mirror of
https://github.com/Sea-Haven-Industries/front-integrations.git
synced 2026-09-30 03:43:12 +00:00
* feat(terraform): migrate front-integrations to HCP Terraform Freeze SAM CD and add Terraform for seahaven-prod (Lambdas, DynamoDB, EventBridge, alarms) so HCP becomes the sole deploy path. Include prod secret ARNs in the tfvars example for workspace wiring. * fix(terraform): reject symlink sources in Lambda package build
91 lines
2.5 KiB
HCL
91 lines
2.5 KiB
HCL
variable "aws_region" {
|
|
type = string
|
|
description = "AWS region for all resources"
|
|
default = "us-east-1"
|
|
}
|
|
|
|
variable "front_api_token_secret_arn" {
|
|
type = string
|
|
description = "Secrets Manager ARN for the Front API token (exact ARN, including suffix)"
|
|
}
|
|
|
|
variable "slack_bot_token_secret_arn" {
|
|
type = string
|
|
description = "Secrets Manager ARN for the Slack bot token (exact ARN, including suffix)"
|
|
}
|
|
|
|
variable "google_service_account_secret_arn" {
|
|
type = string
|
|
description = "Secrets Manager ARN for the Google service account JSON (exact ARN, including suffix)"
|
|
}
|
|
|
|
variable "slack_alert_channel" {
|
|
type = string
|
|
description = "Slack channel ID for #front-sla-alerts"
|
|
}
|
|
|
|
variable "adam_email" {
|
|
type = string
|
|
description = "Email address for Tier 2 escalation"
|
|
default = "adam@seahavenind.com"
|
|
}
|
|
|
|
variable "ack_sla_minutes" {
|
|
type = number
|
|
description = "Business minutes before Tier 1 alert"
|
|
default = 60
|
|
}
|
|
|
|
variable "action_sla_minutes" {
|
|
type = number
|
|
description = "Business minutes before Tier 2 alert"
|
|
default = 1440
|
|
}
|
|
|
|
variable "monitor_inboxes" {
|
|
type = string
|
|
description = "Comma-separated inbox names to monitor (empty = all shared)"
|
|
default = "Triage,California,West Coast,Central,East Coast,Vendors"
|
|
}
|
|
|
|
variable "sla_monitor_start_date" {
|
|
type = string
|
|
description = "Date when SLA monitoring begins (YYYY-MM-DD, Eastern)"
|
|
default = "2026-05-14"
|
|
}
|
|
|
|
variable "google_admin_email" {
|
|
type = string
|
|
description = "Google Workspace admin email to impersonate for Directory API"
|
|
default = "adam@seahavenind.com"
|
|
}
|
|
|
|
variable "google_org_units" {
|
|
type = string
|
|
description = "Comma-separated Google Workspace org unit paths to sync"
|
|
default = "/Office/Scheduling,/Office/Operations"
|
|
}
|
|
|
|
variable "sla_monitor_schedule" {
|
|
type = string
|
|
description = "EventBridge schedule for SLA monitor (UTC)"
|
|
default = "cron(0/15 12-22 ? * MON-FRI *)"
|
|
}
|
|
|
|
variable "user_sync_schedule" {
|
|
type = string
|
|
description = "EventBridge schedule for user sync (UTC)"
|
|
default = "cron(0 11 ? * MON-FRI *)"
|
|
}
|
|
|
|
variable "schedules_enabled" {
|
|
type = bool
|
|
description = "Whether EventBridge schedules are ENABLED (false until DDB copy + cutover)"
|
|
default = false
|
|
}
|
|
|
|
variable "alarm_sns_topic_arn" {
|
|
type = string
|
|
description = "SNS topic ARN for CloudWatch alarms (site-alerts)"
|
|
default = "arn:aws:sns:us-east-1:011934824531:site-alerts"
|
|
}
|