terraform_tfvars 2.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293
  1. ORG_ID = "" #example bpfi6o0mvliepdcf1610
  2. BA_ID = "" #example fsddn24jqt9dfb2gu8d9j
  3. KEYCLOAK = "true"
  4. ORG_ADMIN_FOLDER_ID = "" #example b1g1ed753v5gkvaoivs23
  5. ORG_ADMIN_CLOUD_ID = "" #example 234b1g45th6hthg77e0n
  6. DNS_ZONE_NAME = "" #example mirt2est
  7. KC_FQDN = "" #example kc.mirt2est.net
  8. #List of cloud that you want to create
  9. CLOUD-LIST = [
  10. {
  11. name = "web-app",
  12. descr = "web-app cloud",
  13. admin = "user1@example.com"
  14. folders = ["network", "prod", "nonprod", "dev"]
  15. },
  16. {
  17. name = "mobile-app",
  18. descr = "mobile-app cloud",
  19. admin = "user2@example.com"
  20. folders = ["network", "prod", "nonprod", "dev"]
  21. },
  22. {
  23. name = "security",
  24. descr = "security cloud",
  25. admin = "user3@example.com"
  26. folders = [""]
  27. }
  28. ]
  29. #List of Groups that you want to pre-create for your clouds
  30. NETWORK-CLOUD_GROUPS = [
  31. {
  32. name = "network-viewer",
  33. descr = "admin who can view and monitor network",
  34. roles = ["vpc.viewer", "monitoring.admin"]
  35. },
  36. {
  37. name = "gitlab-admin",
  38. descr = "admin who can administrate gitlab",
  39. roles = ["gitlab.admin"]
  40. }
  41. ]
  42. PROD-CLOUD_GROUPS = [
  43. {
  44. name = "prod-devops",
  45. descr = "devops prod",
  46. roles = ["k8s.viewer", "container-registry.viewer", "alb.viewer", "k8s.cluster-api.viewer", "vpc.user", "load-balancer.viewer", ]
  47. },
  48. {
  49. name = "prod-sre",
  50. descr = "sre prod",
  51. roles = ["compute.viewer", "loadtesting.viewer", "storage.configViewer", "alb.viewer"]
  52. },
  53. {
  54. name = "prod-dba",
  55. descr = "dba prod",
  56. roles = ["mdb.viewer", "ydb.viewer"]
  57. }
  58. ]
  59. NONPROD-CLOUD_GROUPS = [
  60. {
  61. name = "nonprod-devops",
  62. descr = "devops nonprod",
  63. roles = ["k8s.editor", "container-registry.editor", "alb.editor", "k8s.cluster-api.editor", "vpc.user", "load-balancer.admin", ]
  64. },
  65. {
  66. name = "nonprod-sre",
  67. descr = "sre nonprod",
  68. roles = ["compute.operator", "loadtesting.editor", "storage.editor", "alb.editor"]
  69. },
  70. {
  71. name = "nonprod-dba",
  72. descr = "dba nonprod",
  73. roles = ["mdb.admin", "ydb.editor"]
  74. }
  75. ]
  76. DEV-CLOUD_GROUPS = [
  77. {
  78. name = "dev-network",
  79. descr = "network dev",
  80. roles = ["vpc.admin", "monitoring.admin"]
  81. },
  82. {
  83. name = "dev-devops",
  84. descr = "dev devops",
  85. roles = ["k8s.admin", "container-registry.admin", "alb.admin", "k8s.cluster-api.cluster-admin", "vpc.user", "iam.serviceAccounts.user"]
  86. }
  87. ]