-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathlambda_data_gen.tf
47 lines (40 loc) · 1.51 KB
/
lambda_data_gen.tf
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
resource "aws_cloudwatch_event_rule" "dbgen" {
name = "tf-${var.base_name}-dbgen-event"
schedule_expression = "${var.dbgen_schedule}"
}
resource "aws_cloudwatch_event_target" "dbgen_taget" {
rule = "${aws_cloudwatch_event_rule.dbgen.name}"
arn = "${aws_lambda_function.dbgen.arn}"
}
resource "aws_lambda_permission" "allow_call_dbgen" {
statement_id = "AllowExecutionFromCloudWatch"
action = "lambda:InvokeFunction"
function_name = "${aws_lambda_function.dbgen.function_name}"
principal = "events.amazonaws.com"
source_arn = "${aws_cloudwatch_event_rule.dbgen.arn}"
}
resource "aws_s3_bucket" "bucket" {
bucket = "tf-${var.base_name}-bucket"
acl = "private"
}
resource "aws_lambda_function" "dbgen" {
s3_bucket = "${aws_s3_bucket.bucket.id}"
s3_key = "dbgen_archive"
function_name = "generate_initial_db"
role = "${aws_iam_role.lambda_iam.arn}"
handler = "app.gen"
source_code_hash = "${base64sha256(file("${var.dbgen_archive_path}"))}"
runtime = "python3.6"
memory_size = 512
timeout = 120
vpc_config {
subnet_ids = ["${aws_subnet.main.*.id}"]
security_group_ids = ["${aws_security_group.lambda_sg.id}"]
}
environment {
variables = {
DATABASE_URL = "postgresql://${var.db_username}:${var.db_password}@${aws_db_instance.db.endpoint}/postgres"
}
}
depends_on = ["aws_iam_role_policy_attachment.lamba_exec_role_eni", "aws_s3_bucket_object.dbgen_archive"]
}