123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293 |
- ORG_ID = "" #example bpfi6o0mvliepdcf1610
- BA_ID = "" #example fsddn24jqt9dfb2gu8d9j
- KEYCLOAK = "true"
- ORG_ADMIN_FOLDER_ID = "" #example b1g1ed753v5gkvaoivs23
- ORG_ADMIN_CLOUD_ID = "" #example 234b1g45th6hthg77e0n
- DNS_ZONE_NAME = "" #example mirt2est
- KC_FQDN = "" #example kc.mirt2est.net
- #List of cloud that you want to create
- CLOUD-LIST = [
- {
- name = "web-app",
- descr = "web-app cloud",
- admin = "user1@example.com"
- folders = ["network", "prod", "nonprod", "dev"]
- },
- {
- name = "mobile-app",
- descr = "mobile-app cloud",
- admin = "user2@example.com"
- folders = ["network", "prod", "nonprod", "dev"]
- },
- {
- name = "security",
- descr = "security cloud",
- admin = "user3@example.com"
- folders = [""]
- }
- ]
- #List of Groups that you want to pre-create for your clouds
- NETWORK-CLOUD_GROUPS = [
- {
- name = "network-viewer",
- descr = "admin who can view and monitor network",
- roles = ["vpc.viewer", "monitoring.admin"]
- },
- {
- name = "gitlab-admin",
- descr = "admin who can administrate gitlab",
- roles = ["gitlab.admin"]
- }
- ]
- PROD-CLOUD_GROUPS = [
- {
- name = "prod-devops",
- descr = "devops prod",
- roles = ["k8s.viewer", "container-registry.viewer", "alb.viewer", "k8s.cluster-api.viewer", "vpc.user", "load-balancer.viewer", ]
- },
- {
- name = "prod-sre",
- descr = "sre prod",
- roles = ["compute.viewer", "loadtesting.viewer", "storage.configViewer", "alb.viewer"]
- },
- {
- name = "prod-dba",
- descr = "dba prod",
- roles = ["mdb.viewer", "ydb.viewer"]
- }
- ]
- NONPROD-CLOUD_GROUPS = [
- {
- name = "nonprod-devops",
- descr = "devops nonprod",
- roles = ["k8s.editor", "container-registry.editor", "alb.editor", "k8s.cluster-api.editor", "vpc.user", "load-balancer.admin", ]
- },
- {
- name = "nonprod-sre",
- descr = "sre nonprod",
- roles = ["compute.operator", "loadtesting.editor", "storage.editor", "alb.editor"]
- },
- {
- name = "nonprod-dba",
- descr = "dba nonprod",
- roles = ["mdb.admin", "ydb.editor"]
- }
- ]
- DEV-CLOUD_GROUPS = [
- {
- name = "dev-network",
- descr = "network dev",
- roles = ["vpc.admin", "monitoring.admin"]
- },
- {
- name = "dev-devops",
- descr = "dev devops",
- roles = ["k8s.admin", "container-registry.admin", "alb.admin", "k8s.cluster-api.cluster-admin", "vpc.user", "iam.serviceAccounts.user"]
- }
- ]
|