33 allow_us_comms = ! local. is_production
44}
55
6- resource "aws_cloudfront_origin_access_control" "cloudfront_s3_oac " {
6+ resource "aws_cloudfront_origin_access_control" "s3 " {
77 name = " ${ terraform . workspace } _cloudfront_s3_oac_policy"
88 description = " Cloud Front S3 OAC"
99 origin_access_control_origin_type = " s3"
@@ -21,13 +21,13 @@ module "cloudfront_firewall_waf_v2" {
2121 providers = { aws = aws.us_east_1 }
2222}
2323
24- resource "aws_cloudfront_distribution" "distribution " {
24+ resource "aws_cloudfront_distribution" "s3_presign_mask " {
2525 price_class = " PriceClass_100"
2626
2727 origin {
2828 domain_name = module. ndr-lloyd-george-store . bucket_regional_domain_name
2929 origin_id = module. ndr-lloyd-george-store . bucket_id
30- origin_access_control_id = aws_cloudfront_origin_access_control. cloudfront_s3_oac . id
30+ origin_access_control_id = aws_cloudfront_origin_access_control. s3 . id
3131 }
3232 enabled = true
3333 is_ipv6_enabled = true
@@ -38,7 +38,7 @@ resource "aws_cloudfront_distribution" "distribution" {
3838 target_origin_id = module. ndr-lloyd-george-store . bucket_id
3939 viewer_protocol_policy = " redirect-to-https"
4040 cache_policy_id = aws_cloudfront_cache_policy. nocache . id
41- origin_request_policy_id = aws_cloudfront_origin_request_policy. viewer_policy . id
41+ origin_request_policy_id = aws_cloudfront_origin_request_policy. viewer . id
4242
4343 lambda_function_association {
4444 event_type = " origin-request"
@@ -49,7 +49,7 @@ resource "aws_cloudfront_distribution" "distribution" {
4949 origin {
5050 domain_name = module. ndr-document-pending-review-store . bucket_regional_domain_name
5151 origin_id = module. ndr-document-pending-review-store . bucket_id
52- origin_access_control_id = aws_cloudfront_origin_access_control. cloudfront_s3_oac . id
52+ origin_access_control_id = aws_cloudfront_origin_access_control. s3 . id
5353 }
5454
5555 ordered_cache_behavior {
@@ -59,7 +59,7 @@ resource "aws_cloudfront_distribution" "distribution" {
5959 target_origin_id = module. ndr-document-pending-review-store . bucket_id
6060 viewer_protocol_policy = " redirect-to-https"
6161 cache_policy_id = aws_cloudfront_cache_policy. nocache . id
62- origin_request_policy_id = aws_cloudfront_origin_request_policy. viewer_policy . id
62+ origin_request_policy_id = aws_cloudfront_origin_request_policy. viewer . id
6363
6464 lambda_function_association {
6565 event_type = " origin-request"
@@ -70,7 +70,7 @@ resource "aws_cloudfront_distribution" "distribution" {
7070 origin {
7171 domain_name = module. ndr-bulk-staging-store . bucket_regional_domain_name
7272 origin_id = module. ndr-bulk-staging-store . bucket_id
73- origin_access_control_id = aws_cloudfront_origin_access_control. cloudfront_s3_oac . id
73+ origin_access_control_id = aws_cloudfront_origin_access_control. s3 . id
7474 }
7575
7676 ordered_cache_behavior {
@@ -80,7 +80,7 @@ resource "aws_cloudfront_distribution" "distribution" {
8080 target_origin_id = module. ndr-bulk-staging-store . bucket_id
8181 viewer_protocol_policy = " redirect-to-https"
8282 cache_policy_id = aws_cloudfront_cache_policy. nocache . id
83- origin_request_policy_id = aws_cloudfront_origin_request_policy. viewer_policy . id
83+ origin_request_policy_id = aws_cloudfront_origin_request_policy. viewer . id
8484
8585 lambda_function_association {
8686 event_type = " origin-request"
@@ -102,7 +102,7 @@ resource "aws_cloudfront_distribution" "distribution" {
102102 web_acl_id = try (module. cloudfront_firewall_waf_v2 [0 ]. arn , " " )
103103}
104104
105- resource "aws_cloudfront_origin_request_policy" "viewer_policy " {
105+ resource "aws_cloudfront_origin_request_policy" "viewer " {
106106 name = " ${ terraform . workspace } _BlockQueriesAndAllowViewer"
107107
108108 query_strings_config {
0 commit comments