1
1
variable "elb_idle_timeout" {
2
- type = number
2
+ type = number
3
3
default = 60
4
4
}
5
5
6
6
resource "aws_security_group" "cf_ssh_lb_security_group" {
7
7
name = " ${ var . env_id } -cf-ssh-lb-security-group"
8
8
description = " CF SSH"
9
- vpc_id = " ${ local . vpc_id } "
9
+ vpc_id = local. vpc_id
10
10
11
11
ingress {
12
- cidr_blocks = [" 0.0.0.0/0" ]
12
+ cidr_blocks = [" 0.0.0.0/0" ]
13
13
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
14
- protocol = " tcp"
15
- from_port = 2222
16
- to_port = 2222
14
+ protocol = " tcp"
15
+ from_port = 2222
16
+ to_port = 2222
17
17
}
18
18
19
19
egress {
20
- from_port = 0
21
- to_port = 0
22
- protocol = " -1"
23
- cidr_blocks = [" 0.0.0.0/0" ]
20
+ from_port = 0
21
+ to_port = 0
22
+ protocol = " -1"
23
+ cidr_blocks = [" 0.0.0.0/0" ]
24
24
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
25
25
}
26
26
@@ -34,13 +34,13 @@ resource "aws_security_group" "cf_ssh_lb_security_group" {
34
34
}
35
35
36
36
output "cf_ssh_lb_security_group" {
37
- value = " ${ aws_security_group . cf_ssh_lb_security_group . id } "
37
+ value = aws_security_group. cf_ssh_lb_security_group . id
38
38
}
39
39
40
40
resource "aws_security_group" "cf_ssh_lb_internal_security_group" {
41
41
name = " ${ var . env_id } -cf-ssh-lb-internal-security-group"
42
42
description = " CF SSH Internal"
43
- vpc_id = " ${ local . vpc_id } "
43
+ vpc_id = local. vpc_id
44
44
45
45
ingress {
46
46
security_groups = [" ${ aws_security_group . cf_ssh_lb_security_group . id } " ]
@@ -50,10 +50,10 @@ resource "aws_security_group" "cf_ssh_lb_internal_security_group" {
50
50
}
51
51
52
52
egress {
53
- from_port = 0
54
- to_port = 0
55
- protocol = " -1"
56
- cidr_blocks = [" 0.0.0.0/0" ]
53
+ from_port = 0
54
+ to_port = 0
55
+ protocol = " -1"
56
+ cidr_blocks = [" 0.0.0.0/0" ]
57
57
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
58
58
}
59
59
@@ -67,7 +67,7 @@ resource "aws_security_group" "cf_ssh_lb_internal_security_group" {
67
67
}
68
68
69
69
output "cf_ssh_lb_internal_security_group" {
70
- value = " ${ aws_security_group . cf_ssh_lb_internal_security_group . id } "
70
+ value = aws_security_group. cf_ssh_lb_internal_security_group . id
71
71
}
72
72
73
73
resource "aws_elb" "cf_ssh_lb" {
@@ -89,7 +89,7 @@ resource "aws_elb" "cf_ssh_lb" {
89
89
lb_protocol = " tcp"
90
90
}
91
91
92
- idle_timeout = " ${ var . elb_idle_timeout } "
92
+ idle_timeout = var. elb_idle_timeout
93
93
94
94
security_groups = [" ${ aws_security_group . cf_ssh_lb_security_group . id } " ]
95
95
subnets = flatten ([" ${ aws_subnet . lb_subnets . * . id } " ])
@@ -100,47 +100,47 @@ resource "aws_elb" "cf_ssh_lb" {
100
100
}
101
101
102
102
output "cf_ssh_lb_name" {
103
- value = " ${ aws_elb . cf_ssh_lb . name } "
103
+ value = aws_elb. cf_ssh_lb . name
104
104
}
105
105
106
106
output "cf_ssh_lb_url" {
107
- value = " ${ aws_elb . cf_ssh_lb . dns_name } "
107
+ value = aws_elb. cf_ssh_lb . dns_name
108
108
}
109
109
110
110
resource "aws_security_group" "cf_router_lb_security_group" {
111
111
name = " ${ var . env_id } -cf-router-lb-security-group"
112
112
description = " CF Router"
113
- vpc_id = " ${ local . vpc_id } "
113
+ vpc_id = local. vpc_id
114
114
115
115
ingress {
116
- cidr_blocks = [" 0.0.0.0/0" ]
116
+ cidr_blocks = [" 0.0.0.0/0" ]
117
117
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
118
- protocol = " tcp"
119
- from_port = 80
120
- to_port = 80
118
+ protocol = " tcp"
119
+ from_port = 80
120
+ to_port = 80
121
121
}
122
122
123
123
ingress {
124
- cidr_blocks = [" 0.0.0.0/0" ]
124
+ cidr_blocks = [" 0.0.0.0/0" ]
125
125
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
126
- protocol = " tcp"
127
- from_port = 443
128
- to_port = 443
126
+ protocol = " tcp"
127
+ from_port = 443
128
+ to_port = 443
129
129
}
130
130
131
131
ingress {
132
- cidr_blocks = [" 0.0.0.0/0" ]
132
+ cidr_blocks = [" 0.0.0.0/0" ]
133
133
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
134
- protocol = " tcp"
135
- from_port = 4443
136
- to_port = 4443
134
+ protocol = " tcp"
135
+ from_port = 4443
136
+ to_port = 4443
137
137
}
138
138
139
139
egress {
140
- from_port = 0
141
- to_port = 0
142
- protocol = " -1"
143
- cidr_blocks = [" 0.0.0.0/0" ]
140
+ from_port = 0
141
+ to_port = 0
142
+ protocol = " -1"
143
+ cidr_blocks = [" 0.0.0.0/0" ]
144
144
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
145
145
}
146
146
@@ -154,13 +154,13 @@ resource "aws_security_group" "cf_router_lb_security_group" {
154
154
}
155
155
156
156
output "cf_router_lb_security_group" {
157
- value = " ${ aws_security_group . cf_router_lb_security_group . id } "
157
+ value = aws_security_group. cf_router_lb_security_group . id
158
158
}
159
159
160
160
resource "aws_security_group" "cf_router_lb_internal_security_group" {
161
161
name = " ${ var . env_id } -cf-router-lb-internal-security-group"
162
162
description = " CF Router Internal"
163
- vpc_id = " ${ local . vpc_id } "
163
+ vpc_id = local. vpc_id
164
164
165
165
ingress {
166
166
security_groups = [" ${ aws_security_group . cf_router_lb_security_group . id } " ]
@@ -170,10 +170,10 @@ resource "aws_security_group" "cf_router_lb_internal_security_group" {
170
170
}
171
171
172
172
egress {
173
- from_port = 0
174
- to_port = 0
175
- protocol = " -1"
176
- cidr_blocks = [" 0.0.0.0/0" ]
173
+ from_port = 0
174
+ to_port = 0
175
+ protocol = " -1"
176
+ cidr_blocks = [" 0.0.0.0/0" ]
177
177
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
178
178
}
179
179
@@ -187,7 +187,7 @@ resource "aws_security_group" "cf_router_lb_internal_security_group" {
187
187
}
188
188
189
189
output "cf_router_lb_internal_security_group" {
190
- value = " ${ aws_security_group . cf_router_lb_internal_security_group . id } "
190
+ value = aws_security_group. cf_router_lb_internal_security_group . id
191
191
}
192
192
193
193
resource "aws_elb" "cf_router_lb" {
@@ -214,18 +214,18 @@ resource "aws_elb" "cf_router_lb" {
214
214
instance_protocol = " http"
215
215
lb_port = 443
216
216
lb_protocol = " https"
217
- ssl_certificate_id = " ${ aws_iam_server_certificate . lb_cert . arn } "
217
+ ssl_certificate_id = aws_iam_server_certificate. lb_cert . arn
218
218
}
219
219
220
220
listener {
221
221
instance_port = 80
222
222
instance_protocol = " tcp"
223
223
lb_port = 4443
224
224
lb_protocol = " ssl"
225
- ssl_certificate_id = " ${ aws_iam_server_certificate . lb_cert . arn } "
225
+ ssl_certificate_id = aws_iam_server_certificate. lb_cert . arn
226
226
}
227
227
228
- idle_timeout = " ${ var . elb_idle_timeout } "
228
+ idle_timeout = var. elb_idle_timeout
229
229
230
230
security_groups = [" ${ aws_security_group . cf_router_lb_security_group . id } " ]
231
231
subnets = flatten ([" ${ aws_subnet . lb_subnets . * . id } " ])
@@ -239,7 +239,7 @@ resource "aws_lb_target_group" "cf_router_4443" {
239
239
name = " ${ var . short_env_id } -routertg-4443"
240
240
port = 4443
241
241
protocol = " TCP"
242
- vpc_id = " ${ local . vpc_id } "
242
+ vpc_id = local. vpc_id
243
243
244
244
health_check {
245
245
protocol = " TCP"
@@ -251,31 +251,31 @@ resource "aws_lb_target_group" "cf_router_4443" {
251
251
}
252
252
253
253
output "cf_router_lb_name" {
254
- value = " ${ aws_elb . cf_router_lb . name } "
254
+ value = aws_elb. cf_router_lb . name
255
255
}
256
256
257
257
output "cf_router_lb_url" {
258
- value = " ${ aws_elb . cf_router_lb . dns_name } "
258
+ value = aws_elb. cf_router_lb . dns_name
259
259
}
260
260
261
261
resource "aws_security_group" "cf_tcp_lb_security_group" {
262
262
name = " ${ var . env_id } -cf-tcp-lb-security-group"
263
263
description = " CF TCP"
264
- vpc_id = " ${ local . vpc_id } "
264
+ vpc_id = local. vpc_id
265
265
266
266
ingress {
267
- cidr_blocks = [" 0.0.0.0/0" ]
267
+ cidr_blocks = [" 0.0.0.0/0" ]
268
268
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
269
- protocol = " tcp"
270
- from_port = 1024
271
- to_port = 1123
269
+ protocol = " tcp"
270
+ from_port = 1024
271
+ to_port = 1123
272
272
}
273
273
274
274
egress {
275
- from_port = 0
276
- to_port = 0
277
- protocol = " -1"
278
- cidr_blocks = [" 0.0.0.0/0" ]
275
+ from_port = 0
276
+ to_port = 0
277
+ protocol = " -1"
278
+ cidr_blocks = [" 0.0.0.0/0" ]
279
279
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
280
280
}
281
281
@@ -289,13 +289,13 @@ resource "aws_security_group" "cf_tcp_lb_security_group" {
289
289
}
290
290
291
291
output "cf_tcp_lb_security_group" {
292
- value = " ${ aws_security_group . cf_tcp_lb_security_group . id } "
292
+ value = aws_security_group. cf_tcp_lb_security_group . id
293
293
}
294
294
295
295
resource "aws_security_group" "cf_tcp_lb_internal_security_group" {
296
296
name = " ${ var . env_id } -cf-tcp-lb-internal-security-group"
297
297
description = " CF TCP Internal"
298
- vpc_id = " ${ local . vpc_id } "
298
+ vpc_id = local. vpc_id
299
299
300
300
ingress {
301
301
security_groups = [" ${ aws_security_group . cf_tcp_lb_security_group . id } " ]
@@ -312,10 +312,10 @@ resource "aws_security_group" "cf_tcp_lb_internal_security_group" {
312
312
}
313
313
314
314
egress {
315
- from_port = 0
316
- to_port = 0
317
- protocol = " -1"
318
- cidr_blocks = [" 0.0.0.0/0" ]
315
+ from_port = 0
316
+ to_port = 0
317
+ protocol = " -1"
318
+ cidr_blocks = [" 0.0.0.0/0" ]
319
319
ipv6_cidr_blocks = var. dualstack ? [" ::/0" ] : null
320
320
}
321
321
@@ -329,7 +329,7 @@ resource "aws_security_group" "cf_tcp_lb_internal_security_group" {
329
329
}
330
330
331
331
output "cf_tcp_lb_internal_security_group" {
332
- value = " ${ aws_security_group . cf_tcp_lb_internal_security_group . id } "
332
+ value = aws_security_group. cf_tcp_lb_internal_security_group . id
333
333
}
334
334
335
335
resource "aws_elb" "cf_tcp_lb" {
@@ -355,7 +355,7 @@ resource "aws_elb" "cf_tcp_lb" {
355
355
}
356
356
}
357
357
358
- idle_timeout = " ${ var . elb_idle_timeout } "
358
+ idle_timeout = var. elb_idle_timeout
359
359
360
360
security_groups = [" ${ aws_security_group . cf_tcp_lb_security_group . id } " ]
361
361
subnets = flatten ([" ${ aws_subnet . lb_subnets . * . id } " ])
@@ -366,9 +366,9 @@ resource "aws_elb" "cf_tcp_lb" {
366
366
}
367
367
368
368
output "cf_tcp_lb_name" {
369
- value = " ${ aws_elb . cf_tcp_lb . name } "
369
+ value = aws_elb. cf_tcp_lb . name
370
370
}
371
371
372
372
output "cf_tcp_lb_url" {
373
- value = " ${ aws_elb . cf_tcp_lb . dns_name } "
373
+ value = aws_elb. cf_tcp_lb . dns_name
374
374
}
0 commit comments