Skip to content

Commit

Permalink
fixed some stale references in the threat_intel_downloader terraform …
Browse files Browse the repository at this point in the history
…module
  • Loading branch information
GarretReece committed Jan 7, 2020
1 parent b715410 commit b57dad2
Show file tree
Hide file tree
Showing 3 changed files with 13 additions and 3 deletions.
2 changes: 2 additions & 0 deletions streamalert_cli/terraform/threat_intel_downloader.py
Original file line number Diff line number Diff line change
Expand Up @@ -49,6 +49,8 @@ def generate_threat_intel_downloader(config):
'region': config['global']['account']['region'],
'prefix': prefix,
'function_role_id': '${module.threat_intel_downloader.role_id}',
'function_alias_arn': '${module.threat_intel_downloader.function_alias_arn}',
'function_cloudwatch_log_group_name': '${module.threat_intel_downloader.log_group_name}',
'monitoring_sns_topic': dlq_topic,
'table_rcu': tid_config.get('table_rcu', '10'),
'table_wcu': tid_config.get('table_wcu', '10'),
Expand Down
6 changes: 3 additions & 3 deletions terraform/modules/tf_threat_intel_downloader/iam.tf
Original file line number Diff line number Diff line change
Expand Up @@ -15,7 +15,7 @@ data "aws_iam_policy_document" "invoke_lambda_function" {
]

resources = [
aws_lambda_function.threat_intel_downloader.arn,
var.function_alias_arn
]
}
}
Expand All @@ -37,7 +37,7 @@ data "aws_iam_policy_document" "cloudwatch_logs_policy" {
]

resources = [
aws_cloudwatch_log_group.threat_intel_downloader.arn,
var.function_cloudwatch_log_group_name
]
}

Expand All @@ -50,7 +50,7 @@ data "aws_iam_policy_document" "cloudwatch_logs_policy" {
]

resources = [
"arn:aws:logs:${var.region}:${var.account_id}:log-group:${aws_cloudwatch_log_group.threat_intel_downloader.name}:log-stream:*",
"arn:aws:logs:${var.region}:${var.account_id}:log-group:${var.function_cloudwatch_log_group_name}:log-stream:*",
]
}
}
Expand Down
8 changes: 8 additions & 0 deletions terraform/modules/tf_threat_intel_downloader/variables.tf
Original file line number Diff line number Diff line change
Expand Up @@ -14,6 +14,14 @@ variable "function_role_id" {
description = "Threat Intel Downloader function IAM Role ID, exported from the tf_lambda module"
}

variable "function_alias_arn" {
description = "Threat Intel Downloader function alias arn, exported from the tf_lambda module"
}

variable "function_cloudwatch_log_group_name" {
description = "Threat Intel Downloader function cloudwatch log group name, exported from the tf_lambda module"
}

variable "parameter_name" {
default = "threat_intel_downloader_api_creds"
type = string
Expand Down

0 comments on commit b57dad2

Please sign in to comment.