Skip to content

Commit

Permalink
Merge pull request #1033 from alphagov/sengi/licensify-docdb-fw-rule
Browse files Browse the repository at this point in the history
Add firewall rule for Licensify DocDB traffic.
  • Loading branch information
sengi authored Dec 4, 2023
2 parents 175c2ec + 9177b90 commit d814edf
Showing 1 changed file with 10 additions and 0 deletions.
10 changes: 10 additions & 0 deletions terraform/deployments/govuk-publishing-infrastructure/security.tf
Original file line number Diff line number Diff line change
Expand Up @@ -105,6 +105,16 @@ resource "aws_security_group_rule" "shared_docdb_from_eks_workers" {
source_security_group_id = data.terraform_remote_state.cluster_infrastructure.outputs.node_security_group_id
}

resource "aws_security_group_rule" "licensify_docdb_from_eks_workers" {
description = "Licensify DocumentDB accepts requests from EKS nodes"
type = "ingress"
from_port = 27017
to_port = 27017
protocol = "tcp"
security_group_id = data.terraform_remote_state.infra_security_groups.outputs.sg_licensify_documentdb_id
source_security_group_id = data.terraform_remote_state.cluster_infrastructure.outputs.node_security_group_id
}

resource "aws_security_group_rule" "postgres_from_eks_workers" {
for_each = merge(data.terraform_remote_state.app_govuk_rds.outputs.sg_rds, {
"transition_primary" = data.terraform_remote_state.infra_security_groups.outputs.sg_transition-postgresql-primary_id
Expand Down

0 comments on commit d814edf

Please sign in to comment.