Python package to automatically build the AWS Control Tower Manifest given Cloud Formation templates as input.
Project description
AWS Control Tower Manifest Builder
Python package to automatically build the AWS Control Tower Manifest given Cloud Formation templates and SCPs as input.
Free software: MIT license
Documentation: https://aws-control-tower-manifest-builder.readthedocs.io.
Features
Reads Cloud Formation templates and Service Control Policies from specified directories and produces the AWS Control Tower manifest.yaml file.
Quick start
Run pip install aws-control-tower-manifest-builder
Download sample template and SCPs from S3 “Add link”. Extract to directory
- Run aws_control_tower_manifest_builder --input-cf sample_templates --input-scp sample_scp --output output_manifest
Note: the sample template includes incorrecly formatted templates.
For Developers - before pushing a branch (to be replace by tox)
Clone the repo
make venv
make black
make lint
make test
make local-test
Cloud Formation templates require a metadata section with the following info:
Metadata:
manifest_parameters:
name: detailed_template # Optional. Defaults to the file name. a-z, A-Z, 0-9, and an underscore (_).
deploy_method: stackset # Optional. All file in the template directory use "stackset" and in policy directory use "scp".
accounts: ["123456789012", "987456123989"] # Requires "accounts" and/or "organizational_unit". [0-9]{12}
organizational_units: ["dev", "prod"] # Requires "accounts" and/or "organizational_unit".
regions: ["us-east-1" , "us-east-2"] # Optional. Defaults to us-east-1.
parameters: # Optional. List of parameters [SSM, Alfred, Values]
- parameter_key: parameter1
parameter_value: value1
- parameter_key: parameter2
parameter_value: value2
export_outputs: # Optional. list of ssm parameters to store output values
- name: /org/member/test-ssm/app-id
value: $[output_ApplicationId]
History
0.3.1 (2022-03-03)
First release on PyPI.
0.4.0 (2022-03-27)
Change to mantain order, comments and support exclamation marks in Cloudformation
0.4.1 (2022-03-27)
Fix for the default region option
0.5.0 (2022-03-29)
Add argument to set schema version
0.5.1 (2022-04-24)
Fix issue when leaving region blank not picking default value
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distributions
Hashes for aws_control_tower_manifest_builder-0.5.1.tar.gz
Algorithm | Hash digest | |
---|---|---|
SHA256 | 40c7b995943e605881a3317e1953cae78578cca0bbbed83d7544a23c1f8ed21b |
|
MD5 | 9f4ff6214f7ee4c1f3605943e7164706 |
|
BLAKE2b-256 | 13d4c56ed60e3ebfbcb5a6bcfdf17f22ddd54068d54932a24dfa17055acbc97a |
Hashes for aws_control_tower_manifest_builder-0.5.1-py3.8.egg
Algorithm | Hash digest | |
---|---|---|
SHA256 | 30e4eac0e71c2760585cff2b562c5707858279d2388149f215f3611220d6cb3f |
|
MD5 | 42751807f77453952eb957d6d40a05db |
|
BLAKE2b-256 | c26697b3f1449e6c55723a5c093e48600ae4e235e090aab0a053295b108183b8 |
Hashes for aws_control_tower_manifest_builder-0.5.1-py2.py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 9b5f2f4ab3c3bc0ae4284c2aead96abe42b99be1c9669d81059ad9f5f2195857 |
|
MD5 | 6a5fd248dbfd209207acc0b6043596c0 |
|
BLAKE2b-256 | 9529fb416faf1829e9aa7586735ab3ae08f95689a61ce537c95fd72ddba8811d |