GithubHelp home page GithubHelp logo

richcontext / serverless-ssm-fetch Goto Github PK

View Code? Open in Web Editor NEW

This project forked from gozup/serverless-ssm-fetch

0.0 1.0 0.0 97 KB

Serverless plugin to fetch and assign env variables to function from AWS Parameter Store

License: MIT License

JavaScript 100.00%

serverless-ssm-fetch's Introduction

Serverless SSM Fetch

Serverless SSM Fetch is an "AWS provider only" plugin that allows to fetch parameters from AWS Store Parameters and assign them to serverless.yml functions environment variables.

Before using this plugin you must have set your parameters into AWS System Manager Parameter Store

NOTE: to use this plugin, the AWS credentials that you use for your project must have permissions for:

  • ssm:Describe*
  • ssm:Get*
  • ssm:List*

Setup

First, you have to set serverless-ssm-fetch plugin in your serverless.yml file.

...

plugins:
  - serverless-ssm-fetch

...

Then, you must declare the SSM Parameters that must be assigned to your functions environment variables.

It consists in key value pairs, where the key is the environment variable name you want to use, and the value is the parameter path you set in AWS System Manager Parameter Store on your AWS account. Example: APP_ID: /aws/ssm/parameter/path/app_id.

To declare them, use the serverlessSsmFetch accessor inside custom variable in your serverless.yml file. FYI, it also works if you use a nested file for your custom (custom: $(file:./path/to/file)).

...

custom:
  serverlessSsmFetch:
    APP_ID: /aws/ssm/parameter/path/app_id
    APP_KEY: /aws/ssm/parameter/path/app_key
    APP_SECRET: /aws/ssm/parameter/path/app_secret~true

...

Usage

By default, there is nothing more to do if you want all your SSM Parameters injected in all your functions. But of course, you will probably want to assign specific parameters to specific functions. You can specify it on a per function basis this way:

...

custom:
  serverlessSsmFetch:
    APP_ID: /aws/ssm/parameter/path/app_id
    APP_KEY: /aws/ssm/parameter/path/app_key
    APP_SECRET: /aws/ssm/parameter/path/app_secret~true

functions:
  hello:
    handler: handler.hello
    ssmToEnvironment:
      - APP_ID
    environment:
      - NODE_ENV: development

...

This will add ONLY the SSM Parameter APP_ID to the function environment variables. In this case, the function hello will be pushed to AWS Lambda with environment variables NODE_ENV and APP_ID.

Decryption

On AWS Parameters Store you can decide to encrypt parameters when you set them. Meaning that you must decrypt them with your KMS key when you use them within your application.

With serverless-ssm-fetch you can decide to decrypt them at runtime to add the decrypted format of the parameter to your environment variable. It is useful if you don't use an AWS KMS key to decrypt parameters within your app.

To decrypt a parameter you just have to add ~true at the end of your AWS SSM Parameter path:

...

custom:
  serverlessSsmFetch:
    APP_SECRET: /aws/ssm/parameter/path/app_secret~true

...

Licensing

MIT License - Copyright © 2017 Emmanuel Lemoine

serverless-ssm-fetch's People

Contributors

addamh avatar clinton3141 avatar gozup avatar mykolasmith avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.