|
| 1 | +#------------------------------------------------------------------------------ |
| 2 | +# Packer plugin |
| 3 | +#------------------------------------------------------------------------------ |
| 4 | +packer { |
| 5 | + required_plugins { |
| 6 | + amazon = { |
| 7 | + source = "github.com/hashicorp/amazon" |
| 8 | + version = "v1.3.4" |
| 9 | + } |
| 10 | + } |
| 11 | +} |
| 12 | + |
| 13 | +#------------------------------------------------------------------------------ |
| 14 | +# Variables |
| 15 | +#------------------------------------------------------------------------------ |
| 16 | +variable "ami_name_prefix" { |
| 17 | + type = string |
| 18 | + default = "amazon-eks-node" |
| 19 | +} |
| 20 | + |
| 21 | +variable "aws_tag_unit" { |
| 22 | + type = string |
| 23 | + default = "devops" |
| 24 | +} |
| 25 | + |
| 26 | +variable "aws_tag_environment" { |
| 27 | + type = string |
| 28 | + default = "dev" |
| 29 | +} |
| 30 | + |
| 31 | +variable "aws_tag_owner" { |
| 32 | + type = string |
| 33 | + default = "devopslite" |
| 34 | +} |
| 35 | + |
| 36 | +variable "aws_tag_project" { |
| 37 | + type = string |
| 38 | + default = "devopslite" |
| 39 | +} |
| 40 | + |
| 41 | +variable "region" { |
| 42 | + type = string |
| 43 | + default = "us-east-1" |
| 44 | +} |
| 45 | + |
| 46 | +variable "vpc_id" { |
| 47 | + type = string |
| 48 | + default = "vpc-09eaa132bddb868ba" |
| 49 | +} |
| 50 | + |
| 51 | +variable "public_subnet_id" { |
| 52 | + type = string |
| 53 | + default = "subnet-09eafbc8bd301fc34" |
| 54 | +} |
| 55 | + |
| 56 | +variable "communicator" { |
| 57 | + description = "communication method used for instance" |
| 58 | + default = "ssh" |
| 59 | +} |
| 60 | + |
| 61 | +variable "ssh_username" { |
| 62 | + description = "ssh username for packer to use for provisioning" |
| 63 | + default = "ec2-user" |
| 64 | +} |
| 65 | + |
| 66 | +locals { |
| 67 | + timestamp = timestamp() |
| 68 | + date_part = formatdate("YYYYMMDD", local.timestamp) |
| 69 | + time_part = formatdate("HHmmss", local.timestamp) |
| 70 | + ami_name = "${var.ami_name_prefix}-${local.date_part}-${local.time_part}" |
| 71 | +} |
| 72 | + |
| 73 | +#------------------------------------------------------------------------------ |
| 74 | +# Sources |
| 75 | +#------------------------------------------------------------------------------ |
| 76 | +source "amazon-ebs" "eks_node" { |
| 77 | + ami_description = "A node AMI used in EKS with Wazuh agent, based on Amazon Linux 2023." |
| 78 | + ami_name = local.ami_name |
| 79 | + instance_type = "t3a.small" |
| 80 | + region = var.region |
| 81 | + vpc_id = var.vpc_id |
| 82 | + subnet_id = var.public_subnet_id |
| 83 | + associate_public_ip_address = true |
| 84 | + |
| 85 | + source_ami_filter { |
| 86 | + filters = { |
| 87 | + architecture = "x86_64" |
| 88 | + name = "amazon-eks-node-al2023-x86_64-standard-1.31-*" |
| 89 | + "root-device-type" = "ebs" |
| 90 | + "virtualization-type" = "hvm" |
| 91 | + } |
| 92 | + |
| 93 | + most_recent = true |
| 94 | + owners = ["602401143452"] |
| 95 | + } |
| 96 | + |
| 97 | + run_tags = { |
| 98 | + Name = local.ami_name |
| 99 | + Environment = var.aws_tag_environment |
| 100 | + Owners = var.aws_tag_owner |
| 101 | + Project = var.aws_tag_project |
| 102 | + } |
| 103 | + |
| 104 | + run_volume_tags = { |
| 105 | + Name = local.ami_name |
| 106 | + Environment = var.aws_tag_environment |
| 107 | + Owners = var.aws_tag_owner |
| 108 | + Project = var.aws_tag_project |
| 109 | + } |
| 110 | + |
| 111 | + tags = { |
| 112 | + Name = local.ami_name |
| 113 | + Environment = var.aws_tag_environment |
| 114 | + Owners = var.aws_tag_owner |
| 115 | + Project = var.aws_tag_project |
| 116 | + } |
| 117 | + |
| 118 | + snapshot_tags = { |
| 119 | + Name = local.ami_name |
| 120 | + Environment = var.aws_tag_environment |
| 121 | + Owners = var.aws_tag_owner |
| 122 | + Project = var.aws_tag_project |
| 123 | + } |
| 124 | + |
| 125 | + communicator = var.communicator |
| 126 | + ssh_username = var.ssh_username |
| 127 | +} |
| 128 | + |
| 129 | +#------------------------------------------------------------------------------ |
| 130 | +# Build AMI |
| 131 | +#------------------------------------------------------------------------------ |
| 132 | +build { |
| 133 | + sources = ["source.amazon-ebs.eks_node"] |
| 134 | + |
| 135 | + provisioner "shell" { |
| 136 | + inline = [ |
| 137 | + "sudo dnf upgrade -y", |
| 138 | + "sudo rpm --import https://packages.wazuh.com/key/GPG-KEY-WAZUH", |
| 139 | + "sudo bash -c 'cat > /etc/yum.repos.d/wazuh.repo << EOF\n[wazuh]\ngpgcheck=1\ngpgkey=https://packages.wazuh.com/key/GPG-KEY-WAZUH\nenabled=1\nname=EL-\\$releasever - Wazuh\nbaseurl=https://packages.wazuh.com/4.x/yum/\nprotect=1\nEOF'", |
| 140 | + "sudo dnf install -y wazuh-agent", |
| 141 | + "sudo sed -i 's/<address>MANAGER_IP<\\/address>/<address>siem.devopslite.com<\\/address>/g' /var/ossec/etc/ossec.conf", |
| 142 | + "sudo systemctl daemon-reload", |
| 143 | + "sudo systemctl enable wazuh-agent", |
| 144 | + "echo 'Completed install wazuh-agent' > /tmp/wazuh-agent-install.log", |
| 145 | + "cat /tmp/wazuh-agent-install.log", |
| 146 | + "sudo sed -i \"s/^enabled=1/enabled=0/\" /etc/yum.repos.d/wazuh.repo", |
| 147 | + ] |
| 148 | + } |
| 149 | +} |
0 commit comments