|
@@ -3,6 +3,7 @@
|
|
|
#
|
|
|
|
|
|
locals {
|
|
|
+ endpoint_cidr_blocks = var.allow_any_to_endpoints ? [ "10.0.0.0/8" ] : [ module.vpc.vpc_cidr_block ]
|
|
|
}
|
|
|
|
|
|
module "aws_endpoints_sg" {
|
|
@@ -13,8 +14,8 @@ module "aws_endpoints_sg" {
|
|
|
tags = merge(var.standard_tags, var.tags)
|
|
|
vpc_id = module.vpc.vpc_id
|
|
|
|
|
|
- ingress_cidr_blocks = [ "10.0.0.0/8" ]
|
|
|
- egress_cidr_blocks = [ "10.0.0.0/8" ]
|
|
|
+ ingress_cidr_blocks = local.endpoint_cidr_blocks
|
|
|
+ egress_cidr_blocks = local.endpoint_cidr_blocks
|
|
|
egress_ipv6_cidr_blocks = [ ]
|
|
|
|
|
|
egress_rules = [ "all-all" ]
|