waf_condition_ip.tf 555 B

1234567891011121314151617181920212223
  1. resource "aws_wafregional_ipset" "admin_remote_ipset" {
  2. name = "${var.waf_prefix}-generic-match-admin-remote-ip"
  3. dynamic "ip_set_descriptor" {
  4. for_each = var.admin_remote_ipset
  5. content {
  6. type = "IPV4"
  7. value = ip_set_descriptor.value["value"]
  8. }
  9. }
  10. }
  11. resource "aws_wafregional_ipset" "blacklisted_ips" {
  12. name = "${var.waf_prefix}-generic-match-blacklisted-ips"
  13. dynamic "ip_set_descriptor" {
  14. for_each = var.blacklisted_ips
  15. content {
  16. type = "IPV4"
  17. value = ip_set_descriptor.value["value"]
  18. }
  19. }
  20. }