account.hcl 1.3 KB

123456789101112131415161718192021222324252627282930313233343536
  1. # Set account-wide variables. These are automatically pulled in to configure the remote state bucket in the root
  2. # terragrunt.hcl configuration.
  3. locals {
  4. account_name = "afs-mdr-prod-c2"
  5. account_alias = "afs-mdr-prod-c2"
  6. aws_account_id = "045312110490"
  7. instance_termination_protection = true # set to true for production!
  8. splunk_prefix = "moose"
  9. c2_account_standards_path = "../../mdr-prod-c2/005-account-standards-c2"
  10. # For CIDR assignment, see https://github.xdr.accenturefederalcyber.com/mdr-engineering/msoc-infrastructure/wiki/IP-Address-Allocation
  11. vpc_info = {
  12. "vpc-system-services" = {
  13. "name" = "vpc-system-services",
  14. "purpose" = "Internal Services for Systems",
  15. "cidr" = "10.32.0.0/22",
  16. "tgw_attached" = false, # Attached via tgw creation
  17. },
  18. "vpc-qualys" = {
  19. "name" = "vpc-qualys",
  20. "purpose" = "Security Scanning",
  21. "cidr" = "10.32.12.0/22",
  22. "tgw_attached" = true,
  23. },
  24. "vpc-security" = {
  25. "name" = "vpc-interconnects",
  26. "purpose" = "Interconnections between AWS partitions",
  27. "cidr" = "10.179.4.0/22",
  28. "tgw_attached" = true,
  29. }
  30. }
  31. # AS Number used for various resources, but not every account needs one.
  32. asn = 64800
  33. }