terraform-contour-mirror/infrastructure.yaml

1796 lines
56 KiB
YAML

environments:
prod:
kafka_cluster_refs:
prod:
cluster_id: c9qks74g084g1419cpts
host: rc1d-s0a1ujcbj6fdk26b.mdb.yandexcloud.net
port: 9091
sasl_mechanism: SCRAM-SHA-512
security_protocol: SASL_SSL
default_partitions: 3
default_replication_factor: 1
max_replication_factor: 1
default_topic_config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "2"
kafka_policy:
allow_create: true
allow_delete: false
allow_partition_increase: true
allow_partition_decrease: false
kafka:
topics:
- name: sarex.prod.kafka-topics-test.events.v1
owner: kafka-topics-test
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: eav.attribute.created.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: eav.attribute.updated.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: eav.attribute.deleted.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: eav.value_option.created.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: eav.value_option.deleted.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.inspection.created.v1
owner: inspections
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.inspection.updated.v1
owner: inspections
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.inspection.deleted.v1
owner: inspections
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.type.created.v1
owner: inspections
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.type.updated.v1
owner: inspections
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.type.deleted.v1
owner: inspections
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.status.created.v1
owner: inspections
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.status.updated.v1
owner: inspections
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: inspections.status.deleted.v1
owner: inspections
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.issue.created.v1
owner: issues
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.issue.updated.v1
owner: issues
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.issue.deleted.v1
owner: issues
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.type.created.v1
owner: issues
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.type.updated.v1
owner: issues
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.type.deleted.v1
owner: issues
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.status.created.v1
owner: issues
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.status.updated.v1
owner: issues
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: issues.status.deleted.v1
owner: issues
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: premises.type.created.v1
owner: premises
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: premises.type.updated.v1
owner: premises
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: premises.type.deleted.v1
owner: premises
clusterRef: prod
partitions: 1
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: premises.premise.created.v1
owner: premises
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: premises.premise.updated.v1
owner: premises
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: premises.premise.deleted.v1
owner: premises
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.user.created.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.user.updated.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.position.created.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.position.updated.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.position.deleted.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.department.created.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.department.updated.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.department.deleted.v1
owner: platform
clusterRef: prod
partitions: 3
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.resource.created.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.resource.updated.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.resource.deleted.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.resource_permission.created.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.resource_permission.deleted.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.company_resource_permission.created.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: iam.company_resource_permission.deleted.v1
owner: platform
clusterRef: prod
partitions: 12
replicationFactor: 1
config:
cleanup.policy: delete
retention.ms: "604800000"
min.insync.replicas: "1"
deletionPolicy: orphan
ownerRoles: []
- name: ams-sync
owner: iam
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config:
cleanup.policy: delete
compression.type: COMPRESSION_TYPE_GZIP
deletionPolicy: orphan
- name: assets_broadcast
owner: message-hub-user
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: assets_broadcast_preprod
owner: srx-broadcast
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: bru.cde.folders.prod
owner: system_log_user
ownerRoles: []
clusterRef: prod
partitions: 3
replicationFactor: 1
inheritDefaultConfig: false
config:
min.insync.replicas: '1'
deletionPolicy: orphan
- name: bru.cde.folders.stage
owner: system_log_user
ownerRoles: []
clusterRef: prod
partitions: 3
replicationFactor: 1
inheritDefaultConfig: false
config:
min.insync.replicas: '1'
deletionPolicy: orphan
- name: company_resource_permissions
owner: iam
ownerRoles: []
clusterRef: prod
partitions: 6
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: issues_broadcast_prod
owner: issues
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: message-hub-prod
owner: message-hub-user
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: premises
owner: premises
ownerRoles: []
clusterRef: prod
partitions: 6
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: resource_permissions
owner: iam
ownerRoles: []
clusterRef: prod
partitions: 3
replicationFactor: 1
inheritDefaultConfig: false
config:
cleanup.policy: delete
deletionPolicy: orphan
- name: resources
owner: iam
ownerRoles: []
clusterRef: prod
partitions: 1
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
- name: sarex.prod.blackbox-exporter.probes.v1
owner: platform
ownerRoles: []
clusterRef: prod
partitions: 3
replicationFactor: 1
inheritDefaultConfig: false
config:
cleanup.policy: delete
min.insync.replicas: '1'
retention.ms: '604800000'
deletionPolicy: orphan
- name: system-log-prod
owner: sarex-backend-prod
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config:
min.insync.replicas: '1'
deletionPolicy: orphan
- name: system-log-sarex-backend-prod
owner: platform
ownerRoles: []
clusterRef: prod
partitions: 12
replicationFactor: 1
inheritDefaultConfig: false
config: {}
deletionPolicy: orphan
users:
- name: iam
clusterRef: prod
permissions:
- topic: ams-sync
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: company_resource_permissions
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.company_resource_permission.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.company_resource_permission.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.department.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.department.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.department.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.position.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.position.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.position.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource_permission.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource_permission.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.user.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.user.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: resource_permissions
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: resources
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: inspections
clusterRef: prod
permissions:
- topic: assets_broadcast
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.inspection.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.inspection.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.inspection.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.status.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.status.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.status.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.type.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.type.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: inspections.type.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: issues
clusterRef: prod
permissions:
- topic: assets_broadcast
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.issue.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.issue.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.issue.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.status.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.status.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.status.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.type.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.type.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues.type.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues_broadcast_prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues_broadcast_test
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: kafka-topics-test
clusterRef: prod
permissions:
- topic: sarex.prod.kafka-topics-test.events.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: message-hub-user
clusterRef: prod
permissions:
- topic: assets_broadcast
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues_broadcast_prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: message-hub-prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: platform
clusterRef: prod
permissions:
- topic: ams-sync
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER, ACCESS_ROLE_TOPIC_ADMIN]
- topic: iam.company_resource_permission.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.company_resource_permission.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.department.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.department.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.department.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.position.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.position.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.position.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource_permission.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.resource_permission.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.user.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: iam.user.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: pm
clusterRef: prod
permissions:
- topic: assets_broadcast
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: message-hub-prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: premises
clusterRef: prod
adoptExisting: true
permissions:
- topic: assets_broadcast
roles: [ACCESS_ROLE_CONSUMER]
- topic: eav.attribute.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: eav.attribute.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: eav.attribute.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: eav.value_option.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: eav.value_option.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.department.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.department.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.department.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.position.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.position.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.position.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.resource.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.resource.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.resource.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.user.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: iam.user.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.inspection.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.inspection.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.inspection.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.status.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.status.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.status.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.type.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.type.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: inspections.type.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.issue.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.issue.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.issue.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.status.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.status.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.status.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.type.created.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.type.deleted.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: issues.type.updated.v1
roles: [ACCESS_ROLE_CONSUMER]
- topic: premises
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: premises.premise.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: premises.premise.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: premises.premise.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: premises.type.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: premises.type.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: premises.type.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: sarex-backend-prod
clusterRef: prod
permissions:
- topic: ams-sync
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: message-hub-prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: system-log-prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: srx-broadcast
clusterRef: prod
adoptExisting: true
permissions:
- topic: assets_broadcast
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: assets_broadcast_preprod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: eav.attribute.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: eav.attribute.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: eav.attribute.updated.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: eav.value_option.created.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: eav.value_option.deleted.v1
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: issues_broadcast_prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- name: system_log_user
clusterRef: prod
permissions:
- topic: bru.cde.folders.prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: bru.cde.folders.stage
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
- topic: system-log-prod
roles: [ACCESS_ROLE_PRODUCER, ACCESS_ROLE_CONSUMER]
rabbitmq:
management_endpoint: http://default-rabbit-cluster.rabbitmq.svc.cluster.local:15672
amqp_host: default-rabbit-cluster.rabbitmq.svc.cluster.local
amqp_port: 5672
policy:
allow_create: true
allow_delete: false
vhosts:
- name: /
description: Default virtual host
- name: b6V7WU8PZpVe5rUt
description: sarex--vhost
- name: bim-prod
- name: bim-prod-gazpromcps
- name: camunda_prod
- name: comparator-prod
- name: data_engine_prod
- name: django
- name: egts-receiver-vhost
- name: events_prod
- name: flow_prod
- name: iac-smoke-prod
- name: issues_prod
- name: marking_prod
- name: pdf_processing
- name: pm
- name: pm_prod
- name: remarks-prod
- name: rfi_prod
- name: sarex-backend
- name: tracking-prod
- name: tracking-receiver-prod
- name: transmitalls_prod_host
- name: workflows
- name: workflows_prod
users:
- name: bim-api-prod
adoptExisting: true
password_special: true
- name: bim-api-prod-gazpromcps
adoptExisting: true
password_special: true
- name: camunda
adoptExisting: true
password_special: true
tags:
- administrator
- name: comparator-prod
adoptExisting: true
password_special: true
tags:
- administrator
- name: data_engine
adoptExisting: true
password_special: true
- name: documentation_go
adoptExisting: true
password_special: true
- name: documentation_python
adoptExisting: true
password_special: true
- name: dwg
adoptExisting: true
password_special: true
- name: flow_prod
adoptExisting: true
password_special: true
- name: iac-smoke-prod
- name: issues
adoptExisting: true
password_length: 20
password_special: true
- name: pm
adoptExisting: true
password_special: true
- name: remarks-api-prod
adoptExisting: true
password_special: true
- name: rfi
adoptExisting: true
password_special: true
- name: sarex
adoptExisting: true
password_special: true
- name: tracking-prod
adoptExisting: true
password_special: true
- name: transmitalls_prod
adoptExisting: true
password_special: true
unmanaged_output_users:
- dwf
- marking
unmanaged_output_permissions:
- vhost: marking_prod
user: marking
permissions:
- vhost: bim-prod
user: bim-api-prod
configure: .*
write: .*
read: .*
- vhost: bim-prod-gazpromcps
user: bim-api-prod
configure: .*
write: .*
read: .*
- vhost: bim-prod-gazpromcps
user: bim-api-prod-gazpromcps
configure: .*
write: .*
read: .*
- vhost: camunda_prod
user: camunda
configure: .*
write: .*
read: .*
- vhost: comparator-prod
user: comparator-prod
configure: .*
write: .*
read: .*
- vhost: data_engine_prod
user: data_engine
configure: .*
write: .*
read: .*
- vhost: django
user: sarex
configure: .*
write: .*
read: .*
- vhost: flow_prod
user: flow_prod
configure: .*
write: .*
read: .*
- vhost: iac-smoke-prod
user: iac-smoke-prod
configure: ^iac\.smoke\..*
write: ^iac\.smoke\..*
read: ^iac\.smoke\..*
- vhost: issues_prod
user: issues
configure: .*
write: .*
read: .*
- vhost: pdf_processing
user: documentation_go
configure: .*
write: .*
read: .*
- vhost: pdf_processing
user: documentation_python
configure: .*
write: .*
read: .*
- vhost: pm_prod
user: pm
configure: .*
write: .*
read: .*
- vhost: remarks-prod
user: remarks-api-prod
configure: .*
write: .*
read: .*
- vhost: rfi_prod
user: rfi
configure: .*
write: .*
read: .*
- vhost: tracking-prod
user: tracking-prod
configure: .*
write: .*
read: .*
- vhost: transmitalls_prod_host
user: transmitalls_prod
configure: .*
write: .*
read: .*
- vhost: workflows
user: dwg
configure: .*
write: .*
read: .*
exchanges:
- vhost: /
name: events-prod
type: fanout
durable: true
auto_delete: false
arguments:
x-max-age: 7D
- vhost: b6V7WU8PZpVe5rUt
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: b6V7WU8PZpVe5rUt
name: default
type: direct
durable: true
auto_delete: false
- vhost: b6V7WU8PZpVe5rUt
name: documents
type: direct
durable: true
auto_delete: false
- vhost: b6V7WU8PZpVe5rUt
name: high-resources
type: direct
durable: true
auto_delete: false
- vhost: b6V7WU8PZpVe5rUt
name: hight-resouces
type: direct
durable: true
auto_delete: false
- vhost: bim-prod
name: celery
type: direct
durable: true
auto_delete: false
- vhost: bim-prod
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: bim-prod-gazpromcps
name: celery
type: direct
durable: true
auto_delete: false
- vhost: bim-prod-gazpromcps
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: camunda_prod
name: hash.compute
type: direct
durable: true
auto_delete: false
- vhost: comparator-prod
name: comparator_exchange
type: direct
durable: true
auto_delete: false
- vhost: django
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: django
name: default
type: direct
durable: true
auto_delete: false
- vhost: django
name: pm
type: direct
durable: true
auto_delete: false
- vhost: flow_prod
name: celery
type: direct
durable: true
auto_delete: false
- vhost: flow_prod
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: flow_prod
name: flow
type: direct
durable: true
auto_delete: false
- vhost: iac-smoke-prod
name: iac.smoke.events
type: topic
durable: true
auto_delete: false
- vhost: issues_prod
name: celery
type: direct
durable: true
auto_delete: false
- vhost: issues_prod
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: pdf_processing
name: bim_360_input
type: fanout
durable: true
auto_delete: false
- vhost: pm_prod
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: pm_prod
name: pm
type: direct
durable: true
auto_delete: false
- vhost: remarks-prod
name: remark_mail_exchange
type: direct
durable: true
auto_delete: false
- vhost: rfi_prod
name: celery
type: direct
durable: true
auto_delete: false
- vhost: rfi_prod
name: celeryev
type: topic
durable: true
auto_delete: false
- vhost: transmitalls_prod_host
name: taskiq
type: topic
durable: false
auto_delete: false
- vhost: workflows
name: input_tasks
type: direct
durable: true
auto_delete: false
- vhost: workflows
name: output_tasks
type: direct
durable: true
auto_delete: false
- vhost: workflows
name: pdf_data_input
type: fanout
durable: true
auto_delete: false
queues:
- vhost: b6V7WU8PZpVe5rUt
name: default
durable: true
auto_delete: false
- vhost: b6V7WU8PZpVe5rUt
name: documents
durable: true
auto_delete: false
- vhost: b6V7WU8PZpVe5rUt
name: high-resources
durable: true
auto_delete: false
- vhost: bim-prod
name: celery
durable: true
auto_delete: false
- vhost: bim-prod-gazpromcps
name: celery
durable: true
auto_delete: false
- vhost: camunda_prod
name: hash.compute.normal.tasks
durable: true
auto_delete: false
- vhost: camunda_prod
name: pdf_markings_input
durable: true
auto_delete: false
arguments:
x-queue-type: classic
- vhost: comparator-prod
name: cloud_to_cloud
durable: true
auto_delete: false
- vhost: comparator-prod
name: cloud_to_model
durable: true
auto_delete: false
- vhost: comparator-prod
name: deviation
durable: true
auto_delete: false
- vhost: comparator-prod
name: potree
durable: true
auto_delete: false
- vhost: django
name: default
durable: true
auto_delete: false
- vhost: django
name: pm
durable: true
auto_delete: false
- vhost: flow_prod
name: celery
durable: true
auto_delete: false
- vhost: flow_prod
name: flow
durable: true
auto_delete: false
arguments:
x-queue-type: classic
- vhost: iac-smoke-prod
name: iac.smoke.queue
durable: true
auto_delete: false
arguments:
x-queue-type: quorum
- vhost: issues_prod
name: celery
durable: true
auto_delete: false
- vhost: pdf_processing
name: new_tiling
durable: true
auto_delete: false
- vhost: pdf_processing
name: processing
durable: true
auto_delete: false
- vhost: pm_prod
name: pm
durable: true
auto_delete: false
- vhost: remarks-prod
name: remark_mail
durable: true
auto_delete: false
- vhost: rfi_prod
name: celery
durable: true
auto_delete: false
- vhost: sarex-backend
name: sarex-backend
durable: true
auto_delete: false
arguments:
x-queue-type: classic
- vhost: transmitalls_prod_host
name: taskiq
durable: false
auto_delete: false
arguments:
x-dead-letter-exchange: ''
x-dead-letter-routing-key: taskiq.dead_letter
- vhost: transmitalls_prod_host
name: taskiq.dead_letter
durable: false
auto_delete: false
- vhost: transmitalls_prod_host
name: taskiq.delay
durable: false
auto_delete: false
arguments:
x-dead-letter-exchange: ''
x-dead-letter-routing-key: taskiq
- vhost: workflows
name: dwg_to_geojson
durable: true
auto_delete: false
- vhost: workflows
name: processing
durable: true
auto_delete: false
bindings:
- vhost: b6V7WU8PZpVe5rUt
source: default
destination: default
destination_type: queue
routing_key: default
properties_key: default
- vhost: b6V7WU8PZpVe5rUt
source: documents
destination: documents
destination_type: queue
routing_key: documents
properties_key: documents
- vhost: b6V7WU8PZpVe5rUt
source: high-resources
destination: high-resources
destination_type: queue
routing_key: high-resources
properties_key: high-resources
- vhost: b6V7WU8PZpVe5rUt
source: hight-resouces
destination: high-resources
destination_type: queue
routing_key: high-resources
properties_key: high-resources
- vhost: bim-prod
source: celery
destination: celery
destination_type: queue
routing_key: celery
properties_key: celery
- vhost: bim-prod-gazpromcps
source: celery
destination: celery
destination_type: queue
routing_key: celery
properties_key: celery
- vhost: camunda_prod
source: amq.topic
destination: pdf_markings_input
destination_type: queue
routing_key: pdf_markings_input
properties_key: pdf_markings_input
- vhost: camunda_prod
source: hash.compute
destination: hash.compute.normal.tasks
destination_type: queue
routing_key: hash.compute.normal
properties_key: hash.compute.normal
- vhost: comparator-prod
source: comparator_exchange
destination: cloud_to_cloud
destination_type: queue
routing_key: cloud_to_cloud
properties_key: cloud_to_cloud
- vhost: comparator-prod
source: comparator_exchange
destination: cloud_to_model
destination_type: queue
routing_key: cloud_to_model
properties_key: cloud_to_model
- vhost: comparator-prod
source: comparator_exchange
destination: deviation
destination_type: queue
routing_key: deviation
properties_key: deviation
- vhost: comparator-prod
source: comparator_exchange
destination: potree
destination_type: queue
routing_key: potree
properties_key: potree
- vhost: django
source: default
destination: default
destination_type: queue
routing_key: default
properties_key: default
- vhost: django
source: pm
destination: pm
destination_type: queue
routing_key: pm
properties_key: pm
- vhost: flow_prod
source: celery
destination: celery
destination_type: queue
routing_key: celery
properties_key: celery
- vhost: flow_prod
source: flow
destination: flow
destination_type: queue
routing_key: flow
properties_key: flow
- vhost: iac-smoke-prod
source: iac.smoke.events
destination: iac.smoke.queue
destination_type: queue
routing_key: iac.smoke.created
properties_key: iac.smoke.created
- vhost: issues_prod
source: celery
destination: celery
destination_type: queue
routing_key: celery
properties_key: celery
- vhost: pdf_processing
source: bim_360_input
destination: processing
destination_type: queue
routing_key: ''
properties_key: '~'
- vhost: pm_prod
source: pm
destination: pm
destination_type: queue
routing_key: pm
properties_key: pm
- vhost: remarks-prod
source: remark_mail_exchange
destination: remark_mail
destination_type: queue
routing_key: remark_mail
properties_key: remark_mail
- vhost: rfi_prod
source: celery
destination: celery
destination_type: queue
routing_key: celery
properties_key: celery
- vhost: transmitalls_prod_host
source: taskiq
destination: taskiq
destination_type: queue
routing_key: '#'
properties_key: '%23'
- vhost: workflows
source: input_tasks
destination: dwg_to_geojson
destination_type: queue
routing_key: dwg_to_geojson
properties_key: dwg_to_geojson
- vhost: workflows
source: pdf_data_input
destination: processing
destination_type: queue
routing_key: ''
properties_key: '~'
policies:
- vhost: bim-prod
name: ha-two
pattern: .*
apply_to: all
priority: 0
definition:
ha-mode: exactly
ha-params: 2
ha-sync-mode: automatic
- vhost: bim-prod-gazpromcps
name: ha-two
pattern: .*
apply_to: all
priority: 0
definition:
ha-mode: exactly
ha-params: 2
ha-sync-mode: automatic
- vhost: comparator-prod
name: ha-two
pattern: .*
apply_to: all
priority: 0
definition:
ha-mode: exactly
ha-params: 2
ha-sync-mode: automatic
- vhost: iac-smoke-prod
name: iac-smoke-queue-ttl
pattern: ^iac\.smoke\..*
apply_to: queues
priority: 1
definition:
message-ttl: 600000
- vhost: remarks-prod
name: ha-two
pattern: .*
apply_to: all
priority: 0
definition:
ha-mode: exactly
ha-params: 2
ha-sync-mode: automatic
- vhost: tracking-prod
name: ha-two
pattern: .*
apply_to: all
priority: 0
definition:
ha-mode: exactly
ha-params: 2
ha-sync-mode: automatic
- vhost: tracking-receiver-prod
name: ha-two
pattern: .*
apply_to: all
priority: 0
definition:
ha-mode: exactly
ha-params: 2
ha-sync-mode: automatic
namespaces:
- name: block-analyzer
labels:
project: block-analyzer
annotations:
managed-by: terraform
- name: pulse
labels:
environment: stage
project: pulse
istio-injection: enabled
annotations:
managed-by: terraform
- name: proc
labels:
team: proc
istio-injection: enabled
annotations:
managed-by: terraform
- name: iam
labels:
team: platform
istio-injection: enabled
annotations:
managed-by: terraform
- name: ai
labels:
istio-injection: enabled
annotations:
managed-by: terraform
buckets:
- name: pulse-prod
acl: private
versioning:
enabled: false
cors:
enabled: false
- name: premises-prod
acl: private
versioning:
enabled: false
cors:
enabled: false
- name: ai-agents-prod
acl: private
role: storage.admin
versioning:
enabled: false
cors:
enabled: false
# yc_service_accounts:
# - name: dwg-sa
# description: "DWG SA Uploader"
# folder_roles:
# - storage.uploader
# create_static_access_key: true
databases:
- cluster_id: "c9quu72dj2ibu8dk54q5"
database:
name: pulse_db
extensions:
- pg_stat_statements
user:
name: pulse
password_length: 32
password_special: false
conn_limit: 10
- cluster_id: "c9quu72dj2ibu8dk54q5"
database:
name: premises_db
extensions:
- uuid-ossp
user:
name: premises
password_length: 32
password_special: false
conn_limit: 10
- cluster_id: "c9quu72dj2ibu8dk54q5"
database:
name: document-understanding
host: rc1b-384bzx2drqoaxt4d.mdb.yandexcloud.net
user:
name: document-understanding
password_length: 32
password_special: false
conn_limit: 10
- cluster_id: "c9q4rg96frgpk4g2q9p8"
database:
name: sarex-agents
extensions:
- ltree
- pg_stat_statements
- uuid-ossp
- btree_gin
- btree_gist
- pgvector
user:
name: sarex-agents
password_length: 32
password_special: false
conn_limit: 100
- cluster_id: "c9quu72dj2ibu8dk54q5"
database:
name: analyzer_db
extensions:
- pg_stat_statements
user:
name: analyzer
password_length: 32
password_special: false
conn_limit: 10
permissions:
- annotations
- attachments
- automation
- bi
- bim_allocator_db
- camunda_db
- camunda_new
- checklists
- comparator
- comparisons
- contracts_prod_db
- data-engine_db
- document-understanding
- drawings
- flow_db
- inspections
- issues
- mailer
- notes_db
- pm_db
- premises_db
- preprod_sarex_db
- processing
- pulse_db
- remarks
- resources
- restored_flow_db
- rfi
- sarex_compute
- sarex_db
- srx-data-engine
- subscriptions
- superset
- system_log
- transmittal
- workspaces
valkey_users:
- cluster_id: "c9qb9l18fvb0vg2nrcq4"
host: rc1d-qk3kd08nre0ntdu9.mdb.yandexcloud.net
port: "6380"
user:
name: sarex-agents
password_length: 32
password_special: false
enabled: true
permissions:
patterns: allkeys
pubSubChannels: allchannels
categories: "+@read +@write"
commands: "+GET -FLUSHALL"
sanitizePayload: sanitize-payload