2026-09-16 21:29:43 +00:00
|
|
|
output "instance_id" {
|
|
|
|
|
description = "syslog-server EC2 instance id."
|
|
|
|
|
value = aws_instance.this.id
|
|
|
|
|
}
|
|
|
|
|
|
2026-09-17 18:48:25 +00:00
|
|
|
output "private_ip" {
|
|
|
|
|
description = "Private IP — UniFi SIEM/IPFIX forwarding target over IPsec."
|
|
|
|
|
value = aws_instance.this.private_ip
|
2026-09-16 21:29:43 +00:00
|
|
|
}
|
|
|
|
|
|
2026-09-17 18:48:25 +00:00
|
|
|
output "vpn_connection_id" {
|
|
|
|
|
description = "Prod office IPsec connection. Configure a UniFi site-to-site VPN to these tunnels with remote network 10.40.0.0/16."
|
|
|
|
|
value = aws_vpn_connection.office.id
|
2026-09-16 21:29:43 +00:00
|
|
|
}
|
|
|
|
|
|
2026-09-17 18:48:25 +00:00
|
|
|
output "vpn_tunnel1_address" {
|
|
|
|
|
description = "AWS tunnel 1 outside IP for the UniFi IPsec peer."
|
|
|
|
|
value = aws_vpn_connection.office.tunnel1_address
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "vpn_tunnel2_address" {
|
|
|
|
|
description = "AWS tunnel 2 outside IP for the UniFi IPsec peer."
|
|
|
|
|
value = aws_vpn_connection.office.tunnel2_address
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "vpn_tunnel1_preshared_key" {
|
|
|
|
|
description = "IPsec PSK for tunnel 1. Read with terraform output -raw after apply. Do not commit."
|
|
|
|
|
value = aws_vpn_connection.office.tunnel1_preshared_key
|
|
|
|
|
sensitive = true
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "vpn_tunnel2_preshared_key" {
|
|
|
|
|
description = "IPsec PSK for tunnel 2. Read with terraform output -raw after apply. Do not commit."
|
|
|
|
|
value = aws_vpn_connection.office.tunnel2_preshared_key
|
|
|
|
|
sensitive = true
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "bucket_name" {
|
|
|
|
|
description = "S3 bucket holding 90-day UniFi JSON archives."
|
|
|
|
|
value = aws_s3_bucket.unifi.bucket
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "firehose_name" {
|
|
|
|
|
description = "Kinesis Data Firehose delivery stream name."
|
|
|
|
|
value = aws_kinesis_firehose_delivery_stream.unifi.name
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "athena_workgroup" {
|
|
|
|
|
description = "Athena workgroup for UniFi log search."
|
|
|
|
|
value = aws_athena_workgroup.this.name
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "glue_database" {
|
|
|
|
|
description = "Glue catalog database with cef, iptables, and netflow tables."
|
|
|
|
|
value = aws_glue_catalog_database.unifi.name
|
2026-09-16 21:29:43 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "hcptf_apply_role_arn" {
|
|
|
|
|
description = "HCP apply role ARN. Set TFC_AWS_APPLY_ROLE_ARN after the bootstrap window."
|
|
|
|
|
value = aws_iam_role.hcptf_apply.arn
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
output "hcptf_plan_role_arn" {
|
|
|
|
|
description = "HCP plan role ARN. Set TFC_AWS_PLAN_ROLE_ARN after the bootstrap window."
|
|
|
|
|
value = aws_iam_role.hcptf_plan.arn
|
|
|
|
|
}
|