "terraform" { name = "terraform" user = aws_iam_user.terraform.name policy = <