Skip to content

Commit

Permalink
cwl
Browse files Browse the repository at this point in the history
  • Loading branch information
jblukach authored Dec 8, 2024
1 parent b739624 commit e0e5981
Showing 1 changed file with 5 additions and 19 deletions.
24 changes: 5 additions & 19 deletions caretaker/caretaker_verify.py
Original file line number Diff line number Diff line change
Expand Up @@ -126,23 +126,11 @@ def __init__(self, scope: Construct, construct_id: str, **kwargs) -> None:
zone_name = 'tundralabs.org'
)

### CLOUDFRONT LOGS ###

caretakercloudfrontlogs = _s3.Bucket(
self, 'caretakercloudfrontlogs',
bucket_name = 'caretakercloudfrontlogs',
encryption = _s3.BucketEncryption.S3_MANAGED,
object_ownership = _s3.ObjectOwnership.OBJECT_WRITER,
block_public_access = _s3.BlockPublicAccess.BLOCK_ALL,
removal_policy = RemovalPolicy.DESTROY,
auto_delete_objects = True,
enforce_ssl = True,
versioned = True
)

caretakercloudfrontlogs.add_lifecycle_rule(
expiration = Duration.days(400),
noncurrent_version_expiration = Duration.days(1)
cdnlogs = _logs.LogGroup(
self, 'cdnlogs',
log_group_name = '/aws/cloudfront/verifytundralabsorg',
retention = _logs.RetentionDays.THIRTEEN_MONTHS,
removal_policy = RemovalPolicy.DESTROY
)

### ACM CERTIFICATE ###
Expand Down Expand Up @@ -174,8 +162,6 @@ def __init__(self, scope: Construct, construct_id: str, **kwargs) -> None:
)
],
certificate = acm,
log_bucket = caretakercloudfrontlogs,
log_includes_cookies = True,
minimum_protocol_version = _cloudfront.SecurityPolicyProtocol.TLS_V1_2_2021,
price_class = _cloudfront.PriceClass.PRICE_CLASS_100,
http_version = _cloudfront.HttpVersion.HTTP2_AND_3,
Expand Down

0 comments on commit e0e5981

Please sign in to comment.