mirror of
https://github.com/Sea-Haven-Industries/shoc-backend.git
synced 2026-09-30 16:33:12 +00:00
* feat(terraform): add safe backend environment adoption Introduce import-guarded environment roots and retire temporary bootstrap and POC provisioning after ownership transfer. * ci(deploy): pause dev and staging deployments Prevent application releases from racing Terraform adoption while retaining production deployment and validation. * ci(deploy): require manual environment dispatch * fix: update `required_version` from `>=1.7.0` to `>=1.9.0` The deploy-boundary check interpolates `var.aws_account_id` and `var.environment`. Terraform only allows other variables inside `validation` from 1.9.0+. CI already runs against `1.9.8` so `versions.tf` setting version as `>=1.7.0` is a breaking finding * chore(deps): add `terraform` to renovate dependency coverage * ci(deploy): drop unprovisioned prod dispatch path
29 lines
689 B
HCL
29 lines
689 B
HCL
variable "aws_account_id" {
|
|
type = string
|
|
description = "Expected AWS account ID."
|
|
}
|
|
|
|
variable "rds_identifier" {
|
|
type = string
|
|
description = "Existing shared RDS instance identifier."
|
|
}
|
|
|
|
variable "certificate_domain" {
|
|
type = string
|
|
description = "Primary domain on the existing shared ACM certificate."
|
|
}
|
|
|
|
variable "hosted_zone_name" {
|
|
type = string
|
|
description = "Existing Route 53 hosted-zone name."
|
|
}
|
|
|
|
variable "expected_certificate_arn" {
|
|
type = string
|
|
description = "Exact existing ACM certificate ARN."
|
|
}
|
|
|
|
variable "expected_hosted_zone_id" {
|
|
type = string
|
|
description = "Exact existing Route 53 hosted-zone ID."
|
|
}
|