Граф коммитов

11 Коммитов

Автор SHA1 Сообщение Дата
Julie Ng 108fbbdfb6
chore: rename backend config 2022-04-29 13:59:42 +02:00
Julie Ng 7322197f56
feat(terraform): enable local deployment, closes #35 (#44) 2021-11-04 15:38:23 +01:00
Julie Ng b3791c6e0c
docs(terraform): add required AAD permissions (#21)
* chore: ignore more tf configs

* terraform: update instructions with AAD permissions, rename backend config
2021-06-09 08:52:51 +02:00
Julie Ng 55d9c6b5f5
chore: use provider lock file for consistent plans (#19) 2021-04-15 18:19:07 +02:00
Julie Ng e532a8b729 chore: update terraform provider versions 2021-03-18 19:50:18 +01:00
Julie Ng ab5a6aa1ad
key-vault: add access policy for superadmins AAD group
Key Vault has its own Data Plane access policies. In order for
CI/CD pipelines to manage the infrastructure *and* to allow
humans with priviledged access to examine the contents, we
are using a superadmin group.

N.B. this is not relevant if you use Azure RBAC instead of access
policies. At time of writing, this is still in preview.

For details see
https://docs.microsoft.com/en-us/azure/key-vault/general/rbac-guide
2020-11-20 16:00:49 +01:00
Julie Ng f1514cffa5
azure-ad: add contribtor and own groups per team 2020-10-13 22:42:21 +02:00
Julie Ng a1f80c9e74
gitignore: fix tfplan files 2020-08-28 13:50:58 +02:00
Julie Ng c418afe248
chore(gitignore): mac, config, debugging 2020-08-28 10:07:35 +02:00
Julie Ng 296ec2547e
chore: update .gitignore, remove unused lines
A craftsman only checks-in what they need and knows what every line does
👌
2020-08-28 09:23:07 +02:00
microsoft-github-operations[bot] 4bf67a10ed
Initial commit 2020-08-28 07:11:49 +00:00