seahaven-door-unlock-api/terraform/acm.tf
Adam Moussa c43bee214c
feat(terraform): add hcp terraform for prod door-unlock-api (PLAT-76) (#81)
* feat(terraform): add hcp terraform for prod door-unlock-api

Move deploy off frozen CDK CD onto an HCP workspace that recreates the HTTP API, five Lambdas, disabled EventBridge rules, and alarms in seahaven-prod without a poller VPC.

* docs(readme): link the door unlock api ops page

* fix(terraform): invoke package build via bash

HCP launches the external data source with bash, so the inner build script should not depend on the git executable bit.
2026-08-27 22:03:12 +00:00

13 lines
646 B
HCL

# ACM certificate for doorunlock.seahaven.com.
#
# The certificate is an out-of-band bootstrap dependency and is deliberately NOT
# created here. It was requested in seahaven-prod ahead of this configuration
# (arn:aws:acm:us-east-1:011934824531:certificate/c972e630-047f-4b6d-ae9b-2a7702cbdfce)
# and validated by DNS in the mgmt hosted zone. Declaring an aws_acm_certificate
# resource as well would request a second certificate for the same domain on
# the first apply, so this configuration only reads the issued one.
data "aws_acm_certificate" "doorunlock" {
domain = var.domain_name
statuses = ["ISSUED"]
most_recent = true
}