@aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana
Advanced tools
Comparing version
@@ -56,3 +56,3 @@ "use strict"; | ||
_a = JSII_RTTI_SYMBOL_1; | ||
DynamoDBStreamsToLambdaToElasticSearchAndKibana[_a] = { fqn: "@aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana.DynamoDBStreamsToLambdaToElasticSearchAndKibana", version: "2.85.2" }; | ||
DynamoDBStreamsToLambdaToElasticSearchAndKibana[_a] = { fqn: "@aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana.DynamoDBStreamsToLambdaToElasticSearchAndKibana", version: "2.85.3" }; | ||
//# sourceMappingURL=data:application/json;base64,{"version":3,"file":"index.js","sourceRoot":"","sources":["index.ts"],"names":[],"mappings":";;;;;AAiBA,qGAA6H;AAC7H,+GAAgJ;AAMhJ,wFAAwF;AACxF,2CAAuC;AA6FvC,MAAa,+CAAgD,SAAQ,sBAAS;IAc5E;;;;;;OAMG;IACH,YAAY,KAAgB,EAAE,EAAU,EAAE,KAA2D;QACnG,KAAK,CAAC,KAAK,EAAE,EAAE,CAAC,CAAC;QACjB,2DAA2D;QAE3D,MAAM,0BAA0B,GAAwC;YACtE,iBAAiB,EAAE,KAAK,CAAC,iBAAiB;YAC1C,mBAAmB,EAAE,KAAK,CAAC,mBAAmB;YAC9C,UAAU,EAAE,KAAK,CAAC,UAAU;YAC5B,aAAa,EAAE,KAAK,CAAC,aAAa;YAClC,iBAAiB,EAAE,KAAK,CAAC,iBAAiB;YAC1C,sBAAsB,EAAE,KAAK,CAAC,sBAAsB;YACpD,WAAW,EAAE,KAAK,CAAC,WAAW;YAC9B,QAAQ,EAAE,KAAK,CAAC,QAAQ;YACxB,SAAS,EAAE,KAAK,CAAC,SAAS;SAC3B,CAAC;QAEF,IAAI,CAAC,8BAA8B,GAAG,IAAI,gEAA8B,CAAC,IAAI,EAAE,uBAAuB,EAAE,0BAA0B,CAAC,CAAC;QAEpI,IAAI,CAAC,cAAc,GAAG,IAAI,CAAC,8BAA8B,CAAC,cAAc,CAAC;QAEzE,MAAM,sBAAsB,GAAiC;YAC3D,iBAAiB,EAAE,IAAI,CAAC,cAAc;YACtC,sBAAsB,EAAE,KAAK,CAAC,sBAAsB;YACpD,gBAAgB,EAAE,KAAK,CAAC,gBAAgB;YACxC,sBAAsB,EAAE,KAAK,CAAC,sBAAsB;YACpD,iBAAiB,EAAE,KAAK,CAAC,iBAAiB;YAC1C,gBAAgB,EAAE,KAAK,CAAC,gBAAgB;SACzC,CAAC;QAEF,IAAI,CAAC,uBAAuB,GAAG,IAAI,oDAAuB,CAAC,IAAI,EAAE,yBAAyB,EAAE,sBAAsB,CAAC,CAAC;QAEpH,IAAI,CAAC,WAAW,GAAG,IAAI,CAAC,uBAAuB,CAAC,WAAW,CAAC;QAC5D,IAAI,CAAC,oBAAoB,GAAG,IAAI,CAAC,uBAAuB,CAAC,oBAAoB,CAAC;QAC9E,IAAI,CAAC,QAAQ,GAAG,IAAI,CAAC,8BAA8B,CAAC,QAAQ,CAAC;QAC7D,IAAI,CAAC,cAAc,GAAG,IAAI,CAAC,8BAA8B,CAAC,cAAc,CAAC;QACzE,IAAI,CAAC,YAAY,GAAG,IAAI,CAAC,8BAA8B,CAAC,YAAY,CAAC;QACrE,IAAI,CAAC,mBAAmB,GAAG,IAAI,CAAC,8BAA8B,CAAC,mBAAmB,CAAC;QACnF,IAAI,CAAC,iBAAiB,GAAG,IAAI,CAAC,8BAA8B,CAAC,iBAAiB,CAAC;QAC/E,IAAI,CAAC,gBAAgB,GAAG,IAAI,CAAC,8BAA8B,CAAC,gBAAgB,CAAC;QAC7E,IAAI,CAAC,GAAG,GAAG,IAAI,CAAC,8BAA8B,CAAC,GAAG,CAAC;IACrD,CAAC;;AA7DH,0GA8DC","sourcesContent":["/**\n *  Copyright Amazon.com, Inc. or its affiliates. All Rights Reserved.\n *\n *  Licensed under the Apache License, Version 2.0 (the \"License\"). You may not use this file except in compliance\n *  with the License. A copy of the License is located at\n *\n *      http://www.apache.org/licenses/LICENSE-2.0\n *\n *  or in the 'license' file accompanying this file. This file is distributed on an 'AS IS' BASIS, WITHOUT WARRANTIES\n *  OR CONDITIONS OF ANY KIND, express or implied. See the License for the specific language governing permissions\n *  and limitations under the License.\n */\n\nimport * as lambda from 'aws-cdk-lib/aws-lambda';\nimport * as elasticsearch from 'aws-cdk-lib/aws-elasticsearch';\nimport * as iam from 'aws-cdk-lib/aws-iam';\nimport { DynamoEventSourceProps } from 'aws-cdk-lib/aws-lambda-event-sources';\nimport { DynamoDBStreamsToLambdaProps, DynamoDBStreamsToLambda } from '@aws-solutions-constructs/aws-dynamodbstreams-lambda';\nimport { LambdaToElasticSearchAndKibanaProps, LambdaToElasticSearchAndKibana } from '@aws-solutions-constructs/aws-lambda-elasticsearch-kibana';\nimport * as dynamodb from 'aws-cdk-lib/aws-dynamodb';\nimport * as cognito from 'aws-cdk-lib/aws-cognito';\nimport * as cloudwatch from 'aws-cdk-lib/aws-cloudwatch';\nimport * as ec2 from 'aws-cdk-lib/aws-ec2';\nimport * as sqs from 'aws-cdk-lib/aws-sqs';\n// Note: To ensure CDKv2 compatibility, keep the import statement for Construct separate\nimport { Construct } from 'constructs';\n\n/**\n * @summary The properties for the DynamoDBStreamsToLambdaToElastciSearchAndKibana Construct\n */\nexport interface DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps {\n  /**\n   * Existing instance of Lambda Function object, providing both this and `lambdaFunctionProps` will cause an error.\n   *\n   * @default - None\n   */\n  readonly existingLambdaObj?: lambda.Function,\n  /**\n   * User provided props to override the default props for the Lambda function.\n   *\n   * @default - Default props are used\n   */\n  readonly lambdaFunctionProps?: lambda.FunctionProps,\n  /**\n   * Optional user provided props to override the default props\n   *\n   * @default - Default props are used\n   */\n  readonly dynamoTableProps?: dynamodb.TableProps,\n  /**\n   * Existing instance of DynamoDB table object, providing both this and `dynamoTableProps` will cause an error.\n   *\n   * @default - None\n   */\n  readonly existingTableInterface?: dynamodb.ITable,\n  /**\n   * Optional user provided props to override the default props\n   *\n   * @default - Default props are used\n   */\n  readonly dynamoEventSourceProps?: DynamoEventSourceProps,\n  /**\n   * Optional user provided props to override the default props for the API Gateway.\n   *\n   * @default - Default props are used\n   */\n  readonly esDomainProps?: elasticsearch.CfnDomainProps,\n  /**\n   * Cognito & ES Domain Name\n   *\n   * @default - None\n   */\n  readonly domainName: string,\n  /**\n   * Optional Cognito Domain Name, if provided it will be used for Cognito Domain, and domainName will be used for the Elasticsearch Domain\n   *\n   * @default - None\n   */\n  readonly cognitoDomainName?: string,\n  /**\n   * Whether to deploy a SQS dead letter queue when a data record reaches the Maximum Retry Attempts or Maximum Record Age,\n   * its metadata like shard ID and stream ARN will be sent to an SQS queue.\n   *\n   * @default - true.\n   */\n  readonly deploySqsDlqQueue?: boolean,\n  /**\n   * Optional user provided properties for the SQS dead letter queue\n   *\n   * @default - Default props are used\n   */\n  readonly sqsDlqQueueProps?: sqs.QueueProps,\n  /**\n   * Whether to create recommended CloudWatch alarms\n   *\n   * @default - Alarms are created\n   */\n  readonly createCloudWatchAlarms?: boolean\n  /**\n   * An existing VPC for the construct to use (construct will NOT create a new VPC in this case)\n   *\n   * @default - None\n   */\n  readonly existingVpc?: ec2.IVpc;\n  /**\n   * Properties to override default properties if deployVpc is true\n   *\n   * @default - DefaultIsolatedVpcProps() in vpc-defaults.ts\n   */\n  readonly vpcProps?: ec2.VpcProps;\n  /**\n   * Whether to deploy a new VPC\n   *\n   * @default - false\n   */\n  readonly deployVpc?: boolean;\n}\n\nexport class DynamoDBStreamsToLambdaToElasticSearchAndKibana extends Construct {\n  private dynamoDBStreamsToLambda: DynamoDBStreamsToLambda;\n  private lambdaToElasticSearchAndKibana: LambdaToElasticSearchAndKibana;\n  public readonly lambdaFunction: lambda.Function;\n  public readonly dynamoTableInterface: dynamodb.ITable;\n  public readonly dynamoTable?: dynamodb.Table;\n  public readonly userPool: cognito.UserPool;\n  public readonly userPoolClient: cognito.UserPoolClient;\n  public readonly identityPool: cognito.CfnIdentityPool;\n  public readonly elasticsearchDomain: elasticsearch.CfnDomain;\n  public readonly elasticsearchRole: iam.Role;\n  public readonly cloudwatchAlarms?: cloudwatch.Alarm[];\n  public readonly vpc?: ec2.IVpc;\n\n  /**\n   * @summary Constructs a new instance of the LambdaToDynamoDB class.\n   * @param {cdk.App} scope - represents the scope for all the resources.\n   * @param {string} id - this is a a scope-unique id.\n   * @param {DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps} props - user provided props for the construct\n   * @access public\n   */\n  constructor(scope: Construct, id: string, props: DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps) {\n    super(scope, id);\n    // CheckLambdaProps() is called by aws-lambda-elasticsearch\n\n    const lambdaToElasticSearchProps: LambdaToElasticSearchAndKibanaProps = {\n      existingLambdaObj: props.existingLambdaObj,\n      lambdaFunctionProps: props.lambdaFunctionProps,\n      domainName: props.domainName,\n      esDomainProps: props.esDomainProps,\n      cognitoDomainName: props.cognitoDomainName,\n      createCloudWatchAlarms: props.createCloudWatchAlarms,\n      existingVpc: props.existingVpc,\n      vpcProps: props.vpcProps,\n      deployVpc: props.deployVpc\n    };\n\n    this.lambdaToElasticSearchAndKibana = new LambdaToElasticSearchAndKibana(this, 'LambdaToElasticSearch', lambdaToElasticSearchProps);\n\n    this.lambdaFunction = this.lambdaToElasticSearchAndKibana.lambdaFunction;\n\n    const dbstreamsToLambdaProps: DynamoDBStreamsToLambdaProps = {\n      existingLambdaObj: this.lambdaFunction,\n      dynamoEventSourceProps: props.dynamoEventSourceProps,\n      dynamoTableProps: props.dynamoTableProps,\n      existingTableInterface: props.existingTableInterface,\n      deploySqsDlqQueue: props.deploySqsDlqQueue,\n      sqsDlqQueueProps: props.sqsDlqQueueProps,\n    };\n\n    this.dynamoDBStreamsToLambda = new DynamoDBStreamsToLambda(this, 'DynamoDBStreamsToLambda', dbstreamsToLambdaProps);\n\n    this.dynamoTable = this.dynamoDBStreamsToLambda.dynamoTable;\n    this.dynamoTableInterface = this.dynamoDBStreamsToLambda.dynamoTableInterface;\n    this.userPool = this.lambdaToElasticSearchAndKibana.userPool;\n    this.userPoolClient = this.lambdaToElasticSearchAndKibana.userPoolClient;\n    this.identityPool = this.lambdaToElasticSearchAndKibana.identityPool;\n    this.elasticsearchDomain = this.lambdaToElasticSearchAndKibana.elasticsearchDomain;\n    this.elasticsearchRole = this.lambdaToElasticSearchAndKibana.elasticsearchRole;\n    this.cloudwatchAlarms = this.lambdaToElasticSearchAndKibana.cloudwatchAlarms;\n    this.vpc = this.lambdaToElasticSearchAndKibana.vpc;\n  }\n}\n"]} |
{ | ||
"name": "@aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana", | ||
"version": "2.85.2", | ||
"version": "2.85.3", | ||
"description": "CDK Constructs for Amazon Dynamodb streams to AWS Lambda to AWS Elasticsearch with Kibana integration", | ||
@@ -25,2 +25,3 @@ "main": "lib/index.js", | ||
"watch": "tsc -b -w", | ||
"asciidoc": "asciidoctor --failure-level WARNING -o /dev/null README.adoc", | ||
"integ": "integ-runner --update-on-failed", | ||
@@ -31,3 +32,3 @@ "integ-no-clean": "integ-runner --update-on-failed --no-clean", | ||
"jsii-pacmak": "jsii-pacmak", | ||
"build+lint+test": "npm run jsii && npm run lint && npm test && npm run integ-assert", | ||
"build+lint+test": "npm run jsii && npm run lint && npm run asciidoc && npm test && npm run integ-assert", | ||
"blt": "npm run build+lint+test", | ||
@@ -59,5 +60,5 @@ "snapshot-update": "npm run jsii && npm test -- -u && npm run integ-assert" | ||
"dependencies": { | ||
"@aws-solutions-constructs/core": "2.85.2", | ||
"@aws-solutions-constructs/aws-dynamodbstreams-lambda": "2.85.2", | ||
"@aws-solutions-constructs/aws-lambda-elasticsearch-kibana": "2.85.2", | ||
"@aws-solutions-constructs/core": "2.85.3", | ||
"@aws-solutions-constructs/aws-dynamodbstreams-lambda": "2.85.3", | ||
"@aws-solutions-constructs/aws-lambda-elasticsearch-kibana": "2.85.3", | ||
"constructs": "^10.0.0" | ||
@@ -86,5 +87,5 @@ }, | ||
"peerDependencies": { | ||
"@aws-solutions-constructs/core": "2.85.2", | ||
"@aws-solutions-constructs/aws-dynamodbstreams-lambda": "2.85.2", | ||
"@aws-solutions-constructs/aws-lambda-elasticsearch-kibana": "2.85.2", | ||
"@aws-solutions-constructs/core": "2.85.3", | ||
"@aws-solutions-constructs/aws-dynamodbstreams-lambda": "2.85.3", | ||
"@aws-solutions-constructs/aws-lambda-elasticsearch-kibana": "2.85.3", | ||
"constructs": "^10.0.0", | ||
@@ -91,0 +92,0 @@ "aws-cdk-lib": "^2.193.0" |
176
README.md
@@ -1,175 +0,1 @@ | ||
# aws-dynamodbstreams-lambda-elasticsearch-kibana module | ||
<!--BEGIN STABILITY BANNER--> | ||
--- | ||
 | ||
> All classes are under active development and subject to non-backward compatible changes or removal in any | ||
> future version. These are not subject to the [Semantic Versioning](https://semver.org/) model. | ||
> This means that while you may use them, you may need to update your source code when upgrading to a newer version of this package. | ||
--- | ||
<!--END STABILITY BANNER--> | ||
| **Reference Documentation**:| <span style="font-weight: normal">https://docs.aws.amazon.com/solutions/latest/constructs/</span>| | ||
|:-------------|:-------------| | ||
<div style="height:8px"></div> | ||
| **Language** | **Package** | | ||
|:-------------|-----------------| | ||
| Python|`aws_solutions_constructs.aws_dynamodbstreams_elasticsearch_kibana`| | ||
| Typescript|`@aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana`| | ||
| Java|`software.amazon.awsconstructs.services.dynamodbstreamslambdaelasticsearchkibana`| | ||
## Overview | ||
This AWS Solutions Construct implements Amazon DynamoDB table with stream, AWS Lambda function and Amazon Elasticsearch Service with the least privileged permissions. | ||
**Some cluster configurations (e.g VPC access) require the existence of the `AWSServiceRoleForAmazonElasticsearchService` Service-Linked Role in your account.** | ||
**You will need to create the service-linked role using the AWS CLI once in any account using this construct (it may have already been run to support other stacks):** | ||
``` | ||
aws iam create-service-linked-role --aws-service-name es.amazonaws.com | ||
``` | ||
Here is a minimal deployable pattern definition: | ||
Typescript | ||
``` typescript | ||
import { Construct } from 'constructs'; | ||
import { Stack, StackProps, Aws } from 'aws-cdk-lib'; | ||
import { DynamoDBStreamsToLambdaToElasticSearchAndKibana, DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps } from '@aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana'; | ||
import * as lambda from 'aws-cdk-lib/aws-lambda'; | ||
const constructProps: DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps = { | ||
lambdaFunctionProps: { | ||
code: lambda.Code.fromAsset(`lambda`), | ||
runtime: lambda.Runtime.NODEJS_20_X, | ||
handler: 'index.handler' | ||
}, | ||
domainName: 'test-domain', | ||
// TODO: Ensure the Cognito domain name is globally unique | ||
cognitoDomainName: 'globallyuniquedomain' + Aws.ACCOUNT_ID | ||
}; | ||
new DynamoDBStreamsToLambdaToElasticSearchAndKibana(this, 'test-dynamodbstreams-lambda-elasticsearch-kibana', constructProps); | ||
``` | ||
Python | ||
``` Python | ||
from aws_solutions_constructs.aws_dynamodbstreams_lambda_elasticsearch_kibana import DynamoDBStreamsToLambdaToElasticSearchAndKibana, DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps | ||
from aws_cdk import ( | ||
Stack, | ||
aws_lambda as _lambda, | ||
Aws, | ||
) | ||
from constructs import Construct | ||
DynamoDBStreamsToLambdaToElasticSearchAndKibana( | ||
self, 'test-dynamodbstreams-lambda-elasticsearch-kibana', | ||
lambda_function_props=_lambda.FunctionProps( | ||
code=_lambda.Code.from_asset('lambda'), | ||
runtime=_lambda.Runtime.PYTHON_3_11, | ||
handler='index.handler' | ||
), | ||
domain_name='test-domain', | ||
# TODO: Ensure the Cognito domain name is globally unique | ||
cognito_domain_name='globallyuniquedomain' + Aws.ACCOUNT_ID) | ||
``` | ||
Java | ||
``` java | ||
import software.constructs.Construct; | ||
import software.amazon.awscdk.Aws; | ||
import software.amazon.awscdk.Stack; | ||
import software.amazon.awscdk.StackProps; | ||
import software.amazon.awscdk.services.lambda.*; | ||
import software.amazon.awscdk.services.lambda.Runtime; | ||
import software.amazon.awsconstructs.services.dynamodbstreamslambdaelasticsearchkibana.*; | ||
new DynamoDBStreamsToLambdaToElasticSearchAndKibana(this, "test-dynamodb-stream-lambda-elasticsearch-kibana", | ||
new DynamoDBStreamsToLambdaToElasticSearchAndKibanaProps.Builder() | ||
.lambdaFunctionProps(new FunctionProps.Builder() | ||
.runtime(Runtime.NODEJS_20_X) | ||
.code(Code.fromAsset("lambda")) | ||
.handler("index.handler") | ||
.build()) | ||
.domainName("test-domain") | ||
.cognitoDomainName("globallyuniquedomain" + Aws.ACCOUNT_ID) | ||
.build()); | ||
``` | ||
## Pattern Construct Props | ||
| **Name** | **Type** | **Description** | | ||
|:-------------|:----------------|-----------------| | ||
|existingLambdaObj?|[`lambda.Function`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_lambda.Function.html)|Existing instance of Lambda Function object, providing both this and `lambdaFunctionProps` will cause an error.| | ||
|lambdaFunctionProps?|[`lambda.FunctionProps`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_lambda.FunctionProps.html)|User provided props to override the default props for the Lambda function.| | ||
|dynamoTableProps?|[`dynamodb.TableProps`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_dynamodb.TableProps.html)|Optional user provided props to override the default props for DynamoDB Table| | ||
|existingTableInterface?|[`dynamodb.ITable`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_dynamodb.ITable.html)|Existing instance of DynamoDB table object or interface, providing both this and `dynamoTableProps` will cause an error.| | ||
|dynamoEventSourceProps?|[`aws-lambda-event-sources.DynamoEventSourceProps`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_lambda_event_sources.DynamoEventSourceProps.html)|Optional user provided props to override the default props for DynamoDB Event Source| | ||
|esDomainProps?|[`elasticsearch.CfnDomainProps`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_elasticsearch.CfnDomainProps.html)|Optional user provided props to override the default props for the Elasticsearch Service| | ||
|domainName|`string`|Domain name for the Cognito and the Elasticsearch Service| | ||
|cognitoDomainName?|`string`|Optional Cognito Domain Name, if provided it will be used for Cognito Domain, and domainName will be used for the Elasticsearch Domain.| | ||
|deploySqsDlqQueue?|`boolean`|Whether to deploy a SQS dead letter queue when a data record reaches the Maximum Retry Attempts or Maximum Record Age, its metadata like shard ID and stream ARN will be sent to an SQS queue.| | ||
|sqsDlqQueueProps?|[`sqs.QueueProps`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_sqs.QueueProps.html)|Optional user provided properties for the SQS dead letter queue| | ||
|createCloudWatchAlarms?|`boolean`|Whether to create recommended CloudWatch alarms| | ||
| existingVpc? | [`ec2.IVpc`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_ec2.IVpc.html)|An existing VPC in which to deploy the construct. Providing both this and `vpcProps` is an error.| | ||
| deployVpc? |`boolean`|Whether to create a new VPC based on `vpcProps` into which to deploy this pattern. Setting this to true will deploy the minimal, most private VPC to run the pattern:<ul><li> One isolated subnet in each Availability Zone used by the CDK program</li><li>`enableDnsHostnames` and `enableDnsSupport` will both be set to true</li></ul>If this property is `true` then `existingVpc` cannot be specified. Defaults to `false`.| | ||
| vpcProps? |[`ec2.VpcProps`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_ec2.VpcProps.html)|Optional user-provided properties to override the default properties for the new VPC. `enableDnsHostnames`, `enableDnsSupport`, `natGateways` and `subnetConfiguration` are set by the Construct, so any values for those properties supplied here will be overridden. If `deployVpc?` is not `true` then this property will be ignored. | | ||
## Pattern Properties | ||
| **Name** | **Type** | **Description** | | ||
|:-------------|:----------------|-----------------| | ||
|dynamoTableInterface|[`dynamodb.ITable`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_dynamodb.ITable.html)|Returns an instance of dynamodb.ITable created by the construct| | ||
|dynamoTable?|[`dynamodb.Table`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_dynamodb.Table.html)|Returns an instance of dynamodb.Table created by the construct. IMPORTANT: If existingTableInterface was provided in Pattern Construct Props, this property will be `undefined`| | ||
|lambdaFunction|[`lambda.Function`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_lambda.Function.html)|Returns an instance of lambda.Function created by the construct| | ||
|userPool|[`cognito.UserPool`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_cognito.UserPool.html)|Returns an instance of cognito.UserPool created by the construct| | ||
|userPoolClient|[`cognito.UserPoolClient`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_cognito.UserPoolClient.html)|Returns an instance of cognito.UserPoolClient created by the construct| | ||
|identityPool|[`cognito.CfnIdentityPool`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_cognito.CfnIdentityPool.html)|Returns an instance of cognito.CfnIdentityPool created by the construct| | ||
|elasticsearchDomain|[`elasticsearch.CfnDomain`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_elasticsearch.CfnDomain.html)|Returns an instance of elasticsearch.CfnDomain created by the construct| | ||
|elasticsearchDomain|[`iam.Role`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_iam.Role.html)|Returns an instance of iam.Role created by the construct for elasticsearch.CfnDomain| | ||
|cloudwatchAlarms?|[`cloudwatch.Alarm[]`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_cloudwatch.Alarm.html)|Returns a list of cloudwatch.Alarm created by the construct| | ||
| vpc? |[`ec2.IVpc`](https://docs.aws.amazon.com/cdk/api/v2/docs/aws-cdk-lib.aws_ec2.IVpc.html)| Returns an instance of the VPC created by the pattern, if `deployVpc?` is `true`, or `existingVpc?` is provided. | | ||
## Lambda Function | ||
This pattern requires a lambda function that can post data into the Elasticsearch from DynamoDB stream. A sample function is provided [here](https://github.com/awslabs/aws-solutions-constructs/blob/master/source/patterns/%40aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana/test/lambda/index.js). | ||
## Default settings | ||
Out of the box implementation of the Construct without any override will set the following defaults: | ||
### Amazon DynamoDB Table | ||
* Set the billing mode for DynamoDB Table to On-Demand (Pay per request) | ||
* Enable server-side encryption for DynamoDB Table using AWS managed KMS Key | ||
* Creates a partition key called 'id' for DynamoDB Table | ||
* Retain the Table when deleting the CloudFormation stack | ||
* Enable continuous backups and point-in-time recovery | ||
### AWS Lambda Function | ||
* Configure limited privilege access IAM role for Lambda function | ||
* Enable reusing connections with Keep-Alive for NodeJs Lambda function | ||
* Enable X-Ray Tracing | ||
* Enable Failure-Handling features like enable bisect on function Error, set defaults for Maximum Record Age (24 hours) & Maximum Retry Attempts (500) and deploy SQS dead-letter queue as destination on failure | ||
* Set Environment Variables | ||
* AWS_NODEJS_CONNECTION_REUSE_ENABLED (for Node 10.x and higher functions) | ||
### Amazon Cognito | ||
* Set password policy for User Pools | ||
* Enforce the advanced security mode for User Pools | ||
### Amazon Elasticsearch Service | ||
* Deploy best practices CloudWatch Alarms for the Elasticsearch Domain | ||
* Secure the Kibana dashboard access with Cognito User Pools | ||
* Enable server-side encryption for Elasticsearch Domain using AWS managed KMS Key | ||
* Enable node-to-node encryption for Elasticsearch Domain | ||
* Configure the cluster for the Amazon ES domain | ||
## Architecture | ||
 | ||
*** | ||
© Copyright Amazon.com, Inc. or its affiliates. All Rights Reserved. | ||
Documentation for this pattern can be found [here](https://github.com/awslabs/aws-solutions-constructs/blob/main/source/patterns/%40aws-solutions-constructs/aws-dynamodbstreams-lambda-elasticsearch-kibana/README.adoc) |
Sorry, the diff of this file is not supported yet
35
2.94%571714
-2%2
-98.86%+ Added
+ Added
+ Added
- Removed
- Removed
- Removed
Updated
Updated