|
1 |
| -resource "aws_lambda_function" "func" { |
2 | 1 |
|
3 |
| - function_name = var.naming_prefix |
4 |
| - role = aws_iam_role.lambda.arn |
| 2 | +module "clickops_notifier_lambda" { |
| 3 | + source = "git::https://github.com/terraform-aws-modules/terraform-aws-lambda.git?ref=v3.2.1" |
5 | 4 |
|
6 |
| - handler = "main.handler" |
7 |
| - runtime = "python3.8" |
| 5 | + function_name = var.naming_prefix |
| 6 | + description = "ClickOps Notifier Lambda" |
8 | 7 |
|
9 |
| - filename = data.archive_file.func.output_path |
10 |
| - source_code_hash = filebase64sha256(data.archive_file.func.output_path) |
| 8 | + handler = "main.handler" |
| 9 | + runtime = "python3.9" |
| 10 | + publish = true |
| 11 | + source_path = "${path.module}/lambda/app" |
11 | 12 |
|
12 | 13 | timeout = var.event_processing_timeout
|
13 | 14 | memory_size = 128
|
14 | 15 |
|
15 |
| - layers = [local.python_layers[var.region]] |
16 |
| - |
17 |
| - environment { |
18 |
| - variables = { |
19 |
| - WEBHOOK_PARAMETER = aws_ssm_parameter.slack_webhook.name |
20 |
| - EXCLUDED_ACCOUNTS = jsonencode(var.excluded_accounts) |
21 |
| - INCLUDED_ACCOUNTS = jsonencode(var.included_accounts) |
| 16 | + attach_policy_json = true |
| 17 | + policy_json = data.aws_iam_policy_document.lambda_permissions.json |
22 | 18 |
|
23 |
| - EXCLUDED_USERS = jsonencode(var.excluded_users) |
24 |
| - INCLUDED_USERS = jsonencode(var.included_users) |
| 19 | + attach_policy_statements = true |
| 20 | + policy_statements = var.additional_iam_policy_statements |
25 | 21 |
|
26 |
| - MESSAGE_FORMAT = var.message_format |
| 22 | + cloudwatch_logs_retention_in_days = var.log_retention_in_days |
27 | 23 |
|
28 |
| - LOG_LEVEL = "INFO" |
29 |
| - } |
30 |
| - } |
| 24 | + environment_variables = { |
| 25 | + WEBHOOK_PARAMETER = aws_ssm_parameter.slack_webhook.name |
| 26 | + EXCLUDED_ACCOUNTS = jsonencode(var.excluded_accounts) |
| 27 | + INCLUDED_ACCOUNTS = jsonencode(var.included_accounts) |
31 | 28 |
|
32 |
| - tags = var.tags |
33 |
| -} |
| 29 | + EXCLUDED_USERS = jsonencode(var.excluded_users) |
| 30 | + INCLUDED_USERS = jsonencode(var.included_users) |
34 | 31 |
|
35 |
| -data "archive_file" "func" { |
36 |
| - type = "zip" |
37 |
| - source_dir = "${path.module}/lambda/app" |
38 |
| - output_file_mode = "0666" |
39 |
| - output_path = "${path.module}/lambda.zip" |
40 |
| -} |
| 32 | + MESSAGE_FORMAT = var.message_format |
41 | 33 |
|
42 |
| -resource "aws_lambda_event_source_mapping" "bucket_notifications" { |
43 |
| - event_source_arn = aws_sqs_queue.bucket_notifications.arn |
44 |
| - function_name = aws_lambda_function.func.arn |
| 34 | + LOG_LEVEL = "INFO" |
| 35 | + } |
45 | 36 |
|
46 |
| - batch_size = var.event_batch_size |
47 |
| - maximum_batching_window_in_seconds = var.event_maximum_batching_window |
| 37 | + event_source_mapping = { |
| 38 | + sqs = { |
| 39 | + event_source_arn = aws_sqs_queue.bucket_notifications.arn |
| 40 | + batch_size = var.event_batch_size |
| 41 | + maximum_batching_window_in_seconds = var.event_maximum_batching_window |
| 42 | + } |
| 43 | + } |
48 | 44 |
|
| 45 | + tags = var.tags |
49 | 46 | }
|
50 | 47 |
|
51 | 48 | resource "aws_ssm_parameter" "slack_webhook" {
|
|
0 commit comments