|
| 1 | +terraform { |
| 2 | + required_version = ">= 0.12.6" |
| 3 | +} |
| 4 | + |
| 5 | +provider "aws" { |
| 6 | + version = ">= 2.28.1" |
| 7 | + region = var.region |
| 8 | +} |
| 9 | + |
| 10 | +provider "random" { |
| 11 | + version = "~> 2.1" |
| 12 | +} |
| 13 | + |
| 14 | +provider "local" { |
| 15 | + version = "~> 1.2" |
| 16 | +} |
| 17 | + |
| 18 | +provider "null" { |
| 19 | + version = "~> 2.1" |
| 20 | +} |
| 21 | + |
| 22 | +provider "template" { |
| 23 | + version = "~> 2.1" |
| 24 | +} |
| 25 | + |
| 26 | +data "aws_eks_cluster" "cluster" { |
| 27 | + name = module.eks.cluster_id |
| 28 | +} |
| 29 | + |
| 30 | +data "aws_eks_cluster_auth" "cluster" { |
| 31 | + name = module.eks.cluster_id |
| 32 | +} |
| 33 | + |
| 34 | +provider "kubernetes" { |
| 35 | + host = data.aws_eks_cluster.cluster.endpoint |
| 36 | + cluster_ca_certificate = base64decode(data.aws_eks_cluster.cluster.certificate_authority.0.data) |
| 37 | + token = data.aws_eks_cluster_auth.cluster.token |
| 38 | + load_config_file = false |
| 39 | + version = "~> 1.11" |
| 40 | +} |
| 41 | + |
| 42 | +data "aws_availability_zones" "available" { |
| 43 | +} |
| 44 | + |
| 45 | +locals { |
| 46 | + cluster_name = "test-eks-${random_string.suffix.result}" |
| 47 | +} |
| 48 | + |
| 49 | +resource "random_string" "suffix" { |
| 50 | + length = 8 |
| 51 | + special = false |
| 52 | +} |
| 53 | + |
| 54 | +module "vpc" { |
| 55 | + source = "terraform-aws-modules/vpc/aws" |
| 56 | + version = "2.47.0" |
| 57 | + |
| 58 | + name = "test-vpc" |
| 59 | + cidr = "172.16.0.0/16" |
| 60 | + azs = data.aws_availability_zones.available.names |
| 61 | + private_subnets = ["172.16.1.0/24", "172.16.2.0/24", "172.16.3.0/24"] |
| 62 | + public_subnets = ["172.16.4.0/24", "172.16.5.0/24", "172.16.6.0/24"] |
| 63 | + enable_nat_gateway = true |
| 64 | + single_nat_gateway = true |
| 65 | + enable_dns_hostnames = true |
| 66 | + |
| 67 | + public_subnet_tags = { |
| 68 | + "kubernetes.io/cluster/${local.cluster_name}" = "shared" |
| 69 | + "kubernetes.io/role/elb" = "1" |
| 70 | + } |
| 71 | + |
| 72 | + private_subnet_tags = { |
| 73 | + "kubernetes.io/cluster/${local.cluster_name}" = "shared" |
| 74 | + "kubernetes.io/role/internal-elb" = "1" |
| 75 | + } |
| 76 | +} |
| 77 | + |
| 78 | +module "eks" { |
| 79 | + source = "../.." |
| 80 | + cluster_name = local.cluster_name |
| 81 | + cluster_version = "1.17" |
| 82 | + subnets = module.vpc.private_subnets |
| 83 | + |
| 84 | + tags = { |
| 85 | + Environment = "test" |
| 86 | + GithubRepo = "terraform-aws-eks" |
| 87 | + GithubOrg = "terraform-aws-modules" |
| 88 | + } |
| 89 | + |
| 90 | + vpc_id = module.vpc.vpc_id |
| 91 | + |
| 92 | + fargate_profiles = { |
| 93 | + example = { |
| 94 | + namespace = "default" |
| 95 | + |
| 96 | + # Kubernetes labels for selection |
| 97 | + # labels = { |
| 98 | + # Environment = "test" |
| 99 | + # GithubRepo = "terraform-aws-eks" |
| 100 | + # GithubOrg = "terraform-aws-modules" |
| 101 | + # } |
| 102 | + |
| 103 | + tags = { |
| 104 | + Owner = "test" |
| 105 | + } |
| 106 | + } |
| 107 | + } |
| 108 | + |
| 109 | + map_roles = var.map_roles |
| 110 | + map_users = var.map_users |
| 111 | + map_accounts = var.map_accounts |
| 112 | +} |
0 commit comments