|
| 1 | +# aws_eks_cluster.my_cluster: |
| 2 | +resource "aws_eks_cluster" "zilliz_byoc_cluster" { |
| 3 | + bootstrap_self_managed_addons = false |
| 4 | + enabled_cluster_log_types = [] |
| 5 | + name = local.dataplane_id |
| 6 | + |
| 7 | + role_arn = aws_iam_role.eks_role.arn |
| 8 | + tags = { |
| 9 | + |
| 10 | + "Vendor" = "zilliz-byoc" |
| 11 | + } |
| 12 | + tags_all = { |
| 13 | + |
| 14 | + "Vendor" = "zilliz-byoc" |
| 15 | + } |
| 16 | + # version = "1.31" |
| 17 | + |
| 18 | + access_config { |
| 19 | + authentication_mode = "CONFIG_MAP" |
| 20 | + bootstrap_cluster_creator_admin_permissions = true |
| 21 | + } |
| 22 | + |
| 23 | + # kubernetes_network_config { |
| 24 | + # ip_family = "ipv4" |
| 25 | + # service_ipv4_cidr = "10.255.0.0/16" |
| 26 | + # } |
| 27 | + |
| 28 | + upgrade_policy { |
| 29 | + support_type = "EXTENDED" |
| 30 | + } |
| 31 | + |
| 32 | + vpc_config { |
| 33 | + endpoint_private_access = true |
| 34 | + endpoint_public_access = true |
| 35 | + public_access_cidrs = var.eks_access_cidrs |
| 36 | + security_group_ids = [ |
| 37 | + aws_security_group.zilliz_byoc_sg.id |
| 38 | + ] |
| 39 | + subnet_ids = module.vpc.private_subnets |
| 40 | + } |
| 41 | +} |
| 42 | + |
| 43 | + |
| 44 | +# aws_eks_addon.kube-proxy: |
| 45 | +resource "aws_eks_addon" "kube-proxy" { |
| 46 | + addon_name = "kube-proxy" |
| 47 | + # addon_version = "v1.27.6-eksbuild.2" |
| 48 | + cluster_name = local.dataplane_id |
| 49 | + |
| 50 | + depends_on = [ aws_eks_cluster.zilliz_byoc_cluster ] |
| 51 | + |
| 52 | + tags = { |
| 53 | + |
| 54 | + "Vendor" = "zilliz-byoc" |
| 55 | + } |
| 56 | + tags_all = { |
| 57 | + |
| 58 | + "Vendor" = "zilliz-byoc" |
| 59 | + } |
| 60 | +} |
| 61 | + |
| 62 | +# aws_eks_addon.vpc-cni: |
| 63 | +resource "aws_eks_addon" "vpc-cni" { |
| 64 | + addon_name = "vpc-cni" |
| 65 | + # addon_version = "v1.15.3-eksbuild.1" |
| 66 | + cluster_name = local.dataplane_id |
| 67 | + |
| 68 | + depends_on = [ aws_eks_cluster.zilliz_byoc_cluster ] |
| 69 | + |
| 70 | + tags = { |
| 71 | + |
| 72 | + "Vendor" = "zilliz-byoc" |
| 73 | + } |
| 74 | + tags_all = { |
| 75 | + |
| 76 | + "Vendor" = "zilliz-byoc" |
| 77 | + } |
| 78 | +} |
| 79 | + |
| 80 | +data "aws_eks_cluster_auth" "example" { |
| 81 | + name = aws_eks_cluster.zilliz_byoc_cluster.name |
| 82 | +} |
| 83 | + |
| 84 | + |
| 85 | +data "tls_certificate" "eks" { |
| 86 | + url = aws_eks_cluster.zilliz_byoc_cluster.identity[0].oidc[0].issuer |
| 87 | +} |
| 88 | + |
| 89 | +resource "aws_iam_openid_connect_provider" "eks" { |
| 90 | + client_id_list = ["sts.amazonaws.com"] |
| 91 | + thumbprint_list = [data.tls_certificate.eks.certificates[0].sha1_fingerprint] |
| 92 | + url = aws_eks_cluster.zilliz_byoc_cluster.identity[0].oidc[0].issuer |
| 93 | + |
| 94 | + tags = { |
| 95 | + "Vendor" = "zilliz-byoc" |
| 96 | + } |
| 97 | +} |
| 98 | + |
0 commit comments