mirror of
https://github.com/Sea-Haven-Industries/seahaven-site.git
synced 2026-09-30 06:33:16 +00:00
Some checks are pending
Deploy / deploy (push) Waiting to run
* feat(infra): add HCP Terraform for prod static hosting Greenfield S3+CloudFront+ACM+OIDC content-deploy role under /tf-managed/, with OOB mgmt DNS helper for ACM validation and apex alias cutover. * chore(security): suppress pre-existing js-yaml npm audit * feat(ci): retarget content deploy to seahaven-prod origin Point OIDC, S3 sync, and CloudFront invalidation at the HCP-managed prod hosting stack so GHA remains the content publish path after cutover.
35 lines
1.1 KiB
HCL
35 lines
1.1 KiB
HCL
output "origin_bucket_name" {
|
|
description = "S3 origin bucket name for content sync"
|
|
value = aws_s3_bucket.origin.bucket
|
|
}
|
|
|
|
output "cloudfront_distribution_id" {
|
|
description = "CloudFront distribution ID for invalidations"
|
|
value = aws_cloudfront_distribution.site.id
|
|
}
|
|
|
|
output "cloudfront_domain_name" {
|
|
description = "CloudFront distribution domain (*.cloudfront.net)"
|
|
value = aws_cloudfront_distribution.site.domain_name
|
|
}
|
|
|
|
output "github_deploy_role_arn" {
|
|
description = "OIDC role ARN for GitHub Actions content deploy"
|
|
value = aws_iam_role.github_deploy.arn
|
|
}
|
|
|
|
output "acm_certificate_arn" {
|
|
description = "ACM certificate ARN (us-east-1) for the apex domain"
|
|
value = aws_acm_certificate.site.arn
|
|
}
|
|
|
|
output "acm_validation_records" {
|
|
description = "DNS validation CNAMEs to upsert in the mgmt seahaven.com zone"
|
|
value = [
|
|
for dvo in aws_acm_certificate.site.domain_validation_options : {
|
|
name = dvo.resource_record_name
|
|
type = dvo.resource_record_type
|
|
value = dvo.resource_record_value
|
|
}
|
|
]
|
|
}
|