- Add comprehensive health check system with multiple endpoints - Add Prometheus metrics endpoint - Add production logging configurations (5 strategies) - Add complete deployment documentation suite: * QUICKSTART.md - 30-minute deployment guide * DEPLOYMENT_CHECKLIST.md - Printable verification checklist * DEPLOYMENT_WORKFLOW.md - Complete deployment lifecycle * PRODUCTION_DEPLOYMENT.md - Comprehensive technical reference * production-logging.md - Logging configuration guide * ANSIBLE_DEPLOYMENT.md - Infrastructure as Code automation * README.md - Navigation hub * DEPLOYMENT_SUMMARY.md - Executive summary - Add deployment scripts and automation - Add DEPLOYMENT_PLAN.md - Concrete plan for immediate deployment - Update README with production-ready features All production infrastructure is now complete and ready for deployment.
60 lines
1.6 KiB
PHP
60 lines
1.6 KiB
PHP
<?php
|
|
|
|
declare(strict_types=1);
|
|
|
|
namespace App\Framework\Vault;
|
|
|
|
use App\Framework\Config\Environment;
|
|
use App\Framework\Config\EnvKey;
|
|
use App\Framework\Database\ConnectionInterface;
|
|
use App\Framework\DI\Container;
|
|
use App\Framework\DI\Initializer;
|
|
use App\Framework\Http\ServerEnvironment;
|
|
use RuntimeException;
|
|
|
|
/**
|
|
* Vault Initializer für DI Container
|
|
*/
|
|
final readonly class VaultInitializer
|
|
{
|
|
public function __construct(
|
|
private Environment $environment,
|
|
private ConnectionInterface $connection,
|
|
private ServerEnvironment $serverEnvironment
|
|
) {
|
|
}
|
|
|
|
#[Initializer]
|
|
public function __invoke(Container $container): Vault
|
|
{
|
|
// Encryption Key aus Environment
|
|
$encodedKey = $this->environment->get(EnvKey::VAULT_ENCRYPTION_KEY);
|
|
|
|
if ($encodedKey === null) {
|
|
throw new RuntimeException(
|
|
'VAULT_ENCRYPTION_KEY not set in environment. ' .
|
|
'Generate one with: php console.php vault:generate-key'
|
|
);
|
|
}
|
|
|
|
// Decode base64-encoded key
|
|
$encryptionKey = DatabaseVault::decodeKey($encodedKey);
|
|
|
|
// Audit Logger
|
|
$auditLogger = new VaultAuditLogger($this->connection);
|
|
|
|
// Client IP und User Agent für Audit Logging
|
|
$clientIp = $this->serverEnvironment->getClientIp();
|
|
$userAgent = $this->serverEnvironment->getUserAgent();
|
|
|
|
// DatabaseVault instance
|
|
return new DatabaseVault(
|
|
connection: $this->connection,
|
|
encryptionKey: $encryptionKey,
|
|
auditLogger: $auditLogger,
|
|
clientIp: $clientIp,
|
|
userAgent: $userAgent
|
|
);
|
|
}
|
|
}
|