This would normally be a Matrix convo but many are out this week. Plus
there are apparently several independent groups involved here, so my
questions might not have a single answer. For background: I'm an AWS
expert, trying to get oriented to Fedora Infra AWS so I can both run
some Fedora CommOps POCs and contribute to general infra needs. I'm
curious about our Infrastructure as Code (IaC) situation as a first
point of orientation. From the AWS access SOP, it looks like user
access roles and policies are being created by hand in the AWS console.Â
Is that correct? I'm still learning my way around our mega-ansible and
nirk showed me the policies but I don't see any roles. Also, how are
various groups managing their AWS infra? (Terraform / CloudFormation /
something else?)Â Do we have a CI/CD somewhere for these things? And
what about billing alerts? Do we have a way for the right people (as
indicated by resource tags) to notice quickly whether they've
accidentally racked up some huge bills? If all of these capabilities are
missing today, I'd be happy to help address that. Thanks in advance!
Michael Winters