From 622732dae8431b9226babbf5a725484219fc0fbd Mon Sep 17 00:00:00 2001 From: Grant Freeman Date: Wed, 11 Dec 2024 10:29:55 -0800 Subject: [PATCH 1/3] bump dpc rate limit --- terraform/services/api-waf/main.tf | 1 + 1 file changed, 1 insertion(+) diff --git a/terraform/services/api-waf/main.tf b/terraform/services/api-waf/main.tf index b8f5b073..b3063255 100644 --- a/terraform/services/api-waf/main.tf +++ b/terraform/services/api-waf/main.tf @@ -52,6 +52,7 @@ module "aws_waf" { content_type = "APPLICATION_JSON" associated_resource_arn = data.aws_lb.api.arn + rate_limit = var.app == "dpc" ? 3000 : 300 ip_sets = var.env == "sbx" ? [] : [ one(data.aws_wafv2_ip_set.external_services).arn, one(aws_wafv2_ip_set.api_customers).arn, From a57fd68067485a38805d4e405a94d730fd82abe3 Mon Sep 17 00:00:00 2001 From: Grant Freeman Date: Wed, 11 Dec 2024 10:32:39 -0800 Subject: [PATCH 2/3] format --- terraform/services/api-waf/main.tf | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/terraform/services/api-waf/main.tf b/terraform/services/api-waf/main.tf index b3063255..afdeb564 100644 --- a/terraform/services/api-waf/main.tf +++ b/terraform/services/api-waf/main.tf @@ -52,7 +52,7 @@ module "aws_waf" { content_type = "APPLICATION_JSON" associated_resource_arn = data.aws_lb.api.arn - rate_limit = var.app == "dpc" ? 3000 : 300 + rate_limit = var.app == "dpc" ? 3000 : 300 ip_sets = var.env == "sbx" ? [] : [ one(data.aws_wafv2_ip_set.external_services).arn, one(aws_wafv2_ip_set.api_customers).arn, From 0b8eb66f7bdeb39eedb119db6e4f0c51b1430bf7 Mon Sep 17 00:00:00 2001 From: Grant Freeman Date: Wed, 11 Dec 2024 12:04:12 -0800 Subject: [PATCH 3/3] switch dpc and bcda --- terraform/modules/firewall/variables.tf | 2 +- terraform/services/api-waf/main.tf | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/terraform/modules/firewall/variables.tf b/terraform/modules/firewall/variables.tf index 9459ed2f..34b37f6f 100644 --- a/terraform/modules/firewall/variables.tf +++ b/terraform/modules/firewall/variables.tf @@ -48,7 +48,7 @@ variable "content_type" { variable "rate_limit" { description = "IP rate limit for every 5 minutes" type = number - default = 300 + default = 3000 } variable "ip_sets" { diff --git a/terraform/services/api-waf/main.tf b/terraform/services/api-waf/main.tf index afdeb564..985d9f23 100644 --- a/terraform/services/api-waf/main.tf +++ b/terraform/services/api-waf/main.tf @@ -52,7 +52,7 @@ module "aws_waf" { content_type = "APPLICATION_JSON" associated_resource_arn = data.aws_lb.api.arn - rate_limit = var.app == "dpc" ? 3000 : 300 + rate_limit = var.app == "bcda" ? 300 : 3000 ip_sets = var.env == "sbx" ? [] : [ one(data.aws_wafv2_ip_set.external_services).arn, one(aws_wafv2_ip_set.api_customers).arn,