output "instance_id" { description = "syslog-server EC2 instance id." value = aws_instance.this.id } output "private_ip" { description = "Private IP — UniFi SIEM/IPFIX forwarding target over IPsec." value = aws_instance.this.private_ip } output "vpn_connection_id" { description = "Prod office IPsec connection. Configure a UniFi site-to-site VPN to these tunnels with remote network 10.40.0.0/16." value = aws_vpn_connection.office.id } output "vpn_tunnel1_address" { description = "AWS tunnel 1 outside IP for the UniFi IPsec peer." value = aws_vpn_connection.office.tunnel1_address } output "vpn_tunnel2_address" { description = "AWS tunnel 2 outside IP for the UniFi IPsec peer." value = aws_vpn_connection.office.tunnel2_address } output "vpn_tunnel1_preshared_key" { description = "IPsec PSK for tunnel 1. Read with terraform output -raw after apply. Do not commit." value = aws_vpn_connection.office.tunnel1_preshared_key sensitive = true } output "vpn_tunnel2_preshared_key" { description = "IPsec PSK for tunnel 2. Read with terraform output -raw after apply. Do not commit." value = aws_vpn_connection.office.tunnel2_preshared_key sensitive = true } output "bucket_name" { description = "S3 bucket holding 90-day UniFi JSON archives." value = aws_s3_bucket.unifi.bucket } output "firehose_name" { description = "Kinesis Data Firehose delivery stream name." value = aws_kinesis_firehose_delivery_stream.unifi.name } output "athena_workgroup" { description = "Athena workgroup for UniFi log search." value = aws_athena_workgroup.this.name } output "glue_database" { description = "Glue catalog database with cef, iptables, and netflow tables." value = aws_glue_catalog_database.unifi.name } output "hcptf_apply_role_arn" { description = "HCP apply role ARN. Set TFC_AWS_APPLY_ROLE_ARN after the bootstrap window." value = aws_iam_role.hcptf_apply.arn } output "hcptf_plan_role_arn" { description = "HCP plan role ARN. Set TFC_AWS_PLAN_ROLE_ARN after the bootstrap window." value = aws_iam_role.hcptf_plan.arn }