Fred Damstra [afs macbook] 4d1bf59d56 Updates tfswitch to 0.13.7 4 年之前
..
000-mdradmin-bootstrap 87ac71ad57 Adds support for a "DISABLED" file to skip select modules 4 年之前
001-tfstate 87ac71ad57 Adds support for a "DISABLED" file to skip select modules 4 年之前
004-iam-okta 94716a39a4 Fixing apply errors in commercial 4 年之前
006-account-standards 38cafd0c44 Boy I am dumb and misspelled ref 4 年之前
006-account-standards-regional 9e0eebc2b9 Updates the GitHub URL 4 年之前
008-xdr-binaries 71b02cf659 Adds commerical policy, version bumps for KMS fixes 4 年之前
010-public-dns 26c26bac9a Updates Public DNS to Module with dmarc record 4 年之前
010-shared-ami-key 9e0eebc2b9 Updates the GitHub URL 4 年之前
011-defpoint_com-legacy-dns 4d1bf59d56 Updates tfswitch to 0.13.7 4 年之前
015-security-vpc 71361b9214 Fixes Issues Encountered During `terragrunt-apply-all-everywhere` 4 年之前
019-qualys-service-account 9e0eebc2b9 Updates the GitHub URL 4 年之前
050-lcp-ami-sharing 9036d4af1a KMS keys for LCP AMIs, all US commercial regions 4 年之前
072-salt-master-inventory-role 9e0eebc2b9 Updates the GitHub URL 4 年之前
110-xdr-binaries-write-role 71b02cf659 Adds commerical policy, version bumps for KMS fixes 4 年之前
us-east-2 9036d4af1a KMS keys for LCP AMIs, all US commercial regions 4 年之前
us-west-1 9036d4af1a KMS keys for LCP AMIs, all US commercial regions 4 年之前
us-west-2 9036d4af1a KMS keys for LCP AMIs, all US commercial regions 4 年之前
README.md 671dc26b50 Initial Commit 5 年之前
account.hcl fd81f95dbe Cleans up account.hcl 4 年之前

README.md

README

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies
common okta + saml2aws Variable / provider definitions used across multiple chunks