{"id":48551,"date":"2022-12-09T11:56:08","date_gmt":"2022-10-31T17:04:56","guid":{"rendered":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/"},"modified":"2024-04-29T04:26:48","modified_gmt":"2024-04-28T20:26:48","slug":"%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82","status":"publish","type":"post","link":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/","title":{"rendered":"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09"},"content":{"rendered":"<h2>\u9996\u5148<\/h2>\n<p>\u6211\u662f\u7a7a\u4e2d\u8863\u6ae5\u7684\u5de5\u7a0b\u5e2bAin\u3002\u9019\u7bc7\u6587\u7ae0\u662f2023\u5e74\u7a7a\u4e2d\u8863\u6ae5\u964d\u4e34\u65e5\u5386\u7684\u7b2c17\u5929\u7684\u6587\u7ae0\u3002<\/p>\n<p>&nbsp;<\/p>\n<h2>Terraform\u662f\u4ec0\u4e48\uff1f<\/h2>\n<p>Terraform\u662f\u4e00\u79cd\u4f7f\u7528\u4ee3\u7801\u6765\u521b\u5efa\u548c\u7ba1\u7406\u57fa\u7840\u67b6\u6784\u8d44\u6e90\u7684\u57fa\u7840\u8bbe\u65bd\u5373\u4ee3\u7801\uff08IaC\uff09\u5de5\u5177\u3002<\/p>\n<p>\u5728Terraform\u4e2d\uff0c\u6709\u51e0\u4e2a\u57fa\u672c\u6982\u5ff5\u9700\u8981\u4e86\u89e3\u3002<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Terraform state<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Terraform resource<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Terraform variable<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">Terraform data source<\/ul>\n<p>\u63a5\u4e0b\u6765\uff0c\u6211\u4f1a\u7b80\u8981\u89e3\u91ca\u4e0a\u9762\u63d0\u5230\u7684\u6982\u5ff5\u3002<\/p>\n<h3>Terraform \u72b6\u6001<\/h3>\n<p>\u8fd9\u662f\u4e00\u4e2a\u5229\u7528Terraform\u6765\u8ffd\u8e2a\u5143\u6570\u636e\uff0c\u5e76\u63d0\u4f9b\u5b9e\u9645\u57fa\u7840\u67b6\u6784\u8d44\u6e90\u4e0e\u5f53\u524dterraform\u6e90\u4ee3\u7801\u4e4b\u95f4\u5f15\u7528\u7684\u5de5\u5177\u3002<\/p>\n<p>\u4ee5\u4e0b\u7684\u56fe\u50cf\u4e0e\u4e0a\u8ff0\u56fe\u50cf\u76f8\u540c\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/11-0.png\" alt=\"288647503-371205e9-5771-49df-b9d8-d8c88ff6bd2f.png\" \/><\/div>\n<p>Terraform state\u4e0d\u4ec5\u9002\u7528\u4e8e\u5355\u72ec\u64cd\u4f5c\uff0c\u5bf9\u56e2\u961f\u534f\u4f5c\u65f6\u5c24\u4e3a\u5f3a\u5927\u3002\u7b80\u5355\u6765\u8bf4\uff0c\u57fa\u4e8eTerraform state\uff0c\u56e2\u961f\u6210\u5458\u53ef\u4ee5\u7406\u89e3\u4ee5\u4e0b\u5185\u5bb9\uff1a<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">\u81ea\u5206\u306e\u30ed\u30fc\u30ab\u30eb\u306eTerraform\u30bd\u30fc\u30b9\u306f\u5b9f\u969b\u306e\u30a4\u30f3\u30d5\u30e9\u30ea\u30bd\u30fc\u30b9\u3068\u3069\u306e\u3088\u3046\u306b\u300c\u7570\u306a\u308b\u300d\u306e\u304b\u3002<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\u81ea\u5206\u306e\u30ed\u30fc\u30ab\u30eb\u306eTerraform\u30bd\u30fc\u30b9\u306f\u5b9f\u969b\u306e\u30a4\u30f3\u30d5\u30e9\u30ea\u30bd\u30fc\u30b9\u3068\u3069\u306e\u3088\u3046\u306b\u300cCONFLICT\u300d\u306e\u304b\u3002<\/ul>\n<p>Terraform state\u4ee5JSON\u683c\u5f0f\u4fdd\u5b58\u4e3aterraform.tfstate\u6587\u4ef6\u3002\u7136\u800c\uff0c\u5e94\u8be5\u5c06\u5176\u5b58\u50a8\u5728\u4e91\u73af\u5883\u4e2d\u5e76\u8fdb\u884c\u6b63\u786e\u7684\u52a0\u5bc6\u3002<\/p>\n<h3>\u571f\u5730\u6574\u6cbb\u8d44\u6e90<\/h3>\n<p>\u8d44\u6e90\u662fTerraform\u7684\u57fa\u672c\u7ec4\u4ef6\uff0c\u6bcf\u4e2a\u8d44\u6e90\u5757\u63cf\u8ff0\u4e00\u4e2a\u6216\u591a\u4e2a\u57fa\u7840\u8bbe\u65bd\u5bf9\u8c61\uff0c\u5982\u865a\u62df\u7f51\u7edc\uff08Virtual-network\uff09\u3001\u8ba1\u7b97\u5b9e\u4f8b\uff08Compute-instances\uff09\u7b49\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_vpc\"<\/span> <span class=\"s2\">\"main\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>           <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">vpc_cidr<\/span>\r\n\r\n  <span class=\"nx\">enable_dns_hostnames<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n  <span class=\"nx\">enable_dns_support<\/span>   <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span>   <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-vpc\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u5728\u4e0a\u8ff0\u7684\u4f8b\u5b50\u4e2d\uff0c\u6709\u4e00\u4e2a\u540d\u4e3a&#8221;main&#8221;\u7684aws_vpc\u3002\u5b83\u5305\u542b\u4ee5\u4e0b\u4fe1\u606f:<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">cidr_block<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">tags<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">dns_hostnames<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">&#8230;<\/ul>\n<p>\u6bcf\u4e2a\u8d44\u6e90\u90fd\u5177\u6709\u81ea\u5df1\u7684\u8f93\u51fa\uff08\u8fd9\u88ab\u8ba4\u4e3a\u662f\u6bcf\u4e2a\u8d44\u6e90\u7684\u516c\u5171\u5c5e\u6027\uff09\u3002<\/p>\n<p>\u5f53\u521b\u5efa aws_ec2 \u5b9e\u4f8b\u8d44\u6e90\u65f6\uff0c\u4f1a\u6709\u4ee5\u4e0b\u57fa\u672c\u7684\u516c\u5171\u5c5e\u6027:<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">arn<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">public_ip<\/ul>\n<p>\u8bf7\u53c2\u8003\u4ee5\u4e0b\u94fe\u63a5\u4e86\u89e3\u66f4\u8be6\u7ec6\u7684\u5185\u5bb9\uff1ahttps:\/\/registry.terraform.io\/providers\/hashicorp\/aws\/latest\/docs\/resources\/instance#attribute-reference<\/p>\n<h3>Terraform \u53d8\u91cf (Terraform<\/h3>\n<p>\u4e0e\u5176\u4ed6\u7f16\u7a0b\u8bed\u8a00\u4e00\u6837\uff0cTerraform\u4e5f\u5177\u6709\u81ea\u5df1\u7684\u53d8\u91cf\u5b9a\u4e49\u3002<\/p>\n<p>Terraform\u4e2d\u6709\u4e24\u79cd\u57fa\u672c\u7684\u53d8\u91cf\u7c7b\u578b\uff1a<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Input\u5909\u6570<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">Local\u5909\u6570<\/ul>\n<p>\u8f93\u5165\u53d8\u91cf\u7684\u5b9a\u4e49\u5982\u4e0b\u5f62\u5f0f\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">variable<\/span> <span class=\"nx\">app_name<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">string<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u4f7f\u7528\u53d8\u91cf\u5173\u952e\u8bcd\u6765\u786e\u5b9a\u53d8\u91cf\u7684\u7c7b\u578b\u3002<\/p>\n<p>\u8fd9\u4e9b\u53d8\u91cf\u53ef\u4ee5\u4f5c\u4e3a\u67d0\u4e2a\u6a21\u5757\u7684&#8221;\u53c2\u6570&#8221;\u6765\u4f7f\u7528\u3002<\/p>\n<p>\u5979\u6b63\u5728\u5199\u4e00\u5c01\u7535\u5b50\u90ae\u4ef6\u3002 (She is writing an email.)<\/p>\n<p>\u4ed6\u6b63\u5728\u770b\u7535\u89c6\u3002 (He is watching TV.)<\/p>\n<p>\u6211\u6b63\u5728\u6d17\u8863\u670d\u3002 (I am doing laundry.)<\/p>\n<p>\u4ed6\u6b63\u5728\u505a\u4f5c\u4e1a\u3002 (He is doing homework.)<\/p>\n<p>\u4ed6\u6b63\u5728\u5403\u5348\u996d\u3002 (He is having lunch.)<\/p>\n<p>\u4ed6\u6b63\u5728\u7ec3\u4e60\u94a2\u7434\u3002 (He is practicing piano.)<\/p>\n<p>\u6211\u6b63\u5728\u7b49\u670b\u53cb\u3002 (I am waiting for a friend.)<\/p>\n<p>\u4ed6\u6b63\u5728\u6563\u6b65\u3002 (He is taking a walk.)<\/p>\n<p>\u5979\u6b63\u5728\u6253\u7535\u8bdd\u3002 (She is making a phone call.)<\/p>\n<p>\u4ed6\u6b63\u5728\u559d\u5496\u5561\u3002 (He is drinking coffee.)<\/p>\n<pre class=\"post-pre\"><code><span class=\"c1\">\/\/ Module A<\/span>\r\n\r\n<span class=\"k\">variable<\/span> <span class=\"nx\">app_name<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">string<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u5728\u4e0a\u8ff0\u4ee3\u7801\u4e2d\uff0c\u5b9a\u4e49\u4e86\u4e00\u4e2a\u540d\u4e3aA\u7684\u6a21\u5757\uff0c\u8be5\u6a21\u5757\u9700\u8981\u4e00\u4e2a\u540d\u4e3a &#8220;app_name&#8221; \u7684\u53c2\u6570\u3002\u5982\u679c\u53e6\u4e00\u4e2a\u6a21\u5757\u8981\u4f7f\u7528\u8fd9\u4e2a\u6a21\u5757A\uff0c\u5fc5\u987b\u6309\u7167\u4ee5\u4e0b\u65b9\u5f0f\u6267\u884c\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">module<\/span> <span class=\"s2\">\"A\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\".\/module_A\"<\/span>\r\n\r\n  <span class=\"nx\">app_name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"Sample App\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u672c\u5730\u53d8\u91cf\u7684\u5b9a\u4e49\u901a\u5e38\u4ee5\u4ee5\u4e0b\u5f62\u5f0f\u4e3a\u4f8b\uff1a<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">locals<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">test_variable<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"test\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u8fd9\u4e9b\u672c\u5730\u53d8\u91cf\u4ec5\u5728\u5b9a\u4e49\u5b83\u4eec\u7684\u6a21\u5757\u5185\u90e8\u6709\u6548\u3002<\/p>\n<h3>\u57fa\u7840\u8bbe\u65bd\u4ee3\u7801\u5316\u7684\u6570\u636e\u6e90<\/h3>\n<p>Terraform\u6570\u636e\u6e90\u662f\u7528\u6765\u5141\u8bb8\u4f7f\u7528Terraform\u672a\u5b9a\u4e49\u7684\u8d44\u6e90\uff0c\u4f8b\u5982\uff0c\u5f15\u7528\u7cfb\u7edf\u5185\u73b0\u6709\u7684\u57fa\u7840\u8bbe\u65bd\u8d44\u6e90\u3002<\/p>\n<p>\u6839\u636e\u4e2a\u4eba\u7ecf\u9a8c\uff0cTerraform\u6570\u636e\u6e90\u5bf9\u4e8e\u4ee5\u524d\u9700\u8981\u624b\u52a8\u8bbe\u7f6e\u57fa\u7840\u67b6\u6784\u7684\u7cfb\u7edf\u6765\u8bf4\u975e\u5e38\u65b9\u4fbf\u3002<\/p>\n<p>\u4f7f\u7528Terraform\u6570\u636e\u6e90\uff0c\u53ef\u4ee5\u8ba9\u6211\u4eec\u80fd\u591f\u5f15\u7528\u8fd9\u4e9b\u201clegacy resources\u201d\u3002<\/p>\n<p>\u8bf7\u5e2e\u6211\u7ffb\u8bd1\u4e0b\u9762\u7684\u53e5\u5b50\u4e3a\u4e2d\u6587\uff0c\u53ea\u9700\u63d0\u4f9b\u4e00\u79cd\u9009\u9879:<\/p>\n<p>Words have the power to both destroy and heal. When words are both true and kind, they can change our world.<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">data<\/span> <span class=\"s2\">\"aws_ami\"<\/span> <span class=\"s2\">\"example\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">most_recent<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n\r\n  <span class=\"nx\">owners<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"s2\">\"self\"<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\"app-server\"<\/span>\r\n    <span class=\"nx\">Tested<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"true\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u4ee5\u4e0a\u7684\u4ee3\u7801\u5c06\u53c2\u8003\u73b0\u6709\u7684aws_ami\u3002<\/p>\n<h2>\u5fae\u670d\u52a1\u7cfb\u7edf\u7684\u57fa\u7840\u8bbe\u65bd\u67b6\u6784<\/h2>\n<p>\u8fd9\u6b21\u6211\u4eec\u5c06\u90e8\u7f72\u4e09\u4e2a\u5fae\u670d\u52a1\uff08A\u3001B\u3001C\uff09\u3002\u6bcf\u4e2a\u5fae\u670d\u52a1\u5c06\u6309\u7167\u57fa\u672c\u67b6\u6784\u8fdb\u884c\u6267\u884c\u3002<\/p>\n<p>\u7f51\u7edc\u67b6\u6784\uff08\u865a\u62df\u79c1\u6709\u4e91\u3001\u516c\u5171\u5b50\u7f51\u3001\u79c1\u6709\u5b50\u7f51\uff09<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/49-0.png\" alt=\"288771113-da08fd8d-4644-4a4b-ab7b-112b1fe44791.png\" \/><\/div>\n<p>\u5728\u8fd9\u91cc\uff0c\u6211\u4eec\u5c06\u5206\u6790\u56fe\u8868\u4e2d\u7684\u6bcf\u4e2a\u7ec4\u6210\u8981\u7d20\u3002\u5bf9\u4e8e\u6bcf\u4e2a\u670d\u52a1\uff0c\u6211\u4eec\u5c06\u521b\u5efa\u5355\u72ec\u7684VPC\u3002<\/p>\n<p>VPC\u4e2d\u5fc5\u4e0d\u53ef\u5c11\u7684\u662fpublic_subnet\u548cprivate_subnet\u3002\u800c\u4e3a\u4e86\u8ba9private_subnet\u5185\u7684\u8d44\u6e90\u80fd\u591f\u8bbf\u95ee\u5916\u90e8\u4e92\u8054\u7f51\uff0c\u9700\u8981\u8bbe\u7f6enat_gateway\u5e76\u5c06\u5176\u90e8\u7f72\u5728public_subnet\u5185\u3002<\/p>\n<p>\u6570\u636e\u5e93\uff08\u5728\u8fd9\u91cc\u662fAWS RDS\uff09\u88ab\u90e8\u7f72\u5728private_subnet\u5185\uff0c\u4f46\u53ea\u63a5\u53d7\u4ee5\u4e0b\u4e24\u4e2a\u8f93\u5165\uff1a<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">VPC\u306e\u5185\u90e8\u3002<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">Proxy (\u5916\u90e8\u306e\u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u304b\u3089\u6765\u308c\u3070)\u3002<\/ul>\n<p>AWS ECS \u5c06\u90e8\u7f72\u5728 private_subnet \u5185\uff0c\u7528\u4e8e\u6267\u884c\u670d\u52a1\u7684\u670d\u52a1\u5668\u4ee3\u7801\u3002<\/p>\n<p>\u5e94\u7528\u7a0b\u5e8f\u67b6\u6784\uff08ECS\u3001\u8d1f\u8f7d\u5747\u8861\u5668\uff09<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/56-0.png\" alt=\"288774107-7334d9cf-345d-4f41-9f90-d0496814e654.png\" \/><\/div>\n<p>\u5728\u8fd9\u91cc\uff0c\u628aApplication Load Balancer\u653e\u5728ECS\u4e4b\u524d\uff0c\u7136\u540e\u5728ECS\u5185\u90e8\u653e\u7f6enginx\u8d1f\u8f7d\u5747\u8861\u5668\uff0c\u4f5c\u4e3a\u53cd\u5411\u4ee3\u7406\u6765\u4fdd\u62a4\u5728ECS\u670d\u52a1\u5185\u6267\u884c\u7684\u670d\u52a1\u5668\u4ee3\u7801\u7684\u89d2\u8272\u3002<\/p>\n<h2>\u67e5\u9605\u4ee3\u7801<\/h2>\n<p>\u8bf7\u53c2\u8003\u4ee5\u4e0b\u94fe\u63a5\u4ee5\u67e5\u770b\u5b8c\u6574\u7684\u6e90\u4ee3\u7801\uff1a<br \/>\nhttps:\/\/github.com\/tuananhhedspibk\/NewAnigram-Infrastructure<\/p>\n<h3>\u5efa\u7acb\u6587\u4ef6\u593e<\/h3>\n<p>\u4ee5\u6a21\u5757\u4e3a\u5355\u4f4d\u8fdb\u884c\u8d44\u6e90\u7ba1\u7406\u3002<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">network: vpc, public_subnet, private_subnet<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">ecs_api: ecs_task_definition, ecs_service<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">ecs_cluster: cluster<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">proxy: database proxy<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">rds: database<\/ul>\n<p>\u7b2c\u4e00\u5c42\u5916\u90e8\u662f\u4ee5\u4e0b\u7684main.tf\u6587\u4ef6\uff1a<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">module<\/span> <span class=\"s2\">\"network\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/network\"<\/span>\r\n  <span class=\"c1\">\/\/ ...<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"k\">module<\/span> <span class=\"s2\">\"proxy\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/proxy\"<\/span>\r\n  <span class=\"c1\">\/\/ ...<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"k\">module<\/span> <span class=\"s2\">\"rds\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/rds\"<\/span>\r\n  <span class=\"c1\">\/\/ ...<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"k\">module<\/span> <span class=\"s2\">\"ecs_cluster\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/ecs_cluster\"<\/span>\r\n  <span class=\"c1\">\/\/ ...<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"k\">module<\/span> <span class=\"s2\">\"ecs_api\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/ecs_api\"<\/span>\r\n  <span class=\"c1\">\/\/ ...<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h3>\u7f51\u7edc\u6a21\u5757<\/h3>\n<p>\u5728\u8fd9\u4e2a\u6a21\u5757\u4e2d\uff0c\u5b9a\u4e49\u4e86\u4ee5\u4e0b\u5185\u5bb9\uff1a<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">vpc<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">public_subnet<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">private_subnet<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">nat_gateway<\/ul>\n<p>vpc\u662f\u4ec0\u4e48<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_vpc\"<\/span> <span class=\"s2\">\"main\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">cidr_block<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"10.0.0.0\/16\"<\/span>\r\n\r\n  <span class=\"nx\">enable_dns_hostnames<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n  <span class=\"nx\">enable_dns_support<\/span>   <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-vpc\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u5728\u5b9a\u4e49 VPC \u65f6\uff0c\u6700\u91cd\u8981\u7684\u662f\u6307\u5b9a cidr_block\u3002cidr_block \u88ab\u89c6\u4e3a VPC \u7684\u7f51\u7edc\u5730\u5740\uff08\u865a\u62df\u5730\u5740\uff09\u3002<\/p>\n<p>public_subnet \u5982\u4e0b\u6240\u793a\uff1a<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"public\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"p\">.<\/span><span class=\"nx\">main<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span> <span class=\"c1\">\/\/ id c\u1ee7a vpc resource<\/span>\r\n\r\n  <span class=\"nx\">count<\/span>                   <span class=\"p\">=<\/span> <span class=\"nx\">length<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">public_subnets_cidr<\/span><span class=\"p\">)<\/span> <span class=\"c1\">\/\/ public_subnet\u306e\u6570<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>              <span class=\"p\">=<\/span> <span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">public_subnets_cidr<\/span><span class=\"p\">,<\/span> <span class=\"nx\">count<\/span><span class=\"p\">.<\/span><span class=\"nx\">index<\/span><span class=\"p\">)<\/span> <span class=\"c1\">\/\/ cidr_block\u8a2d\u5b9a - \u30b5\u30d6\u30cd\u30c3\u30c8\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30a2\u30c9\u30ec\u30b9\u3064\u307e\u308a\u30b5\u30d6\u30cd\u30c3\u30c8\u5206\u3051\u308b\u3053\u3068<\/span>\r\n  <span class=\"nx\">availability_zone<\/span>       <span class=\"p\">=<\/span> <span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">availability_zones<\/span><span class=\"p\">,<\/span> <span class=\"nx\">count<\/span><span class=\"p\">.<\/span><span class=\"nx\">index<\/span><span class=\"p\">)<\/span>\r\n  <span class=\"nx\">map_public_ip_on_launch<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-public-subnet-<\/span><span class=\"k\">${<\/span><span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">availability_zones<\/span><span class=\"p\">,<\/span> <span class=\"nx\">count<\/span><span class=\"p\">.<\/span><span class=\"nx\">index<\/span><span class=\"p\">)<\/span><span class=\"k\">}<\/span><span class=\"s2\">\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u516c\u5171\u5b50\u7f51\uff08public_subnet\uff09\u662f\u4e00\u79cd\u53ef\u4ee5\u4ece\u5168\u7403\u4e92\u8054\u7f51\u4e2d\u8bbf\u95ee\u7684\u5b50\u7f51\u3002\u56e0\u6b64\uff0c\u901a\u8fc7\u5c06map_public_ip_on_launch\u5c5e\u6027\u8bbe\u7f6e\u4e3atrue\uff0c\u786e\u4fdd\u8be5\u5b50\u7f51\u5177\u6709\u516c\u5171IP\u5730\u5740\uff0c\u4ee5\u4fbf\u4ece\u5168\u7403\u4e92\u8054\u7f51\u4e2d\u53ef\u89c1\u3002<\/p>\n<p>\u79c1\u6709\u5b50\u7f51<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"public\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"p\">.<\/span><span class=\"nx\">main<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span> <span class=\"c1\">\/\/ id c\u1ee7a vpc resource<\/span>\r\n\r\n  <span class=\"nx\">count<\/span>                   <span class=\"p\">=<\/span> <span class=\"nx\">length<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">private_subnets_cidr<\/span><span class=\"p\">)<\/span> <span class=\"c1\">\/\/ private_subnet\u306e\u6570<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>              <span class=\"p\">=<\/span> <span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">private_subnets_cidr<\/span><span class=\"p\">,<\/span> <span class=\"nx\">count<\/span><span class=\"p\">.<\/span><span class=\"nx\">index<\/span><span class=\"p\">)<\/span> <span class=\"c1\">\/\/ cidr_block\u8a2d\u5b9a - \u30b5\u30d6\u30cd\u30c3\u30c8\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30a2\u30c9\u30ec\u30b9\u3064\u307e\u308a\u30b5\u30d6\u30cd\u30c3\u30c8\u5206\u3051\u308b\u3053\u3068<\/span>\r\n  <span class=\"nx\">availability_zone<\/span>       <span class=\"p\">=<\/span> <span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">availability_zones<\/span><span class=\"p\">,<\/span> <span class=\"nx\">count<\/span><span class=\"p\">.<\/span><span class=\"nx\">index<\/span><span class=\"p\">)<\/span>\r\n  <span class=\"nx\">map_public_ip_on_launch<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">false<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-public-subnet-<\/span><span class=\"k\">${<\/span><span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">availability_zones<\/span><span class=\"p\">,<\/span> <span class=\"nx\">count<\/span><span class=\"p\">.<\/span><span class=\"nx\">index<\/span><span class=\"p\">)<\/span><span class=\"k\">}<\/span><span class=\"s2\">\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u79c1\u6709\u5b50\u7f51\u662f\u79c1\u6709\u7684\uff0c\u4e5f\u5c31\u662f\u8bf4\u5b83\u5728\u5916\u90e8\u4e92\u8054\u7f51\u4e0a\u662f\u4e0d\u53ef\u89c1\u7684\uff0c\u5e76\u4e14\u5c06map_public_ip_on_launch\u5c5e\u6027\u8bbe\u7f6e\u4e3afalse\u7684\u79c1\u6709\u5b50\u7f51\u4e0d\u5e94\u5206\u914dpublic_ip\u5730\u5740\u3002<\/p>\n<p>\u5bf9\u4e8enat_gateway\u7684\u60c5\u51b5\uff0c<\/p>\n<pre class=\"post-pre\"><code><span class=\"c1\">\/\/ NAT\u306b\u30a2\u30b5\u30a4\u30f3\u3059\u308bElasticIp\u5b9a\u7fa9<\/span>\r\n<span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_eip\"<\/span> <span class=\"s2\">\"nat\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc<\/span>        <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n  <span class=\"nx\">depends_on<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_internet_gateway<\/span><span class=\"p\">.<\/span><span class=\"nx\">main<\/span><span class=\"p\">]<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\">\/\/ NAT gateway<\/span>\r\n<span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_nat_gateway\"<\/span> <span class=\"s2\">\"main\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">allocation_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_eip<\/span><span class=\"p\">.<\/span><span class=\"nx\">nat<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">subnet_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">element<\/span><span class=\"p\">(<\/span><span class=\"nx\">aws_subnet<\/span><span class=\"p\">.<\/span><span class=\"nx\">public<\/span><span class=\"p\">.*.<\/span><span class=\"nx\">id<\/span><span class=\"p\">,<\/span> <span class=\"mi\">0<\/span><span class=\"p\">)<\/span> <span class=\"c1\">\/\/ nat_gateway\u3092public_subnet\u306b\u914d\u7f6e\u3059\u308b\u3053\u3068<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-nat\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>NAT\u7f51\u5173\u5141\u8bb8\u4f4d\u4e8e\u79c1\u6709\u5b50\u7f51\u4e2d\u7684\u5b9e\u4f8b\u8fde\u63a5\u5230\u5916\u90e8\u4e92\u8054\u7f51\uff0c\u4f46\u7981\u6b62\u5916\u90e8\u4e92\u8054\u7f51\u8fde\u63a5\u5230\u79c1\u6709\u5b50\u7f51\u4e2d\u7684\u5b9e\u4f8b\u3002<\/p>\n<p>\u8bf7\u5728\u6b64\u5904\u8be6\u7ec6\u67e5\u9605\uff1ahttps:\/\/docs.aws.amazon.com\/vpc\/latest\/userguide\/vpc-nat-gateway.html\u3002<\/p>\n<p>\u4e0a\u8ff0\u7684nat_gateway\u6784\u5efa\u8fc7\u7a0b\u9700\u8981\u4ee5\u4e0b\u6b65\u9aa4<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">nat_gateway\u306eElasticIp\u8a2d\u5b9a\u3059\u308b<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">private_subnet\u5185\u306e\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u304c\u5916\u90e8\u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u63a5\u7d9a\u3059\u308b\u305f\u3081nat_gateway\u3092public_subnet\u306b\u914d\u7f6e\u3059\u308b<\/ul>\n<h3>\u4ee3\u7406\u6a21\u5757<\/h3>\n<p>\u8fd9\u4e2a\u4ee3\u7406\u53ea\u662f\u4e00\u53f0EC2\u5b9e\u4f8b\uff0c\u5e76\u4e14\u8bbe\u7f6e\u4ee3\u7406\u7684\u771f\u6b63\u76ee\u7684\u662f\u4ec0\u4e48\u3002<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">RDS\u306fprivate_subnet\u5185\u306b\u914d\u7f6e\u3055\u308c\u308b\u304b\u3089\u30a8\u30f3\u30b8\u30cb\u30a2\u304cRDS\u63a5\u7d9a\u3059\u308b\u305f\u3081<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">RDS\u306b\u63a5\u7d9a\u3059\u308b\u3053\u3068\u3092\u5236\u9650\u3059\u308b\u3053\u3068<\/ul>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/86-0.png\" alt=\"288911676-c3e89d04-0372-4dd0-bf67-5d66417c30f6.png\" \/><\/div>\n<p>\u5f53\u770b\u5230\u56fe\u50cf4\u65f6\uff0c\u6211\u4eec\u53ef\u4ee5\u60f3\u8c61\u51fa\u5de5\u7a0b\u5e08\u901a\u8fc7SSH\u96a7\u9053\u8fde\u63a5\u5230\u4ee3\u7406\u670d\u52a1\u5668\uff0c\u7136\u540e\u4ece\u4ee3\u7406\u670d\u52a1\u5668\u8bbf\u95eeRDS\u7684\u60c5\u666f\u3002<\/p>\n<p>\u6b63\u56e0\u4e3a\u5982\u6b64\uff0c\u4ee3\u7406\u670d\u52a1\u5668\u88ab\u7528\u4f5c\u4fdd\u62a4RDS\u7684\u5c4f\u969c\u3002<\/p>\n<p>\u4f7f\u7528\u4e2d\u6587\u8fdb\u884c\u540c\u4e49\u6539\u5199\uff1a<\/p>\n<p>\u4ee3\u7406\u670d\u52a1\u5668\u7684\u8bbe\u7f6e\u662f<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_security_group\"<\/span> <span class=\"s2\">\"proxy\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">name<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-proxy-sg\"<\/span>\r\n  <span class=\"nx\">description<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\"Allow ssh connect to db proxy\"<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>        <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">vpc_id<\/span>\r\n\r\n  <span class=\"c1\">\/\/ Inbound rule<\/span>\r\n  <span class=\"nx\">ingress<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">from_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">22<\/span>\r\n    <span class=\"nx\">to_port<\/span>     <span class=\"p\">=<\/span> <span class=\"mi\">22<\/span>\r\n    <span class=\"nx\">protocol<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n    <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"p\">}<\/span>\r\n\r\n  <span class=\"c1\">\/\/ Outbound rule<\/span>\r\n  <span class=\"nx\">egress<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">from_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">0<\/span>\r\n    <span class=\"nx\">to_port<\/span>     <span class=\"p\">=<\/span> <span class=\"mi\">0<\/span>\r\n    <span class=\"nx\">protocol<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"-1\"<\/span>\r\n    <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"p\">}<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-proxy-sg\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_instance\"<\/span> <span class=\"s2\">\"proxy\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">instance_type<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\"t2.micro\"<\/span>\r\n  <span class=\"nx\">ami<\/span>             <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">ami<\/span>\r\n\r\n  <span class=\"nx\">subnet_id<\/span>       <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">subnet_id<\/span> <span class=\"c1\">\/\/ public_subnet id<\/span>\r\n  <span class=\"nx\">security_groups<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">proxy<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">key_name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"key_pair_name\"<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-db-proxy\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u4e3a\u4e86\u9650\u5236\u901a\u8fc7SSH\u8bbf\u95ee\u4ee3\u7406\u7684\u8bbf\u95ee\u6743\u9650\uff0c\u50cf\u4e0a\u9762\u7684\u4ee3\u7801\u4e00\u6837\uff0c\u8bbe\u7f6e\u4ee3\u7406\u5b89\u5168\u7ec4\u7684\u5165\u7ad9\u89c4\u5219\uff0c\u53ea\u5141\u8bb8\u7aef\u53e322\u901a\u8fc7\u3002<\/p>\n<p>\u53ea\u9700\u4e00\u4e2a\u9009\u9879\u8bed\u4e49\u91ca\u4e49\uff1a\u7531\u4e8eProxy\u53ea\u5145\u5f53\u4f5c\u4e3aRDS\u4e4b\u524d\u7684\u201c\u7f13\u51b2\u533a\u57df\u201d\u7684\u89d2\u8272\uff0c\u6240\u4ee5\u53ea\u9700\u8981\u4e00\u4e2a\u5fae\u578b\u5b9e\u4f8b\u5c31\u8db3\u591f\u4e86\u3002\u5f53\u7136\u4e86\uff0c\u4e3a\u4e86\u8ba9Proxy\u80fd\u591f\u4ece\u5916\u90e8\u4e92\u8054\u7f51\u8bbf\u95ee\uff0c\u6211\u4eec\u9700\u8981\u5c06\u5176\u653e\u7f6e\u5728public_subnet\u4e0a\u3002<\/p>\n<h3>RDS\u6a21\u5757<\/h3>\n<p>\u6211\u5b9a\u4e49\u4e86\u4e00\u4e2aRDS\u5b9e\u4f8b\u548c\u5305\u542b\u8be5\u5b9e\u4f8b\u7684\u96c6\u7fa4\u3002\u4e3b\u8981\u76ee\u7684\u662f\u5b58\u50a8\u6570\u636e\uff08\u6362\u53e5\u8bdd\u8bf4\uff0c\u8fd9\u662f\u4e00\u4e2a\u670d\u52a1\u7684\u6570\u636e\u5e93\uff09\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_rds_cluster\"<\/span> <span class=\"s2\">\"this\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">cluster_identifier<\/span>              <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-mysql-cluster\"<\/span>\r\n  <span class=\"nx\">engine<\/span>                          <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">rds_engine<\/span>\r\n  <span class=\"nx\">engine_version<\/span>                  <span class=\"p\">=<\/span> <span class=\"s2\">\"8.0.mysql_aurora.3.02.0\"<\/span> <span class=\"c1\">\/\/ \u30a8\u30f3\u30b8\u30f3\u5b9a\u7fa9: mysql \u307e\u305f\u306f postgreSQL<\/span>\r\n\r\n  <span class=\"nx\">db_cluster_parameter_group_name<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_rds_cluster_parameter_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">default<\/span><span class=\"p\">.<\/span><span class=\"nx\">name<\/span>\r\n  <span class=\"nx\">db_subnet_group_name<\/span>            <span class=\"p\">=<\/span> <span class=\"nx\">aws_db_subnet_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">aurora_subnet_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">name<\/span>\r\n  <span class=\"nx\">vpc_security_group_ids<\/span>          <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">this<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">port<\/span>                            <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">port<\/span>\r\n\r\n  <span class=\"nx\">database_name<\/span>                   <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">database_name<\/span> <span class=\"c1\">\/\/ DB\u540d<\/span>\r\n  <span class=\"nx\">master_username<\/span>                 <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">master_username<\/span>\r\n  <span class=\"nx\">master_password<\/span>                 <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">master_password<\/span>\r\n\r\n  <span class=\"nx\">skip_final_snapshot<\/span>             <span class=\"p\">=<\/span> <span class=\"kc\">false<\/span>\r\n  <span class=\"nx\">final_snapshot_identifier<\/span>       <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-mysql-final-snapshot\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_rds_cluster_instance\"<\/span> <span class=\"s2\">\"this\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">identifier<\/span>              <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">-mysql-identifier\"<\/span>\r\n  <span class=\"nx\">cluster_identifier<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_rds_cluster<\/span><span class=\"p\">.<\/span><span class=\"nx\">this<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span>\r\n\r\n  <span class=\"nx\">db_subnet_group_name<\/span>    <span class=\"p\">=<\/span> <span class=\"nx\">aws_db_subnet_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">aurora_subnet_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">name<\/span>\r\n  <span class=\"nx\">db_parameter_group_name<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_db_parameter_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">default<\/span><span class=\"p\">.<\/span><span class=\"nx\">name<\/span>\r\n\r\n  <span class=\"nx\">engine<\/span>                  <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">rds_engine<\/span>\r\n  <span class=\"nx\">instance_class<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"db.t3.medium\"<\/span> <span class=\"c1\">\/\/ rds\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u306e\u30ad\u30e3\u30d1\u30b7\u30c6\u30a3<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u57fa\u672c\u4e0a\u6765\u8bf4\uff0c\u6211\u8ba4\u4e3a\u8bbe\u7f6eRDS\u5b9e\u4f8b\u4e0d\u662f\u7279\u522b\u590d\u6742\u7684\u5de5\u4f5c\u3002\u5982\u9700\u8be6\u7ec6\u4e86\u89e3\uff0c\u8bf7\u53c2\u8003 https:\/\/registry.terraform.io\/providers\/hashicorp\/aws\/latest\/docs\/resources\/rds_cluster_instance\u3002<\/p>\n<p>\u5728\u5b9e\u9645\u8fd0\u8425\u4e2d\uff0c\u8bf7\u6ce8\u610f\u4ee5\u4e0b\u4e00\u70b9\uff1a\u8bf7\u4e0d\u8981\u4f7f\u7528master_username\u548cmaster_password\u3002\u4e25\u683c\u6765\u8bf4\uff0c\u5e76\u4e0d\u662f\u7edd\u5bf9\u4e0d\u80fd\u4f7f\u7528\uff0c\u4f46\u76f8\u53cd\uff0c\u8bf7\u8003\u8651\u4ee5\u4e0b\u66ff\u4ee3\u65b9\u6cd5\uff1a<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">\u30a8\u30f3\u30b8\u30cb\u30a2\u3054\u3068\u306b\u7279\u5b9a\u30a2\u30ab\u30a6\u30f3\u30c8\u3068\u7d10\u4ed8\u3051\u308b\u6a29\u9650\u3092\u6307\u5b9a\u3059\u308b<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\u30b5\u30fc\u30d3\u30b9\u3082\u524d\u306b\u6307\u5b9a\u3057\u305f\u30a2\u30ab\u30a6\u30f3\u30c8\u3067DB\u306b\u63a5\u7d9a\u3059\u308b<\/ul>\n<p>\u8fd9\u4e2a\u4efb\u52a1\u7684\u76ee\u7684\u662f\u5728\u7cfb\u7edf\u5d29\u6e83\u6216\u53d1\u751f\u4e8b\u6545\u65f6\uff0c\u8fdb\u884c\u539f\u56e0\u8c03\u67e5\u5e76\u660e\u786e\u8c01\u6267\u884c\u4e86\u4ec0\u4e48SQL\u8bed\u53e5\u3002<\/p>\n<h3>ECS\u96c6\u7fa4\u548cECS API\u6a21\u5757<\/h3>\n<p>\u5c06\u8fd9\u4e24\u4e2a\u6a21\u5757\u5408\u5e76\u6210\u4e00\u4e2a\u7684\u539f\u56e0\u662f\u5b83\u4eec\u90fd\u4e0eECS\u76f8\u5173\u3002\u5c06\u8fd9\u4e24\u4e2a\u5b50\u6a21\u5757\u5206\u5272\u4e3a\u7fa4\u96c6\u548cAPI\u7684\u4e3b\u8981\u76ee\u7684\u53ea\u662f\u4e3a\u4e86\u5c06ecs_cluster\u7684\u5b9a\u4e49\u4e0eecs_service\u5206\u79bb\u3002<\/p>\n<p>\u5bf9\u4e8eecs\u96c6\u7fa4\u6765\u8bf4<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_ecs_cluster\"<\/span> <span class=\"s2\">\"this\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"<\/span><span class=\"k\">${<\/span><span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span><span class=\"k\">}<\/span><span class=\"s2\">\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>The ECS API is<br \/>\nECS API \u662f<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_ecs_service\"<\/span> <span class=\"s2\">\"this\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">depends_on<\/span>      <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_lb_listener_rule<\/span><span class=\"p\">.<\/span><span class=\"nx\">this<\/span><span class=\"p\">]<\/span>\r\n\r\n  <span class=\"nx\">name<\/span>            <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">app_name<\/span>\r\n\r\n  <span class=\"nx\">desired_count<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">1<\/span>\r\n  <span class=\"nx\">launch_type<\/span>     <span class=\"p\">=<\/span> <span class=\"s2\">\"FARGATE\"<\/span>\r\n  <span class=\"c1\">\/\/ fargate\u4f7f\u7528\u3059\u308b\u76ee\u7684\u306fAWS\u304c\u5404\u30b5\u30fc\u30d0\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u3092\u7ba1\u7406\u3057\u3066\u304f\u308c\u308b\u3002<\/span>\r\n\r\n  <span class=\"nx\">cluster<\/span>         <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">cluster_name<\/span>\r\n  <span class=\"nx\">task_definition<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_ecs_task_definition<\/span><span class=\"p\">.<\/span><span class=\"nx\">this<\/span><span class=\"p\">.<\/span><span class=\"nx\">arn<\/span> <span class=\"c1\">\/\/ task_defintion\u306b\u53c2\u7167\u3059\u308b<\/span>\r\n\r\n  <span class=\"nx\">network_configuration<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">subnets<\/span>         <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">subnet_ids<\/span>\r\n    <span class=\"nx\">security_groups<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"p\">.<\/span><span class=\"nx\">this<\/span><span class=\"p\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"p\">}<\/span>\r\n\r\n  <span class=\"nx\">load_balancer<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">container_name<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\"nginx\"<\/span>\r\n    <span class=\"nx\">container_port<\/span>   <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">port_nginx<\/span>\r\n    <span class=\"nx\">target_group_arn<\/span> <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">lb_target_group_arn<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u4e3a\u4e86\u8ffd\u8e2a\uff0c\u91cd\u65b0\u5c55\u793a\u4e86ECS\u670d\u52a1\u67b6\u6784\u7684\u4e00\u90e8\u5206\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/106-0.png\" alt=\"288774107-7334d9cf-345d-4f41-9f90-d0496814e654.png\" \/><\/div>\n<pre class=\"post-pre\"><code><span class=\"nx\">load_balancer<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">container_name<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\"nginx\"<\/span>\r\n  <span class=\"nx\">container_port<\/span>   <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">port_nginx<\/span>\r\n  <span class=\"nx\">target_group_arn<\/span> <span class=\"p\">=<\/span> <span class=\"kd\">var<\/span><span class=\"p\">.<\/span><span class=\"nx\">lb_target_group_arn<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u4e0a\u8ff0\u7684\u4ee3\u7801\u521b\u5efa\u4e86\u4e00\u4e2anginx\u53cd\u5411\u4ee3\u7406\u3002\u5728\u8fd9\u79cd\u60c5\u51b5\u4e0b\uff0c\u6240\u6709\u5bf9\u670d\u52a1\u7684\u8bf7\u6c42\u90fd\u4f1a\u5728\u8fdb\u5165\u670d\u52a1\u4e4b\u524d\u7ecf\u8fc7nginx\u3002<\/p>\n<p>\u8bf7\u53c2\u8003\u4e0b\u56fe\u4e86\u89e3\u5173\u4e8eECS\u7684\u6982\u8981\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/110-0.png\" alt=\"284002822-70305f62-d7d1-4eb2-9ee9-cddcdab3b854.png\" \/><\/div>\n<p>\u7b2c6\u5f20\u56fe\u5c55\u793a\u4e86ECS\u7684\u64cd\u4f5c\u65b9\u6cd5\u3002\u5176\u4e2d\u5305\u62ec\uff1a<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">ECR\u306f\u30b5\u30fc\u30d3\u30b9\u306b\u5bfe\u5fdc\u3059\u308bdocker\u30a4\u30e1\u30fc\u30b8\u3092\u4fdd\u5b58\u3059\u308b<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">task_definition\u306f\u3001\u30b5\u30fc\u30d3\u30b9\u306e\u30d6\u30eb\u30fc\u30d7\u30ea\u30f3\u30c8\uff08JSON\u30d5\u30a1\u30a4\u30eb\u3067\u30d1\u30e9\u30e1\u30fc\u30bf\u3084\u30b3\u30f3\u30c6\u30ca\u306a\u3069\u304c\u5b9a\u7fa9\u3055\u308c\u3066\u3044\u308b\uff09\u3067\u3059\u3002<\/ul>\n<p>\u57fa\u672c\u4e0a\uff0c\u5982\u679c\u60a8\u5728\u8fd9\u91cc\u4f7f\u7528ECS\u8fd0\u8425\u670d\u52a1\uff0c\u9700\u8981\u6309\u7167\u4ee5\u4e0b\u6b65\u9aa4\u8fdb\u884c\u64cd\u4f5c\uff1a<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5c06\u670d\u52a1\u5bb9\u5668\u5316\u5e76\u5c06\u5176\u8f6c\u6362\u4e3aDocker\u955c\u50cf\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5c06\u6b64Docker\u955c\u50cf\u4e0a\u4f20\u81f3\u6ce8\u518c\u8868\uff08\u8fd9\u91cc\u4f7f\u7528ECR\uff09\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u4ece\u6ce8\u518c\u8868\u6784\u5efa\u4efb\u52a1\u5b9a\u4e49\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\u4ece\u4efb\u52a1\u5b9a\u4e49\u6784\u5efa\u5728ECS\u4e2d\u8fd0\u884c\u7684\u670d\u52a1\u3002<\/ol>\n<p>\u4efb\u52a1\u5b9a\u4e49\u7684\u8bbe\u7f6e\u662f\u4ec0\u4e48\uff1f<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">resource<\/span> <span class=\"s2\">\"aws_ecs_task_definition\"<\/span> <span class=\"s2\">\"this\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">family<\/span>                <span class=\"p\">=<\/span> <span class=\"s2\">\"newanigram-api\"<\/span>\r\n\r\n  <span class=\"nx\">container_definitions<\/span> <span class=\"p\">=<\/span> <span class=\"k\">data<\/span><span class=\"p\">.<\/span><span class=\"nx\">template_file<\/span><span class=\"p\">.<\/span><span class=\"nx\">task_definition<\/span><span class=\"p\">.<\/span><span class=\"nx\">rendered<\/span> <span class=\"c1\">\/\/ task_definition\u5b9a\u7fa9JSON\u30d5\u30a1\u30a4\u30eb\u306b\u53c2\u7167\u3059\u308b<\/span>\r\n\r\n  <span class=\"nx\">cpu<\/span>                   <span class=\"p\">=<\/span> <span class=\"s2\">\"256\"<\/span>\r\n  <span class=\"nx\">memory<\/span>                <span class=\"p\">=<\/span> <span class=\"s2\">\"512\"<\/span>\r\n  <span class=\"nx\">network_mode<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"awsvpc\"<\/span>\r\n\r\n  <span class=\"nx\">task_role_arn<\/span>         <span class=\"p\">=<\/span> <span class=\"nx\">aws_iam_role<\/span><span class=\"p\">.<\/span><span class=\"nx\">ecs_iam_role<\/span><span class=\"p\">.<\/span><span class=\"nx\">arn<\/span>\r\n  <span class=\"nx\">execution_role_arn<\/span>    <span class=\"p\">=<\/span> <span class=\"nx\">aws_iam_role<\/span><span class=\"p\">.<\/span><span class=\"nx\">ecs_iam_role<\/span><span class=\"p\">.<\/span><span class=\"nx\">arn<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\">\/\/ task_definition\u5b9a\u7fa9JSON\u30d5\u30a1\u30a4\u30eb<\/span>\r\n<span class=\"k\">data<\/span> <span class=\"s2\">\"template_file\"<\/span> <span class=\"s2\">\"task_definition\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">template<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">file<\/span><span class=\"p\">(<\/span><span class=\"s2\">\".\/ecs_api\/task_definition.json\"<\/span><span class=\"p\">)<\/span>\r\n\r\n  <span class=\"nx\">vars<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">account_id<\/span>        <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">account_id<\/span>\r\n    <span class=\"nx\">region<\/span>            <span class=\"p\">=<\/span> <span class=\"kd\">local<\/span><span class=\"p\">.<\/span><span class=\"nx\">region<\/span>\r\n\r\n    <span class=\"nx\">repository_api<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"api\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u4efb\u52a1\u5b9a\u4e49\u7684\u6838\u5fc3\u5185\u5bb9\u662f\u4ec0\u4e48\uff1f<\/p>\n<pre class=\"post-pre\"><code><span class=\"p\">[<\/span>\r\n  <span class=\"p\">{<\/span>\r\n    <span class=\"nl\">\"name\"<\/span><span class=\"p\">:<\/span> <span class=\"s2\">\"api\"<\/span><span class=\"p\">,<\/span>\r\n    <span class=\"nl\">\"image\"<\/span><span class=\"p\">:<\/span> <span class=\"s2\">\"${account_id}.dkr.ecr.${region}.amazonaws.com\/${repository_api}:${api_tag}\"<\/span><span class=\"p\">,<\/span>\r\n    <span class=\"nl\">\"cpu\"<\/span><span class=\"p\">:<\/span> <span class=\"mi\">0<\/span><span class=\"p\">,<\/span>\r\n    <span class=\"nl\">\"memory\"<\/span><span class=\"p\">:<\/span> <span class=\"mi\">128<\/span><span class=\"p\">,<\/span>\r\n    <span class=\"nl\">\"portMappings\"<\/span><span class=\"p\">:<\/span> <span class=\"p\">[<\/span>\r\n      \r\n        <span class=\"s2\">\"containerPort\"<\/span><span class=\"err\">:<\/span> <span class=\"err\">$<\/span><span class=\"p\">{<\/span><span class=\"err\">port_api<\/span><span class=\"p\">},<\/span>\r\n        <span class=\"s2\">\"hostPort\"<\/span><span class=\"err\">:<\/span> <span class=\"err\">$<\/span><span class=\"p\">{<\/span><span class=\"err\">port_api<\/span><span class=\"p\">}<\/span>\r\n      <span class=\"err\">}<\/span>\r\n    <span class=\"p\">],<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">]<\/span>\r\n<\/code><\/pre>\n<h2>\u6267\u884c<\/h2>\n<p>\u8981\u6267\u884cTerraform\uff0c\u53ef\u4ee5\u4f7f\u7528terraform apply\u547d\u4ee4\u3002\u5728\u6267\u884c\u4e4b\u524d\uff0c\u53ef\u4ee5\u9884\u89c8\u5373\u5c06\u521b\u5efa\u3001\u66f4\u6539\u6216\u5220\u9664\u7684\u8d44\u6e90\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/121-0.png\" alt=\"289043438-cd124433-839e-4a01-a7fc-8e125f8d59fc.png\" \/><\/div>\n<p>\u5728AWS\u63a7\u5236\u53f0\u4e0a\u6267\u884c\u540e\uff0c\u60a8\u5c06\u5f97\u5230\u4ee5\u4e0b\u7c7b\u4f3c\u7684\u7ed3\u679c\u3002<\/p>\n<p>\u865a\u62df\u4e13\u7528\u7f51\u7edc<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/124-0.png\" alt=\"289045977-096698c9-1346-4b8a-8c1f-e226e8cc1433.png\" \/><\/div>\n<p>RDS\u662f\u4e00\u79cd\u53ef\u6269\u5c55\u7684\u5173\u7cfb\u6570\u636e\u5e93\u670d\u52a1\uff0c\u53ef\u5e2e\u52a9\u60a8\u8f7b\u677e\u7ba1\u7406\u548c\u6269\u5c55\u6570\u636e\u5e93\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/126-0.png\" alt=\"289045996-dc805799-d47e-4f74-8e0b-e6505ae8a504.png\" \/><\/div>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/127-0.png\" alt=\"289046035-31bed9c4-c18a-4755-9d0d-106800ed7742.png\" \/><\/div>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/128-0.png\" alt=\"289046058-9f43e432-3c9b-41dc-9b48-16847d64ea78.png\" \/><\/div>\n<p>\u6240\u6709\u7684\u914d\u7f6e\u4fe1\u606f\u90fd\u51c6\u786e\u5730\u53cd\u6620\u5728AWS\u63a7\u5236\u53f0\u4e2d\uff08\u53ef\u4ee5\u67e5\u770b\u7ea2\u6846\u90e8\u5206\u7684\u8be6\u7ec6\u4fe1\u606f\uff09\u3002<\/p>\n<h2>\u603b\u7ed3<\/h2>\n<p>\u90a3\u4e48\uff0c\u6211\u5c06\u7b80\u8981\u4ecb\u7ecd\u5982\u4f55\u4f7f\u7528Terraform\u5728AWS\u4e0a\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u7684\u57fa\u7840\u8bbe\u65bd\u3002<\/p>\n<p>\u671f\u5f85\u8bfb\u8005\u80fd\u591f\u901a\u8fc7\u57fa\u672c\u7684\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\u67b6\u6784\u53ca\u4f7f\u7528terraform\u90e8\u7f72\u57fa\u7840\u8bbe\u65bd\u7684\u65b9\u5f0f\uff0c\u83b7\u5f97\u66f4\u76f4\u89c2\u7684\u7406\u89e3\u3002<\/p>\n<p>\u6211\u975e\u5e38\u671f\u5f85\u4e0b\u4e00\u7bc7\u6587\u7ae0\u3002\u975e\u5e38\u611f\u8c22\u3002<\/p>\n<p>\u53e6\u5916\uff0c\u7531\u4e8e\u6211\u4eec\u5728\u8fdb\u884c\u5de5\u7a0b\u5e08\u62db\u8058\u6d3b\u52a8\uff0c\u5982\u679c\u60a8\u5bf9\u6b64\u6709\u5174\u8da3\uff0c\u8bf7\u52a1\u5fc5\u67e5\u770b\u6211\u4eec\u7684\u7a7a\u6c14\u8863\u67dc\uff01<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u9996\u5148 \u6211\u662f\u7a7a\u4e2d\u8863\u6ae5\u7684\u5de5\u7a0b\u5e2bAin\u3002\u9019\u7bc7\u6587\u7ae0\u662f2023\u5e74\u7a7a\u4e2d\u8863\u6ae5\u964d\u4e34\u65e5\u5386\u7684\u7b2c17\u5929\u7684\u6587\u7ae0\u3002 &nbsp; Ter [&hellip;]<\/p>\n","protected":false},"author":8,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-48551","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09 - Blog - Silicon Cloud<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08aws\uff09\u3002\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09\" \/>\n<meta property=\"og:description\" content=\"\u9996\u5148 \u6211\u662f\u7a7a\u4e2d\u8863\u6ae5\u7684\u5de5\u7a0b\u5e2bAin\u3002\u9019\u7bc7\u6587\u7ae0\u662f2023\u5e74\u7a7a\u4e2d\u8863\u6ae5\u964d\u4e34\u65e5\u5386\u7684\u7b2c17\u5929\u7684\u6587\u7ae0\u3002 &nbsp; Ter [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08aws\uff09\u3002\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog - Silicon Cloud\" \/>\n<meta property=\"article:published_time\" content=\"2022-10-31T17:04:56+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-04-28T20:26:48+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/11-0.png\" \/>\n<meta name=\"author\" content=\"\u96c5, \u609f\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u96c5, \u609f\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/\",\"name\":\"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09 - Blog - Silicon Cloud\",\"isPartOf\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\"},\"datePublished\":\"2022-10-31T17:04:56+00:00\",\"dateModified\":\"2024-04-28T20:26:48+00:00\",\"author\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.silicloud.com\/zh\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/\",\"name\":\"Blog - Silicon Cloud\",\"description\":\"\",\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6\",\"name\":\"\u96c5, \u609f\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g\",\"caption\":\"\u96c5, \u609f\"},\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/author\/yawu\/\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/#local-main-organization-logo\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"Blog - Silicon Cloud\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09 - Blog - Silicon Cloud","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08aws\uff09\u3002\/","og_locale":"zh_CN","og_type":"article","og_title":"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09","og_description":"\u9996\u5148 \u6211\u662f\u7a7a\u4e2d\u8863\u6ae5\u7684\u5de5\u7a0b\u5e2bAin\u3002\u9019\u7bc7\u6587\u7ae0\u662f2023\u5e74\u7a7a\u4e2d\u8863\u6ae5\u964d\u4e34\u65e5\u5386\u7684\u7b2c17\u5929\u7684\u6587\u7ae0\u3002 &nbsp; Ter [&hellip;]","og_url":"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08aws\uff09\u3002\/","og_site_name":"Blog - Silicon Cloud","article_published_time":"2022-10-31T17:04:56+00:00","article_modified_time":"2024-04-28T20:26:48+00:00","og_image":[{"url":"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d85af913a08637a6b9dca\/11-0.png"}],"author":"\u96c5, \u609f","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"\u96c5, \u609f","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"5 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/","url":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/","name":"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09 - Blog - Silicon Cloud","isPartOf":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website"},"datePublished":"2022-10-31T17:04:56+00:00","dateModified":"2024-04-28T20:26:48+00:00","author":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6"},"breadcrumb":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.silicloud.com\/zh\/blog\/"},{"@type":"ListItem","position":2,"name":"\u4f7f\u7528Terraform\u4ece\u96f6\u5f00\u59cb\u6784\u5efa\u5fae\u670d\u52a1\u57fa\u7840\u8bbe\u65bd\uff08AWS\uff09"}]},{"@type":"WebSite","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website","url":"https:\/\/www.silicloud.com\/zh\/blog\/","name":"Blog - Silicon Cloud","description":"","inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6","name":"\u96c5, \u609f","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g","caption":"\u96c5, \u609f"},"url":"https:\/\/www.silicloud.com\/zh\/blog\/author\/yawu\/"},{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8terraform%e4%bb%8e%e9%9b%b6%e5%bc%80%e5%a7%8b%e6%9e%84%e5%bb%ba%e5%be%ae%e6%9c%8d%e5%8a%a1%e5%9f%ba%e7%a1%80%e8%ae%be%e6%96%bd%ef%bc%88aws%ef%bc%89%e3%80%82\/#local-main-organization-logo","url":"","contentUrl":"","caption":"Blog - Silicon Cloud"}]}},"_links":{"self":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/48551","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/comments?post=48551"}],"version-history":[{"count":2,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/48551\/revisions"}],"predecessor-version":[{"id":81722,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/48551\/revisions\/81722"}],"wp:attachment":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/media?parent=48551"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/categories?post=48551"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/tags?post=48551"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}