1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96locals {
name = "${var.project_name}-${var.environment}"
}
resource "aws_sns_topic" "alarms" {
name = "${local.name}-alarms"
}
resource "aws_sns_topic_subscription" "email" {
count = var.alarm_email != null ? 1 : 0
topic_arn = aws_sns_topic.alarms.arn
protocol = "email"
endpoint = var.alarm_email
}
resource "aws_cloudwatch_metric_alarm" "lambda_errors" {
for_each = toset(var.lambda_function_names)
alarm_name = "${each.value}-errors"
comparison_operator = "GreaterThanThreshold"
evaluation_periods = 1
metric_name = "Errors"
namespace = "AWS/Lambda"
period = 300
statistic = "Sum"
threshold = 0
treat_missing_data = "notBreaching"
dimensions = {
FunctionName = each.value
}
alarm_actions = [aws_sns_topic.alarms.arn]
ok_actions = [aws_sns_topic.alarms.arn]
}
resource "aws_cloudwatch_metric_alarm" "rds_free_storage" {
alarm_name = "${local.name}-rds-free-storage-low"
comparison_operator = "LessThanThreshold"
evaluation_periods = 1
metric_name = "FreeStorageSpace"
namespace = "AWS/RDS"
period = 300
statistic = "Average"
threshold = 2147483648 # 2 GiB
treat_missing_data = "breaching"
dimensions = {
DBInstanceIdentifier = var.rds_instance_id
}
alarm_actions = [aws_sns_topic.alarms.arn]
ok_actions = [aws_sns_topic.alarms.arn]
}
resource "aws_cloudwatch_metric_alarm" "hasura_unhealthy_hosts" {
alarm_name = "${local.name}-hasura-unhealthy-hosts"
comparison_operator = "GreaterThanThreshold"
evaluation_periods = 2
metric_name = "UnHealthyHostCount"
namespace = "AWS/ApplicationELB"
period = 60
statistic = "Maximum"
threshold = 0
treat_missing_data = "notBreaching"
dimensions = {
LoadBalancer = var.alb_arn_suffix
TargetGroup = var.target_group_arn_suffix
}
alarm_actions = [aws_sns_topic.alarms.arn]
ok_actions = [aws_sns_topic.alarms.arn]
}
resource "aws_cloudwatch_metric_alarm" "hasura_service_running_count" {
alarm_name = "${local.name}-hasura-no-running-tasks"
comparison_operator = "LessThanThreshold"
evaluation_periods = 1
metric_name = "RunningTaskCount"
namespace = "ECS/ContainerInsights"
period = 60
statistic = "Average"
threshold = 1
treat_missing_data = "breaching"
dimensions = {
ClusterName = var.ecs_cluster_name
ServiceName = var.ecs_service_name
}
alarm_actions = [aws_sns_topic.alarms.arn]
ok_actions = [aws_sns_topic.alarms.arn]
}