-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathmain.go
100 lines (82 loc) · 2.21 KB
/
main.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
package main
import (
"os"
"strings"
"github.com/aws/aws-lambda-go/lambda"
"github.com/aws/aws-sdk-go/aws"
"github.com/aws/aws-sdk-go/aws/session"
"github.com/aws/aws-sdk-go/service/ec2"
"github.com/aws/aws-sdk-go/service/secretsmanager"
log "github.com/sirupsen/logrus"
"github.com/ReasonSoftware/security-group-manager/internal/app"
)
// Cli is an authorized EC2 Client
var Cli *ec2.EC2
// SCli is an authorized Secrets Run Client
var SCli *secretsmanager.SecretsManager
// Config contains parsed configuration
var Config *app.Config
// Secret contains a name of an aws secret containing a runtime config
var Secret string
func init() {
// define logger
log.SetReportCaller(false)
log.SetFormatter(&log.TextFormatter{
ForceColors: false,
FullTimestamp: true,
DisableLevelTruncation: true,
DisableTimestamp: true,
})
log.SetOutput(os.Stdout)
if strings.ToLower(os.Getenv("DEBUG")) == "true" {
log.SetLevel(log.DebugLevel)
log.Warn("starting in debug mode")
} else {
log.SetLevel(log.InfoLevel)
}
// validate input
ec2Region := "us-east-1"
smRegion := "us-east-1"
if os.Getenv("OPERATIONAL_REGION") != "" {
ec2Region = os.Getenv("OPERATIONAL_REGION")
} else {
log.Warn("env.var 'OPERATIONAL_REGION' is not set, assuming 'us-east-1'")
}
if os.Getenv("SECRET_REGION") != "" {
smRegion = os.Getenv("SECRET_REGION")
} else {
log.Warn("env.var 'SECRET_REGION' is not set, assuming 'us-east-1'")
}
if os.Getenv("SECRET") == "" {
log.Fatal("missing aws secret name with configuration")
}
Secret = os.Getenv("SECRET")
// define clients
Cli = ec2.New(session.Must(session.NewSession(&aws.Config{
Region: &ec2Region,
})))
SCli = secretsmanager.New(session.Must(session.NewSession(&aws.Config{
Region: &smRegion,
})))
// get initial config
log.Debug("fetching configuration")
var err error
Config, err = app.GetConfig(SCli, Secret)
if err != nil {
log.Fatal(err)
}
}
func handler() {
log.Infof("security-group-manager v%v", app.Version)
if err := Config.Run(Cli); err != nil {
log.Fatal(err)
}
log.Info("security-group-manager finished")
}
func main() {
if strings.ToLower(os.Getenv("LOCAL")) == "true" {
handler()
} else {
lambda.Start(handler)
}
}