locals { # If you want to use any of the variables in _this_ file, you have to load them here. # However, they will all be available as inputs to the module loaded in terraform.source # below. environment_vars = read_terragrunt_config(find_in_parent_folders("env.hcl")) partition_vars = read_terragrunt_config(find_in_parent_folders("partition.hcl")) region_vars = read_terragrunt_config(find_in_parent_folders("region.hcl")) account_vars = read_terragrunt_config(find_in_parent_folders("account.hcl")) global_vars = read_terragrunt_config(find_in_parent_folders("globals.hcl")) } # Terragrunt will copy the Terraform configurations specified by the source parameter, along with any files in the # working directory, into a temporary folder, and execute your Terraform commands in that folder. terraform { # Double slash is intentional and required to show root of modules source = "git@github.mdr.defpoint.com:mdr-engineering/xdr-terraform-modules.git//base/palo_alto/firewall_nodes?ref=v0.5.2" } dependency "security_vpc" { config_path = "../015-security-vpc" } dependency "palo_alto_bootstrap" { config_path = "../017-palo-alto-bootstrap" } # Include all settings from the root terragrunt.hcl file include { path = find_in_parent_folders() } # These are the variables we have to pass in to use the module specified in the terragrunt source above inputs = { # All of the inputs from the inherited hcl files are available automatically # (via the `inputs` section of the root `terragrunt.hcl`). However, modules # will be more flexible if you specify particular input values. tags = { Purpose = "Palo Alto Firewalls" Terraform = "aws/${basename(get_parent_terragrunt_dir())}/${path_relative_to_include()}/" } azs = dependency.security_vpc.outputs.azs management_security_group_ids = [ dependency.security_vpc.outputs.security_groups["allow_trusted"] ] untrusted_security_group_ids = [ dependency.security_vpc.outputs.security_groups["allow_all"] ] subnet_id_map = dependency.security_vpc.outputs.subnet_id_map subnet_cidr_map = dependency.security_vpc.outputs.subnet_cidr_map bucket_ids = dependency.palo_alto_bootstrap.outputs.bucket_ids instance_profile_names = dependency.palo_alto_bootstrap.outputs.instance_profile_names }