mirror of
https://github.com/Sea-Haven-Industries/meal-order-manager.git
synced 2026-09-30 05:23:13 +00:00
* feat(infra): add lightweight meal-order-manager-dev (PLAT-210) Parameterize the HCP root for seahaven-dev with schedules, PITR, alarms, and Paychex gated off so a second env does not clone production cost or side effects. * fix(infra): drop prod-only authorizer import so dev can create it (PLAT-210) The PLAT-102 import is already in meal-order-manager-prod state. A shared import block fails in seahaven-dev because the permission does not exist there. * fix(iam): allow creating the weekly-menu githubdeploy role in seahaven-dev (PLAT-210) Prod imported that role. A new account needs CreateRole on tf-managed/githubdeploy-meal-order-manager-weekly-menu.
17 lines
707 B
HCL
17 lines
707 B
HCL
# Log groups are created explicitly rather than left to Lambda's implicit
|
|
# on-first-invoke creation, so retention is enforced from the start. Each name
|
|
# matches the runtime default (/aws/lambda/<function-name>), and every function
|
|
# depends on its group.
|
|
|
|
resource "aws_cloudwatch_log_group" "function" {
|
|
for_each = local.function_packages
|
|
|
|
name = "/aws/lambda/${local.project}-${replace(each.key, "_", "-")}"
|
|
retention_in_days = local.is_prod ? 60 : 14
|
|
}
|
|
|
|
# Longer than the Lambda groups on purpose, for request-level forensics.
|
|
resource "aws_cloudwatch_log_group" "api_access" {
|
|
name = "/aws/apigateway/${local.project}"
|
|
retention_in_days = local.is_prod ? 90 : 14
|
|
}
|