Fred Damstra [afs macbook] 51f121668c Updates Modules Affected by Fred's IP Change %!s(int64=3) %!d(string=hai) anos
..
005-iam 5cea7b75ca Updates tag for IAM tfsec Ignore Comments and legacy URL for IP list %!s(int64=3) %!d(string=hai) anos
006-account-standards 1519a2cd30 Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules %!s(int64=3) %!d(string=hai) anos
006-account-standards-regional 1519a2cd30 Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules %!s(int64=3) %!d(string=hai) anos
007-backups 1519a2cd30 Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules %!s(int64=3) %!d(string=hai) anos
010-vpc-vmray 51f121668c Updates Modules Affected by Fred's IP Change %!s(int64=3) %!d(string=hai) anos
023-dns-resolver-instance 1519a2cd30 Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules %!s(int64=3) %!d(string=hai) anos
044-VMRay-Instances 9503c51393 Updates ALB Prod env to Drop Invalid headers %!s(int64=3) %!d(string=hai) anos
072-salt-master-inventory-role 1519a2cd30 Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules %!s(int64=3) %!d(string=hai) anos
README.md f6509ccb11 Adds a resolver instance to the VMRay VPC %!s(int64=3) %!d(string=hai) anos
account.hcl 5cea7b75ca Updates tag for IAM tfsec Ignore Comments and legacy URL for IP list %!s(int64=3) %!d(string=hai) anos

README.md

mdr-prod-malware

Account for hosting vmray and/or other malware detonation.

NOTE ON DNS

DNS resolvers exist in this account, in the vpc 010... However, the vpc relies on having dns resolvers to set the DHCP options.

So chicken/egg.

Here's how to do it.

1) Create the vpc with the default var.dns_servers. 2) Create the resolver 3) Update the VPC, overriding var.dns_servers with the IP from #2