Skip to main content

CDK Constructs for AWS S3 to AWS Step Function integration

Project description

aws-s3-step-function module

---

Stability: Experimental

All classes are under active development and subject to non-backward compatible changes or removal in any future version. These are not subject to the Semantic Versioning model. This means that while you may use them, you may need to update your source code when upgrading to a newer version of this package.


Reference Documentation: https://docs.aws.amazon.com/solutions/latest/constructs/
Language Package
Python Logo Python aws_solutions_constructs.aws_s3_step_function
Typescript Logo Typescript @aws-solutions-constructs/aws-s3-step-function
Java Logo Java software.amazon.awsconstructs.services.s3stepfunction

This AWS Solutions Construct implements an Amazon S3 bucket connected to an AWS Step Function.

Here is a minimal deployable pattern definition:

const { S3ToStepFunction, S3ToStepFunctionProps } = require('@aws-solutions-constructs/aws-s3-step-function');

const startState = new stepfunctions.Pass(stack, 'StartState');

const props: S3ToStepFunctionProps = {
    stateMachineProps: {
      definition: startState
    }
};

new S3ToStepFunction(stack, 'test-s3-step-function-stack', props);

Initializer

new S3ToStepFunction(scope: Construct, id: string, props: S3ToStepFunctionProps);

Parameters

Pattern Construct Props

Name Type Description
existingBucketObj? s3.IBucket Existing instance of S3 Bucket object, if this is set then the bucketProps is ignored.
bucketProps? s3.BucketProps User provided props to override the default props for the S3 Bucket.
stateMachineProps sfn.StateMachineProps Optional user provided props to override the default props for sfn.StateMachine
eventRuleProps? events.RuleProps Optional user provided eventRuleProps to override the defaults
deployCloudTrail? boolean Whether to deploy a Trail in AWS CloudTrail to log API events in Amazon S3

Pattern Properties

Name Type Description
stateMachine sfn.StateMachine Returns an instance of sfn.StateMachine created by the construct
stateMachineLogGroup logs.LogGroup Returns an instance of the LogGroup created by the construct for StateMachine
cloudwatchAlarms cloudwatch.Alarm[] Returns a list of cloudwatch.Alarm created by the construct
s3Bucket? s3.Bucket Returns an instance of the s3.Bucket created by the construct
s3LoggingBucket? s3.Bucket Returns an instance of s3.Bucket created by the construct as the logging bucket for the primary bucket.
cloudtrail cloudtrail.Trail Returns an instance of the cloudtrail.Trail created by the construct
cloudtrailBucket s3.Bucket Returns an instance of the s3.Bucket created by the construct for CloudTrail
cloudtrailLoggingBucket s3.Bucket Returns an instance of s3.Bucket created by the construct as the logging bucket for the primary CloudTrail bucket.

Default settings

Out of the box implementation of the Construct without any override will set the following defaults:

Amazon S3 Bucket

  • Configure Access logging for S3 Bucket
  • Enable server-side encryption for S3 Bucket using AWS managed KMS Key
  • Enforce encryption of data in transit
  • Turn on the versioning for S3 Bucket
  • Don't allow public access for S3 Bucket
  • Retain the S3 Bucket when deleting the CloudFormation stack

AWS CloudTrail

  • Configure a Trail in AWS CloudTrail to log API events in Amazon S3 related to the Bucket created by the Construct

Amazon CloudWatch Events Rule

  • Grant least privilege permissions to CloudWatch Events to trigger the Lambda Function

AWS Step Function

  • Enable CloudWatch logging for API Gateway
  • Deploy best practices CloudWatch Alarms for the Step Function

Architecture

Architecture Diagram


© Copyright 2020 Amazon.com, Inc. or its affiliates. All Rights Reserved.

Project details


Release history Release notifications | RSS feed

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

File details

Details for the file aws-solutions-constructs.aws-s3-step-function-1.60.0.tar.gz.

File metadata

File hashes

Hashes for aws-solutions-constructs.aws-s3-step-function-1.60.0.tar.gz
Algorithm Hash digest
SHA256 849f5a7e4749e7c853d997665230efdfd235d4859c81cb9cb4772ca9fac944a2
MD5 813a58b02681c70818de174373e91f8a
BLAKE2b-256 390742b641f4507c3b4b2de50796eacf6b0bb21c57617c227dab3a9c8bf88cd9

See more details on using hashes here.

File details

Details for the file aws_solutions_constructs.aws_s3_step_function-1.60.0-py3-none-any.whl.

File metadata

File hashes

Hashes for aws_solutions_constructs.aws_s3_step_function-1.60.0-py3-none-any.whl
Algorithm Hash digest
SHA256 572312dcb89edf66b1ebcc0eaa1d379aa67f5085a7096f3340ab6f048c87a120
MD5 1a7ad624904f8092cf712a28a2fc8238
BLAKE2b-256 b72f8b0f10ec186fa0be1e06113cd5574e7dc513006e4965b890664b3eb73a97

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page