|
@@ -5,15 +5,15 @@ data "aws_availability_zones" "available" {
|
|
|
module "vpc" {
|
|
|
source = "terraform-aws-modules/vpc/aws"
|
|
|
version = "~> v2.0"
|
|
|
- name = "${var.name}"
|
|
|
- cidr = "${var.cidr}"
|
|
|
+ name = var.name
|
|
|
+ cidr = var.cidr
|
|
|
|
|
|
azs = slice(data.aws_availability_zones.available.names,0,3)
|
|
|
|
|
|
private_subnets = [
|
|
|
- "${cidrsubnet(var.cidr,3,0)}",
|
|
|
- "${cidrsubnet(var.cidr,3,1)}",
|
|
|
- "${cidrsubnet(var.cidr,3,2)}",
|
|
|
+ cidrsubnet(var.cidr,3,0),
|
|
|
+ cidrsubnet(var.cidr,3,1),
|
|
|
+ cidrsubnet(var.cidr,3,2),
|
|
|
]
|
|
|
|
|
|
# Potentially, we could route all accounts through the transit gateway to
|
|
@@ -24,9 +24,9 @@ module "vpc" {
|
|
|
# or a /24 for each subnet (seems wasteful).
|
|
|
#public_subnets = [ ]
|
|
|
public_subnets = [
|
|
|
- "${cidrsubnet(var.cidr,3,4)}",
|
|
|
- "${cidrsubnet(var.cidr,3,5)}",
|
|
|
- "${cidrsubnet(var.cidr,3,6)}",
|
|
|
+ cidrsubnet(var.cidr,3,4),
|
|
|
+ cidrsubnet(var.cidr,3,5),
|
|
|
+ cidrsubnet(var.cidr,3,6),
|
|
|
]
|
|
|
|
|
|
enable_nat_gateway = true
|
|
@@ -34,7 +34,7 @@ module "vpc" {
|
|
|
|
|
|
enable_ec2_endpoint = true
|
|
|
ec2_endpoint_private_dns_enabled = true
|
|
|
- ec2_endpoint_security_group_ids = [ "${module.aws_endpoints_sg.this_security_group_id}" ]
|
|
|
+ ec2_endpoint_security_group_ids = [ module.aws_endpoints_sg.this_security_group_id ]
|
|
|
|
|
|
dhcp_options_domain_name = var.dns_info["private"]["zone"]
|
|
|
|