diff --git a/firewall-production.tf b/firewall-production.tf index a8995df..bd0bb04 100644 --- a/firewall-production.tf +++ b/firewall-production.tf @@ -88,14 +88,16 @@ resource "aws_networkfirewall_firewall_policy" "default_policy" { } # -#resource "aws_networkfirewall_firewall" "default_firewall" { -# name = "default-firewall" -# firewall_policy_arn = aws_networkfirewall_firewall_policy.default_policy.arn -# vpc_id = aws_vpc.default.id -# subnet_mapping { -# subnet_id = aws_subnet.public_subnet.*.id -# } -# subnet_mapping { -# subnet_id = element(aws_subnet.private_subnet.*.id, count.index) -# } -#} \ No newline at end of file +resource "aws_networkfirewall_firewall" "default_firewall" { + name = "default-firewall" + firewall_policy_arn = aws_networkfirewall_firewall_policy.default_policy.arn + vpc_id = aws_vpc.default.id + subnet_mapping { + count = length(var.public_subnets_cidr) + subnet_id = element(var.public_subnets_cidr, count.index) + } + subnet_mapping { + count = length(var.private_subnets_cidr) + subnet_id = element(var.private_subnets_cidr, count.index) + } +} \ No newline at end of file