mirror of
https://github.com/Sea-Haven-Industries/front-integrations.git
synced 2026-09-30 08:23:13 +00:00
Freeze SAM CD and add Terraform for seahaven-prod (Lambdas, DynamoDB, EventBridge, alarms) so HCP becomes the sole deploy path. Include prod secret ARNs in the tfvars example for workspace wiring.
91 lines
2.5 KiB
HCL
91 lines
2.5 KiB
HCL
variable "aws_region" {
|
|
type = string
|
|
description = "AWS region for all resources"
|
|
default = "us-east-1"
|
|
}
|
|
|
|
variable "front_api_token_secret_arn" {
|
|
type = string
|
|
description = "Secrets Manager ARN for the Front API token (exact ARN, including suffix)"
|
|
}
|
|
|
|
variable "slack_bot_token_secret_arn" {
|
|
type = string
|
|
description = "Secrets Manager ARN for the Slack bot token (exact ARN, including suffix)"
|
|
}
|
|
|
|
variable "google_service_account_secret_arn" {
|
|
type = string
|
|
description = "Secrets Manager ARN for the Google service account JSON (exact ARN, including suffix)"
|
|
}
|
|
|
|
variable "slack_alert_channel" {
|
|
type = string
|
|
description = "Slack channel ID for #front-sla-alerts"
|
|
}
|
|
|
|
variable "adam_email" {
|
|
type = string
|
|
description = "Email address for Tier 2 escalation"
|
|
default = "adam@seahavenind.com"
|
|
}
|
|
|
|
variable "ack_sla_minutes" {
|
|
type = number
|
|
description = "Business minutes before Tier 1 alert"
|
|
default = 60
|
|
}
|
|
|
|
variable "action_sla_minutes" {
|
|
type = number
|
|
description = "Business minutes before Tier 2 alert"
|
|
default = 1440
|
|
}
|
|
|
|
variable "monitor_inboxes" {
|
|
type = string
|
|
description = "Comma-separated inbox names to monitor (empty = all shared)"
|
|
default = "Triage,California,West Coast,Central,East Coast,Vendors"
|
|
}
|
|
|
|
variable "sla_monitor_start_date" {
|
|
type = string
|
|
description = "Date when SLA monitoring begins (YYYY-MM-DD, Eastern)"
|
|
default = "2026-05-14"
|
|
}
|
|
|
|
variable "google_admin_email" {
|
|
type = string
|
|
description = "Google Workspace admin email to impersonate for Directory API"
|
|
default = "adam@seahavenind.com"
|
|
}
|
|
|
|
variable "google_org_units" {
|
|
type = string
|
|
description = "Comma-separated Google Workspace org unit paths to sync"
|
|
default = "/Office/Scheduling,/Office/Operations"
|
|
}
|
|
|
|
variable "sla_monitor_schedule" {
|
|
type = string
|
|
description = "EventBridge schedule for SLA monitor (UTC)"
|
|
default = "cron(0/15 12-22 ? * MON-FRI *)"
|
|
}
|
|
|
|
variable "user_sync_schedule" {
|
|
type = string
|
|
description = "EventBridge schedule for user sync (UTC)"
|
|
default = "cron(0 11 ? * MON-FRI *)"
|
|
}
|
|
|
|
variable "schedules_enabled" {
|
|
type = bool
|
|
description = "Whether EventBridge schedules are ENABLED (false until DDB copy + cutover)"
|
|
default = false
|
|
}
|
|
|
|
variable "alarm_sns_topic_arn" {
|
|
type = string
|
|
description = "SNS topic ARN for CloudWatch alarms (site-alerts)"
|
|
default = "arn:aws:sns:us-east-1:011934824531:site-alerts"
|
|
}
|