terragrunt.hcl 3.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687
  1. locals {
  2. # If you want to use any of the variables in _this_ file, you have to load them here.
  3. # However, they will all be available as inputs to the module loaded in terraform.source
  4. # below.
  5. environment_vars = read_terragrunt_config(find_in_parent_folders("env.hcl"))
  6. partition_vars = read_terragrunt_config(find_in_parent_folders("partition.hcl"))
  7. region_vars = read_terragrunt_config(find_in_parent_folders("region.hcl"))
  8. account_vars = read_terragrunt_config(find_in_parent_folders("account.hcl"))
  9. global_vars = read_terragrunt_config(find_in_parent_folders("globals.hcl"))
  10. }
  11. # Terragrunt will copy the Terraform configurations specified by the source parameter, along with any files in the
  12. # working directory, into a temporary folder, and execute your Terraform commands in that folder.
  13. terraform {
  14. # Double slash is intentional and required to show root of modules
  15. source = "git@github.xdr.accenturefederalcyber.com:mdr-engineering/xdr-terraform-modules.git//base/codebuild_project_no_artifact?ref=v5.0.0"
  16. }
  17. # Service Role
  18. dependency "standard-iam" {
  19. config_path = "../005-standard-iam"
  20. }
  21. dependency "codebuild-ecr-base" {
  22. config_path = "../075-codebuild-ecr-base"
  23. }
  24. #Github specific provider
  25. generate "required_providers" {
  26. path = "required_provider.tf"
  27. if_exists = "overwrite_terragrunt"
  28. contents = <<EOF
  29. terraform {
  30. required_providers {
  31. aws = {
  32. source = "hashicorp/aws"
  33. version = "4.4.0" # 2022-03-08: upgrade from 3.63.0; 2021-09-21: upgrade from 3.37.0
  34. }
  35. vault = {
  36. source = "hashicorp/vault"
  37. version = "3.4.1" # 2022-04-08: upgrade from 2.19.1; 2021-04-29: upgrade from 2.18.0
  38. }
  39. sensu = {
  40. source = "jtopjian/sensu"
  41. version = "0.12.1" # 2022-04-06: upgrade from 0.10.5
  42. }
  43. github = {
  44. source = "integrations/github"
  45. version = "~> 4.0" # 2022-04-06: upgrade from 4.2.0
  46. }
  47. }
  48. }
  49. EOF
  50. }
  51. # Include all settings from the root terragrunt.hcl file
  52. include {
  53. path = find_in_parent_folders()
  54. }
  55. # These are the variables we have to pass in to use the module specified in the terragrunt source above
  56. inputs = {
  57. # All of the inputs from the inherited hcl files are available automatically
  58. # (via the `inputs` section of the root `terragrunt.hcl`). However, modules
  59. # will be more flexible if you specify particular input values.
  60. tags = {
  61. Purpose = "Build EC2 Base Image"
  62. Terraform = "aws/${basename(get_parent_terragrunt_dir())}/${path_relative_to_include()}/"
  63. }
  64. name = "xdr-ec2-base-image"
  65. service_role = dependency.standard-iam.outputs.service_role
  66. kms_key = dependency.codebuild-ecr-base.outputs.kms_key
  67. image = "701290387780.dkr.ecr.us-gov-east-1.amazonaws.com/codebuild-rhel7"
  68. github_clone_url = "https://github.xdr.accenturefederalcyber.com/mdr-engineering/xdr-images"
  69. source_version = "main"
  70. secondary_sources = [
  71. {
  72. secondary_github_clone_url = "https://github.xdr.accenturefederalcyber.com/mdr-engineering/xdr-cis-benchmarks"
  73. secondary_source_version = "main"
  74. secondary_source_identifier = "salt"
  75. },
  76. ]
  77. buildspec = "base/rhel7/aws/buildspec.yml"
  78. }
  79. terraform_version_constraint = "= 1.1.6"
  80. terragrunt_version_constraint = "= 0.36.2"