forked from mbj/stratosphere
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathsimple-lambda.hs
91 lines (75 loc) · 1.94 KB
/
simple-lambda.hs
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
{-# LANGUAGE OverloadedLists #-}
{-# LANGUAGE OverloadedStrings #-}
module Main where
import Control.Lens
import Data.Aeson (Value (Array), object)
import qualified Data.ByteString.Lazy.Char8 as B
import Data.Text (Text)
import Stratosphere
main :: IO ()
main = B.putStrLn $ encodeTemplate myTemplate
myTemplate :: Template
myTemplate =
template
[ role', lambda ]
& templateDescription ?~ "Lambda example"
& templateFormatVersion ?~ "2010-09-09"
lambda :: Resource
lambda = (
resource "LambdaFunction" $
lambdaFunction
lambdaCode
"index.handler"
(GetAtt "IAMRole" "Arn")
(Literal NodeJS12x)
)
& resourceDependsOn ?~ [ role' ^. resourceName ]
lambdaCode :: LambdaFunctionCode
lambdaCode = lambdaFunctionCode
& lfcZipFile ?~ code
code :: Val Text
code = "\
\ exports.handler = function(event, context, callback) { \
\ console.log(\"value1 = \" + event.key1); \
\ console.log(\"value2 = \" + event.key2); \
\ callback(null, \"some success message\"); \
\ } \
\ "
role' :: Resource
role' =
resource "IAMRole" $
iamRole
rolePolicyDocumentObject
& iamrPolicies ?~ [ executePolicy ]
& iamrRoleName ?~ "MyLambdaBasicExecutionRole"
& iamrPath ?~ "/"
where
executePolicy =
iamRolePolicy
[ ("Version", "2012-10-17")
, ("Statement", statement)
]
"MyLambdaExecutionPolicy"
where
statement = object
[ ("Effect", "Allow")
, ("Action", actions)
, ("Resource", "*")
]
actions = Array
[ "logs:CreateLogGroup"
, "logs:CreateLogStream"
, "logs:PutLogEvents"
]
rolePolicyDocumentObject =
[ ("Version", "2012-10-17")
, ("Statement", statement)
]
where
statement = object
[ ("Effect", "Allow")
, ("Principal", principal)
, ("Action", "sts:AssumeRole")
]
principal = object
[ ("Service", "lambda.amazonaws.com") ]