-
Notifications
You must be signed in to change notification settings - Fork 0
/
serverless.yml
88 lines (78 loc) · 2.05 KB
/
serverless.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
service: passwordbreachcheck
frameworkVersion: '2'
provider:
name: aws
apiGateway:
shouldStartNameWithService: true
stage: dev
region: ca-central-1
environment:
DYNAMODB_TABLE: ${self:service}-${opt:stage, self:provider.stage}
S3_BUCKET: ${self:service}-${opt:stage, self:provider.stage}
iamRoleStatements:
- Effect: Allow
Action:
- dynamodb:Query
- dynamodb:Scan
- dynamodb:GetItem
- dynamodb:PutItem
- dynamodb:UpdateItem
- dynamodb:DeleteItem
- dynamodb:BatchWriteItem
Resource: "arn:aws:dynamodb:${opt:region, self:provider.region}:*:table/${self:provider.environment.DYNAMODB_TABLE}"
- Effect: Allow
Action:
- s3:*
Resource: "arn:aws:s3:::${self:service}-${opt:stage, self:provider.stage}/*"
functions:
checkhash:
runtime: nodejs12.x
handler: checkhash.checkhash
events:
- http:
path: checkhash/{hash}
method: get
cors: true
html:
runtime: nodejs12.x
handler: static.html
events:
- http:
path: /
method: get
importpassword:
runtime: python3.7
timeout: 900
handler: ImportPassword.CSVtoDynamoDB
events:
- s3:
bucket: ${self:service}-${opt:stage, self:provider.stage}
event: s3:ObjectCreated:*
rules:
- suffix: .csv
resources:
Resources:
PasswordBreachCheckTable:
Type: 'AWS::DynamoDB::Table'
DeletionPolicy: Retain
Properties:
AttributeDefinitions:
-
AttributeName: passwordhash
AttributeType: S
KeySchema:
-
AttributeName: passwordhash
KeyType: HASH
BillingMode: PAY_PER_REQUEST
TableName: ${self:provider.environment.DYNAMODB_TABLE}
plugins:
- serverless-dynamodb-fixtures
- serverless-aws-static-file-handler
custom:
fixtures:
rules:
- table: ${self:provider.environment.DYNAMODB_TABLE}
enable: true
sources:
- ./sampledata.json