Fred Damstra 2ef8393d72 Updates session length on mdr_terraformer and mdr_engineer_readonly 5 жил өмнө
..
000-mdradmin-bootstrap e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories 5 жил өмнө
001-tfstate e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories 5 жил өмнө
004-iam-okta 2ef8393d72 Updates session length on mdr_terraformer and mdr_engineer_readonly 5 жил өмнө
008-xdr-binaries e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories 5 жил өмнө
010-shared-iso-key e202d538f8 Creates a kms key for sharing amis 5 жил өмнө
README.md e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories 5 жил өмнө
account.hcl e202d538f8 Creates a kms key for sharing amis 5 жил өмнө

README.md

Common Services - GovCloud

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies