Merge pull request #5 from ryhud/ryhud-301

Ryhud 301
This commit is contained in:
Ryan Hudson 2021-11-12 16:23:58 -05:00 committed by GitHub
commit 7aa93d44bc
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
9 changed files with 256 additions and 256 deletions

View File

@ -1,5 +1,5 @@
terraform {
required_version = ">=0.15.0"
required_version = ">=1.0"
required_providers {
azurerm = {

View File

@ -1,5 +1,5 @@
terraform {
required_version = ">=0.15.0"
required_version = ">=1.0"
required_providers {
azurerm = {

View File

@ -1,5 +1,5 @@
terraform {
required_version = ">=0.15.0"
required_version = ">=1.0"
required_providers {
azurerm = {

View File

@ -112,7 +112,7 @@ resource "azurerm_firewall_policy_rule_collection_group" "azure_firewall_rules_c
firewall_policy_id = azurerm_firewall_policy.base_policy.id
priority = 100
application_rule_collection {
application_rule_collection {
name = "afwp-base-app-rule-collection"
priority = 200
action = "Allow"
@ -125,7 +125,7 @@ application_rule_collection {
}
protocols {
type = "Http"
port= 80
port = 80
}
source_ip_groups = [azurerm_ip_group.ip_group_dsvm_subnet.id]
destination_fqdns = ["*"]
@ -148,7 +148,7 @@ application_rule_collection {
port = 443
}
source_ip_groups = [azurerm_ip_group.ip_group_spoke.id]
destination_fqdns = ["api.snapcraft.io","motd.ubuntu.com",]
destination_fqdns = ["api.snapcraft.io", "motd.ubuntu.com", ]
}
rule {
@ -398,8 +398,8 @@ application_rule_collection {
rule {
name = "hub-to-spoke-rule"
protocols = ["Any"]
source_ip_groups = [azurerm_ip_group.ip_group_spoke.id,azurerm_ip_group.ip_group_hub.id]
destination_ip_groups = [azurerm_ip_group.ip_group_hub.id,azurerm_ip_group.ip_group_spoke.id]
source_ip_groups = [azurerm_ip_group.ip_group_spoke.id, azurerm_ip_group.ip_group_hub.id]
destination_ip_groups = [azurerm_ip_group.ip_group_hub.id, azurerm_ip_group.ip_group_spoke.id]
destination_ports = ["*"]
}
@ -455,7 +455,7 @@ application_rule_collection {
name = "Azure-Front-Door-Frontend"
protocols = ["TCP"]
source_ip_groups = [azurerm_ip_group.ip_group_spoke.id]
destination_addresses = ["AzureFrontDoor.Frontend","AzureFrontDoor.FirstParty"]
destination_addresses = ["AzureFrontDoor.Frontend", "AzureFrontDoor.FirstParty"]
destination_ports = ["443"]
}

View File

@ -51,7 +51,7 @@ resource "azurerm_network_security_group" "bastion_nsg" {
access = "Allow"
protocol = "*"
source_port_range = "*"
destination_port_ranges = ["5701","8080"]
destination_port_ranges = ["5701", "8080"]
source_address_prefix = "VirtualNetwork"
destination_address_prefix = "VirtualNetwork"
}
@ -98,7 +98,7 @@ resource "azurerm_network_security_group" "bastion_nsg" {
destination_port_ranges = ["80"]
source_address_prefix = "*"
destination_address_prefix = "Internet"
}
}
}

View File

@ -1,5 +1,5 @@
terraform {
required_version = ">=0.15.0"
required_version = ">=1.0"
required_providers {
azurerm = {