# Sensitive variables — injected via TF_VAR_* environment variables (GitHub Secrets). # Never put values for these in any .tf file. variable "meraki_dashboard_api_key" { type = string sensitive = true description = "Meraki Dashboard API key. Pass via TF_VAR_meraki_dashboard_api_key (GitHub Secret: MERAKI_DASHBOARD_API_KEY)." } variable "radius_secret" { type = string sensitive = true default = "" description = "RADIUS shared secret. Pass via TF_VAR_radius_secret (GitHub Secret: RADIUS_SECRET)." } variable "wifi_password_psk" { type = string sensitive = true description = "PSK Wi-Fi password. Pass via TF_VAR_wifi_password_psk (GitHub Secret: WIFI_PASSWORD_PSK)." }