partition.hcl 2.7 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374
  1. # Set common variables for the environment. This is automatically pulled in in the root terragrunt.hcl configuration to
  2. # feed forward to the child modules.
  3. #
  4. # NOTE: There is only one copy of this, in the `common/` tree, and the others are symbolic links.
  5. locals {
  6. aws_partition = "aws"
  7. aws_partition_alias = "commercial"
  8. common_services_account = "471284459109"
  9. common_profile = "${local.aws_partition == "aws-us-gov" ? "govcloud" : "commercial"}"
  10. tfstate_region = "us-east-1"
  11. binaries_key = "key/b51760b2-d6e1-438a-afd4-1e56f5ac82ef"
  12. # Statically setting the 'last known good' ami gives us some added flexibility
  13. # in building amis more regularly.
  14. #
  15. # Don't forget `lifecycle { ignore_changes = ["ami"] }` in yoru ec2
  16. # builds!
  17. amis = {
  18. "rhel7-base" = "ami-0de46d7d1a164b307"
  19. "rhel7-master" = "ami-0114330666839f2b9"
  20. "rhel7-minion" = "ami-0425efbff72b3c702"
  21. "ubuntu1804-base" = "TBD"
  22. "ubuntu1804-minion" = "TBD"
  23. }
  24. default_ami = local.amis["rhel7-minion"] # Allows us to easily change to a new base standard
  25. # If you need the raw list of all accounts, see `account_list` below
  26. account_map = {
  27. "prod" = [
  28. "477548533976", # Legacy MDR Prod
  29. "045312110490", # mdr-prod-c2
  30. "425831147305", # mdr-prod-modelclient
  31. "369723129071", # mdr-prod-malware
  32. # These two apparently don't have the account-standards / skeleton
  33. # set up for them (yet?) For now I'm leaving them commented out
  34. # "821415252513", # mdr-prod-nihors
  35. # "153282776295", # mdr-prod-bas
  36. "815967312032", # mdr-prod-doed
  37. "752106061897", # mdr-prod-frtib
  38. "054411035179", # mdr-prod-ca-c19
  39. ],
  40. "test" = [
  41. "527700175026", # Legacy MDR Test
  42. "816914342178", # mdr-test-c2
  43. "449047653882", # mdr-test-modelclient
  44. "404265901253", # mdr-test-malware
  45. ],
  46. "common" = [
  47. "471284459109", # mdr-common-services
  48. "350838957895", # MDR Service Root
  49. # "035764279020", # MDR Playground / "Duane Test"
  50. "228011623757", # mdr-dev-ai
  51. "952430311316", # mdr-cyber-range
  52. ],
  53. }
  54. # flatten the map into a single list
  55. account_list = flatten([
  56. for env, accounts in local.account_map: accounts
  57. ])
  58. # This is similar to the account_map, but used for "what accounts am I responsible for"?
  59. responsible_accounts = {
  60. "prod" = concat(local.account_map["prod"], local.account_map["common"]),
  61. "test" = local.account_map["test"],
  62. "common" = concat(local.account_map["prod"], local.account_map["common"], local.account_map["test"]),
  63. }
  64. partition_tags = {
  65. aws_partition = local.aws_partition
  66. }
  67. customer_accounts = [
  68. "392153378647", # CA Dept of Health (MSOCI-1637)
  69. ]
  70. }