Fred Damstra [afs macbook] a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
..
000-mdradmin-bootstrap 87ac71ad57 Adds support for a "DISABLED" file to skip select modules %!s(int64=4) %!d(string=hai) anos
001-tfstate 87ac71ad57 Adds support for a "DISABLED" file to skip select modules %!s(int64=4) %!d(string=hai) anos
004-iam-okta dae5830a43 Adds a .tfswitch.toml to each module to select the appropriate tf version %!s(int64=4) %!d(string=hai) anos
006-account-standards 38cafd0c44 Boy I am dumb and misspelled ref %!s(int64=4) %!d(string=hai) anos
006-account-standards-regional a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
008-xdr-binaries 71b02cf659 Adds commerical policy, version bumps for KMS fixes %!s(int64=4) %!d(string=hai) anos
010-shared-ami-key 9e0eebc2b9 Updates the GitHub URL %!s(int64=4) %!d(string=hai) anos
015-security-vpc 71361b9214 Fixes Issues Encountered During `terragrunt-apply-all-everywhere` %!s(int64=4) %!d(string=hai) anos
019-qualys-service-account 9e0eebc2b9 Updates the GitHub URL %!s(int64=4) %!d(string=hai) anos
021-qualys-connector-role 9e0eebc2b9 Updates the GitHub URL %!s(int64=4) %!d(string=hai) anos
050-lcp-ami-sharing b1f4b5b249 Fix git reference %!s(int64=4) %!d(string=hai) anos
072-salt-master-inventory-role 9e0eebc2b9 Updates the GitHub URL %!s(int64=4) %!d(string=hai) anos
075-codebuild-ecr-base 9e0eebc2b9 Updates the GitHub URL %!s(int64=4) %!d(string=hai) anos
080-codebuild-ecr-sample a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
081-codebuild-rpm-collectd a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
085-codebuild-ecr-customer-portal a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
090-codebuild-rpm-tmux a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
095-codebuild-rpm-aws-efs-utils a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
100-codebuild-rpm-syslog-ng a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
105-codebuild-ecr-mcas-container a6c4d41939 Update to TF 0.14 %!s(int64=4) %!d(string=hai) anos
110-xdr-binaries-write-role 71b02cf659 Adds commerical policy, version bumps for KMS fixes %!s(int64=4) %!d(string=hai) anos
disabled 9e0eebc2b9 Updates the GitHub URL %!s(int64=4) %!d(string=hai) anos
us-gov-west-1 4d1bf59d56 Updates tfswitch to 0.13.7 %!s(int64=4) %!d(string=hai) anos
README.md e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories %!s(int64=5) %!d(string=hai) anos
account.hcl fd81f95dbe Cleans up account.hcl %!s(int64=4) %!d(string=hai) anos

README.md

Common Services - GovCloud

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies