Skip to content

Commit 7e4f8ef

Browse files
committed
chore: updating tagging standards and how to guide
1 parent 8173a77 commit 7e4f8ef

File tree

2 files changed

+13
-2
lines changed

2 files changed

+13
-2
lines changed

docs/technical-standards/How-to guides/tagging.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ provider "aws" {
1313
tags = {
1414
Application = "Developer Playbook"
1515
TeamEmail = "[email protected]"
16-
Environment = "production"
16+
Environment = "prod"
1717
}
1818
}
1919
}

docs/technical-standards/Reference/hosting-standards/tagging.md

Lines changed: 12 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,11 +14,22 @@ To ensure we can consistently search for, and report on, the tags we use, you sh
1414
- `TeamEmail`: The email address of the team responsible for the operation of the service. Must be a valid email group, not an individual.
1515
- `Environment`: The name of the environment, must be one of `dev`, `stg`, `prod` or `mgmt`[^environment-tags-source].
1616

17+
### Mandatory tags for data-holding resources
18+
19+
The following potentially data-holding resources must have the Confidentiality tag:
20+
- EC2 instance
21+
- EBS volume
22+
- RDS instance
23+
- RDS cluster
24+
- DynamoDB table
25+
You will not be able to deploy the above resources if they are not tagged with the Confidentiality tag.
26+
- `Confidentiality`: Data confidentiality of the infrastructure. Must be one of `Internal`, `Restricted`, or `Public`[^confidentiality-tags-source].
27+
1728
### Optional tags
1829

1930
- `AutomationBuildUrl`: URL of the automation build, must be a valid URL.
2031
- `BackupPolicy`: The backup policy to apply to the resource. If present must be one of `Dev`, `Stg`, `Preprod`, `Prod`, `Mgmt`.
21-
- `Confidentiality`: Data confidentiality of the infrastructure. Only applicable to infrastructure which holds data, e.g. EC2, RDS, EBS, DynamoDB, Glue, and S3. Must be one of `Internal`, `Restricted`, or `Public`[^confidentiality-tags-source].
32+
- `Confidentiality`: Data confidentiality of the infrastructure. Only mandatory for infrastructure which holds data, e.g. EC2, RDS, EBS, DynamoDB, Glue, and S3. Optional for all other infrastructure. Must be one of `Internal`, `Restricted`, or `Public`[^confidentiality-tags-source].
2233
- `Department`: The service area this system serves.
2334
- `WeekendShutdown`: If present, regardless of the value provided the resource will be shut down over the weekend.
2435
- `OutOfHoursShutdown`: If present, regardless of the value provided the resource will be shut down out of working hours.

0 commit comments

Comments
 (0)