Fred Damstra [afs macbook] 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
..
000-mdradmin-bootstrap 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
001-tfstate 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
004-iam-okta 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
006-account-standards 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
006-account-standards-regional 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
008-xdr-binaries 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
010-public-dns 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
010-shared-ami-key 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
011-defpoint_com-legacy-dns 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
015-security-vpc 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
019-qualys-service-account 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
050-lcp-ami-sharing 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
072-salt-master-inventory-role 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
110-xdr-binaries-write-role 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
us-east-2 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
us-west-1 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
us-west-2 9bf337defd Updates to work with later versions of tfswitch %!s(int64=4) %!d(string=hai) anos
README.md 671dc26b50 Initial Commit %!s(int64=5) %!d(string=hai) anos
account.hcl 756290d4c0 DNSSEC Partial Enablement %!s(int64=4) %!d(string=hai) anos

README.md

README

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies
common okta + saml2aws Variable / provider definitions used across multiple chunks