Files
michaelschiemer/src/Framework/DI/VaultServiceInitializer.php
Michael Schiemer fc3d7e6357 feat(Production): Complete production deployment infrastructure
- Add comprehensive health check system with multiple endpoints
- Add Prometheus metrics endpoint
- Add production logging configurations (5 strategies)
- Add complete deployment documentation suite:
  * QUICKSTART.md - 30-minute deployment guide
  * DEPLOYMENT_CHECKLIST.md - Printable verification checklist
  * DEPLOYMENT_WORKFLOW.md - Complete deployment lifecycle
  * PRODUCTION_DEPLOYMENT.md - Comprehensive technical reference
  * production-logging.md - Logging configuration guide
  * ANSIBLE_DEPLOYMENT.md - Infrastructure as Code automation
  * README.md - Navigation hub
  * DEPLOYMENT_SUMMARY.md - Executive summary
- Add deployment scripts and automation
- Add DEPLOYMENT_PLAN.md - Concrete plan for immediate deployment
- Update README with production-ready features

All production infrastructure is now complete and ready for deployment.
2025-10-25 19:18:37 +02:00

63 lines
1.7 KiB
PHP

<?php
declare(strict_types=1);
namespace App\Framework\DI;
use App\Framework\Config\Environment;
use App\Framework\Config\EnvKey;
use App\Framework\Database\ConnectionInterface;
use App\Framework\DateTime\Clock;
use App\Framework\Vault\DatabaseVault;
use App\Framework\Vault\Vault;
use App\Framework\Vault\VaultAuditLogger;
/**
* Vault Service Initializer
*
* Placed in DI directory for guaranteed discovery
*/
final readonly class VaultServiceInitializer
{
public function __construct(
private Environment $environment,
private ConnectionInterface $connection,
private Clock $clock
) {
}
#[Initializer]
public function __invoke(): Vault
{
// Encryption Key aus Environment
$encodedKey = $this->environment->get(EnvKey::VAULT_ENCRYPTION_KEY);
if ($encodedKey === null) {
throw new \RuntimeException(
'VAULT_ENCRYPTION_KEY not set in environment. ' .
'Generate one with: php console.php vault:generate-key'
);
}
// Decode base64-encoded key
$encryptionKey = DatabaseVault::decodeKey($encodedKey);
// Audit Logger
$auditLogger = new VaultAuditLogger($this->connection);
// Client IP und User Agent für Audit Logging (CLI context = null)
$clientIp = null;
$userAgent = null;
// DatabaseVault instance
return new DatabaseVault(
connection: $this->connection,
encryptionKey: $encryptionKey,
auditLogger: $auditLogger,
clock: $this->clock,
clientIp: $clientIp,
userAgent: $userAgent
);
}
}