diff --git a/eks-vpc/inspector.tf b/eks-vpc/inspector.tf deleted file mode 100644 index b1bc1fa..0000000 --- a/eks-vpc/inspector.tf +++ /dev/null @@ -1,31 +0,0 @@ -resource "aws_inspector_resource_group" "environment" { - # The tags are OR'd, so search for the bastion name or the ASG group name - tags = merge({ - "aws:autoscaling:groupName" = local.eks_worker_asg_name - }, var.use_bastion ? { "Name" = local.bastion_name } : {}) -} - -module "luthername_inspector_environment" { - source = "../luthername" - luther_project = var.luther_project - aws_region = var.aws_region - luther_env = var.luther_env - org_name = var.org_name - component = "security" - resource = "inspector" -} - -resource "aws_inspector_assessment_target" "environment" { - name = module.luthername_inspector_environment.name - resource_group_arn = aws_inspector_resource_group.environment.arn -} - -data "aws_inspector_rules_packages" "rules" {} - -resource "aws_inspector_assessment_template" "environment" { - name = module.luthername_inspector_environment.name - target_arn = aws_inspector_assessment_target.environment.arn - duration = 3600 - - rules_package_arns = length(var.inspector_rules_package_arns) > 0 ? var.inspector_rules_package_arns : data.aws_inspector_rules_packages.rules.arns -} diff --git a/eks-vpc/vars.tf b/eks-vpc/vars.tf index b7357f7..38ea413 100644 --- a/eks-vpc/vars.tf +++ b/eks-vpc/vars.tf @@ -121,11 +121,6 @@ variable "worker_asg_target_group_arns" { default = [] } -variable "inspector_rules_package_arns" { - type = list(string) - default = [] -} - variable "public_api" { type = bool default = false