Jeremy Cooper [AFS MBP] 67c98b7677 Updates IMDS & ECR encryption syntax | tfsec/chekov ignores | 3 سال پیش
..
README.md 7eec713943 Updates legacy_hec module to better handle iratemoses aliases 4 سال پیش
constants.tf 7a08ba10cf Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules 3 سال پیش
elb-with-acks.tf 67c98b7677 Updates IMDS & ECR encryption syntax | tfsec/chekov ignores | 3 سال پیش
elb-without-ack-internal.tf 2a09684931 Updated tfsec aws-elb-drop-invalid-headers 3 سال پیش
elb-without-ack.tf 67c98b7677 Updates IMDS & ECR encryption syntax | tfsec/chekov ignores | 3 سال پیش
globals.tf 7a08ba10cf Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules 3 سال پیش
main.tf e40079b5d5 Creates elbs with legacy DNS names and certificates for use during migration 4 سال پیش
security-group-elbs.tf baa1f43824 Applied `terraform fmt` to all modules 3 سال پیش
vars.tf 7a08ba10cf Migrated most variables out of xdr-terraform-live and into xdr-terraform-modules 3 سال پیش

README.md

Summary

This module creates HEC load balancers using the previous domain name for for legacy compatibility. It should not be added to new accounts.

Without this, the existing customer AWS data and other things submitting to the HEC could get lost during the migration.

But if activity is low/zero, destroy it!

iratemoses Aliases

Additionally, for MOOSE only, it creates 'iratemoses' aliases.

List of HECs

Permanent:

These are the HECs created by the indexer cluster module, which will stick around:

moose-hec.xdrtest.accenturefederalcyber.com - Non-ack external HEC moose-hec-ack.xdrtest.accenturefederalcyber.com - ACK external HEC moose-hec.pvt.xdrtest.accenturefederalcyber.com - non-ack internal HEC moose-hec-ack.pvt.xdrtest.accenturefederalcyber.com - ACK internal HEC

These are the HECs that are created by the legacy_hec module, which should not be used for any new purposes:

moose-hec.mdr-test.defpoint.com moose-hec-ack.mdr-test.defpoint.com iratemoses.msoc.defpoint.local (moose only) iratemoses.mdr-test.defpoint.com (moose only)

Notably, the following intentionally do not exist:

moose-hec.msoc.defpoint.local moose-hec-ack.msoc.defpoint.local