{"id":48655,"date":"2024-01-14T15:08:00","date_gmt":"2023-07-29T22:05:59","guid":{"rendered":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/"},"modified":"2024-05-04T18:22:30","modified_gmt":"2024-05-04T10:22:30","slug":"terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97","status":"publish","type":"post","link":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/","title":{"rendered":"Terraform\u7684\u57fa\u672c\u6a21\u5757"},"content":{"rendered":"<h1>\u57fa\u672c\u5757\uff088\u4e2a\uff09<\/h1>\n<p>\u2460terraform\u6a21\u5757\uff1a\u5b9a\u4e49Terraform<br \/>\n\u2461provider\u6a21\u5757\uff1a\u8fde\u63a5\u7684\u63d0\u4f9b\u8005\uff08\u8fde\u63a5\u5230\u54ea\u4e2a\u5e73\u53f0\uff09<br \/>\n\u2462resource\u6a21\u5757\uff1a\u5b9a\u4e49AWS\u8d44\u6e90<br \/>\n\u2463module\u6a21\u5757\uff1a\u5b9a\u4e49Terraform\u6a21\u5757<br \/>\n\u2464variable\u6a21\u5757\uff1a\u5b9a\u4e49\uff08\u73af\u5883\uff0c\u8f93\u5165\uff09\u53d8\u91cf<br \/>\n\u2465data\u6a21\u5757\uff1a\u5b9a\u4e49\u8981\u5f15\u7528\u7684\u5b9e\u4f8b<br \/>\n\u2466output\u6a21\u5757\uff1a\u5b9a\u4e49\u8981\u8f93\u51fa\u7684\u5b9e\u4f8b<br \/>\n\u2467local\u6a21\u5757\uff1a\u5b9a\u4e49\uff08\u540c\u4e00\u6a21\u5757\u5185\u7684\uff09\u5c40\u90e8\u53d8\u91cf<\/p>\n<h1>\u963b\u585e (zh\u01d4 s\u00e8) \u7684\u610f\u601d\u662f<\/h1>\n<p>\u4e0b\u9762{ }\u4e2d\u6240\u5305\u56f4\u7684\u4e00\u7ec4\u4ee3\u7801\u88ab\u79f0\u4e3a&#8221;\u4ee3\u7801\u5757&#8221;\u3002<\/p>\n<pre class=\"post-pre\"><code>variable \"test\" {\r\n  type = string\r\n}\r\n<\/code><\/pre>\n<h1>\u5173\u4e8e\u6bcf\u4e2a\u533a\u5757<\/h1>\n<h2>\u2460terraform\u5757<\/h2>\n<p>Terraform\u7684\u5b9a\u4e49\u5757\u672c\u8eab<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">terraform<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">required_version<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"&gt;=1.1\"<\/span>\r\n  <span class=\"nx\">required_providers<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">aws<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n      <span class=\"nx\">source<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"hashicorp\/aws\"<\/span>\r\n      <span class=\"nx\">version<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"~&gt;3.0\"<\/span>\r\n    <span class=\"p\">}<\/span>\r\n  <span class=\"p\">}<\/span>\r\n  <span class=\"nx\">backend<\/span> <span class=\"s2\">\"s3\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">bucket<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"manage-bucket-sample\"<\/span>\r\n    <span class=\"nx\">key<\/span>     <span class=\"p\">=<\/span> <span class=\"s2\">\"terraform.tfstate\"<\/span>\r\n    <span class=\"nx\">region<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1\"<\/span>\r\n    <span class=\"nx\">profile<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"terraform\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u6240\u9700\u7248\u672c\uff1a\u8bbe\u7f6eTerraform\u7684\u7248\u672c<br \/>\n\u6240\u9700\u63d0\u4f9b\u8005\uff1a\u8bbe\u7f6e\u6240\u9700\u63d0\u4f9b\u8005\uff08\u57fa\u7840\u8bbe\u65bd\u5e73\u53f0\uff09<br \/>\n\u203b\u6b64\u5757\u662f\u4e00\u4e2a\u7ea6\u5b9a\u4fd7\u6210\u7684\u6587\u672c\u3002<\/p>\n<h2>\u2461 \u4f9b\u5e94\u5546\u533a\u5757<\/h2>\n<pre class=\"post-pre\"><code><span class=\"nx\">provider<\/span> <span class=\"s2\">\"aws\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">profile<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"terraform\"<\/span>\r\n  <span class=\"nx\">region<\/span>     <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">region<\/span>\r\n  <span class=\"nx\">access_key<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">access_key<\/span>\r\n  <span class=\"nx\">secret_key<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">secret_key<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u8bf7\u5c06[terraform]\u5728\u201c$ vim ~\/.aws\/credential\u201d\u4e2d\u8fdb\u884c\u7684\u66f4\u6539\u4e0e\u4ee5\u4e0b\u914d\u7f6e\u76f8\u5339\u914d\u3002<br \/>\n* \u8f93\u5165\u76f8\u540c\u7684\u503c\u3002<br \/>\n\u533a\u57df\uff1aap-northeast-1\uff08*\u4e1c\u4eac\uff09<br \/>\n\u8bbf\u95ee\u5bc6\u94a5\uff1a\u81ea\u5df1\uff08IAM\u7528\u6237\uff09\u7684\u8bbf\u95ee\u5bc6\u94a5\uff08\u4f8b\u5982\uff1aAIUGW&amp;78SA69AS\uff09<br \/>\n\u79d8\u5bc6\u5bc6\u94a5\uff1a\u81ea\u5df1\uff08IAM\u7528\u6237\uff09\u7684\u79d8\u5bc6\u5bc6\u94a5\uff08\u4f8b\u5982\uff1ajr232vvrkng323bfvt2tfw4\uff09<\/p>\n<p>\u203b \u4ec5\u63d0\u4f9b\u4e00\u79cd\u9009\u9879\uff0c\u4ee5\u4e0b\u662f\u4e2d\u6587\u672c\u5730\u5316\u7684\u91ca\u4e49\uff1a<\/p>\n<h2>\u2462\u8d44\u6e90\u533a\u5757<\/h2>\n<p>\u57fa\u7840\u8bbe\u65bd\u670d\u52a1\u8d44\u6e90\u5b9a\u4e49\u5757 (j\u012b ch\u01d4 sh\u00e8 sh\u012b f\u00fa w\u00f9 z\u012b y\u00ec<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_s3_bucket\"<\/span> <span class=\"s2\">\"s3-private-bucket\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">bucket<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"${var.project}-${var.enviroment}-private-bucket-328674\"<\/span>\r\n  <span class=\"nx\">acl<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"private\"<\/span>\r\n  <span class=\"c1\"># Manege version of S3 source<\/span>\r\n  <span class=\"nx\">versioning<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">enabled<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">false<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>aws_s3_bucket\uff1a\u8d44\u6e90\u7c7b\u578b<br \/>\n\u6307\u5b9a\u4e86\u7279\u5b9a\u7684\u7c7b\u578b\uff0c\u9700\u8981\u5199\u660e\u6240\u8981\u5b9a\u4e49\u7684\u7c7b\u578b\u3002<br \/>\ns3-private-bucket\uff1a\u672c\u5730\u540d\u79f0<br \/>\n\u4e3a\u7c7b\u578b\u5206\u914d\u7279\u5b9a\u7684\u540d\u79f0\u3002\u81ea\u884c\u51b3\u5b9a\u540d\u79f0\u5e76\u5199\u660e\u3002<br \/>\nbucket\uff1aS3\u5b58\u50a8\u6876\u540d\u79f0<br \/>\n${var.project} \u662f\u4e00\u4e2a\u53d8\u91cf\u3002\u5b83\u53c2\u8003\u4e86 main.tf \u4e2d\u4f20\u9012\u7684 project\u3002<br \/>\n\u5b9e\u9645\u7684\u503c\uff08\u4f8b\u5982\uff1aterraform\uff09\u9700\u8981\u5728 terraform.tfvars \u4e2d\u5199\u660e\u3002<br \/>\nmain.tf \u5f15\u7528\u4e86 terraform.tfvars\uff0c\u5c06\u53d8\u91cf\u4f20\u9012\u7ed9 s3.tf\u3002<\/p>\n<p>\u203b\u4ec5\u63d0\u4f9b\u4e00\u79cd\u9009\u9879\uff0c<br \/>\n\u53c2\u8003<\/p>\n<h2>\u2463\u6a21\u5757\u533a\u5757<\/h2>\n<p>\u5728\u4e3b\u8981\u7684main.tf\u6587\u4ef6\u4e2d\uff0c\u6211\u4eec\u8fdb\u884c\u5404\u4e2a\u6a21\u5757\uff08s3.tf\uff0cglue.tf\u7b49\uff09\u7684\u8c03\u7528\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">module<\/span> <span class=\"s2\">\"S3\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span>     <span class=\"p\">=<\/span> <span class=\"s2\">\".\/modules\/s3\"<\/span>\r\n  <span class=\"nx\">project<\/span>    <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">project<\/span>\r\n  <span class=\"nx\">enviroment<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">enviroment<\/span>\r\n  <span class=\"nx\">region<\/span>     <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">region<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u6e90\uff1a\u6a21\u5757\u7684\u8def\u5f84\u914d\u7f6e<br \/>\n\u203b\u6587\u4ef6\u5939\u7ed3\u6784\u793a\u4f8b<br \/>\nterraform<br \/>\n\u2514main.tf<br \/>\n\u2514modules<br \/>\n\u2514s3<br \/>\n\u2514s3.tf<\/p>\n<p>\u7ffb\u8bd1\uff1a\u6e90\uff1a\u6a21\u5757\u7684\u8def\u5f84\u914d\u7f6e<br \/>\n\u203b\u6587\u4ef6\u5939\u7ed3\u6784\u793a\u4f8b<br \/>\nterraform<br \/>\n\u2514main.tf<br \/>\n\u2514modules<br \/>\n\u2514s3<br \/>\n\u2514s3.tf<\/p>\n<p>\u9879\u76ee\uff1a\u9879\u76ee\u540d\u79f0\uff08\u4f8b\u5982\uff1aterraform\uff09<br \/>\n\u73af\u5883\uff1a\u73af\u5883\u540d\u79f0\uff08\u4f8b\u5982\uff1a\u5f00\u53d1\u3001\u9636\u6bb5\u3001\u751f\u4ea7\uff09<br \/>\n\u5730\u533a\uff1a\u5730\u533a\u540d\u79f0\uff08\u4f8b\u5982\uff1aap-northeast-1\uff08\u4e1c\u4eac\uff09\uff09<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/26-0.png\" alt=\"image.png\" \/><\/div>\n<p>\u53c2\u7167<\/p>\n<h2>\u2464\u53d8\u91cf\u6a21\u5757<\/h2>\n<p>\u8f93\u5165\u53d8\u91cf\u7684\u5b9a\u4e49\u5757<br \/>\n\u4e0e\u6bcf\u4e2a\u6a21\u5757\u4e00\u8d77\u4f7f\u7528\u3002\u8bf7\u5728variable.tf\u6587\u4ef6\u4e2d\u8fdb\u884c\u8bb0\u5f55\u3002<br \/>\n\u203b\u5c3d\u7ba1\u53ef\u4ee5\u5728s3.tf\u6587\u4ef6\u4e2d\u8fdb\u884c\u8bb0\u5f55\uff0c\u4f46\u5c06\u8f93\u5165\u53d8\u91cf\u7684\u5b9a\u4e49\u4ee3\u7801\u96c6\u4e2d\u5728variable.tf\u6587\u4ef6\u4e2d\u66f4\u6613\u4e8e\u7ba1\u7406\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">variable<\/span> <span class=\"s2\">\"region\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">string<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<pre class=\"post-pre\"><code><span class=\"nx\">variable<\/span> <span class=\"s2\">\"enviroment\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">string<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/33-0.png\" alt=\"image.png\" \/><\/div>\n<p>\u203b\u50c5\u63d0\u4f9b\u4e00\u7a2e\u9078\u64c7\uff1a<\/p>\n<p>\u8bf7\u53c2\u8003\u3002<\/p>\n<h2>\u6570\u636e\u5757<\/h2>\n<p>\u5728tf\u6587\u4ef6\u4e2d\u5f15\u5165\u4e0d\u53d7Terraform\u7ba1\u7406\u7684\u8d44\u6e90\u5757\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"err\">\u203b<\/span><span class=\"nx\">aws_iam_policy<\/span><span class=\"err\">\u30ea\u30bd\u30fc\u30b9\u306e\u8aad\u307f\u8fbc\u307f<\/span>\r\n<span class=\"nx\">data<\/span> <span class=\"s2\">\"aws_iam_policy_document\"<\/span> <span class=\"s2\">\"lambda\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">statement<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">sid<\/span>     <span class=\"p\">=<\/span> <span class=\"s2\">\"LambdaAssumeRolePolicy\"<\/span>\r\n    <span class=\"nx\">effect<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"Allow\"<\/span>\r\n    <span class=\"nx\">actions<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"s2\">\"sts:AssumeRole\"<\/span><span class=\"p\">]<\/span>\r\n    <span class=\"nx\">principals<\/span> <span class=\"p\">{<\/span>\r\n      <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"Service\"<\/span>\r\n      <span class=\"nx\">identifiers<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n        <span class=\"s2\">\"logs.${var.region}.amazonaws.com\"<\/span><span class=\"p\">,<\/span>\r\n        <span class=\"s2\">\"lambda.amazonaws.com\"<\/span>\r\n      <span class=\"p\">]<\/span>\r\n    <span class=\"p\">}<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u8bf7\u7528\u4e2d\u6587\u7b80\u6d01\u5730\u8868\u8fbe\u4ee5\u4e0b\u5185\u5bb9\uff1a<br \/>\n\u2193<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_iam_role\"<\/span> <span class=\"s2\">\"lambda\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">name<\/span>             <span class=\"p\">=<\/span> <span class=\"s2\">\"${var.enviroment}-lambda-role\"<\/span>\r\n  <span class=\"nx\">assume_role_policy<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"${data.aws_iam_policy_document.lambda.json}\"<\/span> <span class=\"c1\">#\u53c2\u7167\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u308b<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u53ef\u4ee5\u4f7f\u7528&#8221;data.aws_iam_policy_document&#8221;\u5c06\u6570\u636e\u5757\u7684\u5b9a\u4e49\u4f5c\u4e3a\u5b9e\u4f8b\u63a5\u6536\uff0c\u8fd9\u6837\u5c31\u4e0d\u9700\u8981\u5728\u591a\u4e2a\u4f4d\u7f6e\u5199\u76f8\u540c\u7684\u4ee3\u7801\u4e86\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"err\">\u203b<\/span><span class=\"nx\">archive_file<\/span><span class=\"err\">\u30ea\u30bd\u30fc\u30b9\uff08\u751f\u6210\u3057\u305f\u30a2\u30fc\u30ab\u30a4\u30d6\uff09\u3092\u53d6\u308a\u8fbc\u3080<\/span>\r\n<span class=\"nx\">data<\/span> <span class=\"s2\">\"archive_file\"<\/span> <span class=\"s2\">\"initial_lambda_package\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"zip\"<\/span>\r\n  <span class=\"nx\">output_path<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/src\/.temp_files\/lambda.zip\"<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">content<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"# empty\"<\/span>\r\n    <span class=\"nx\">filename<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"main.py\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u53ef\u4ee5\u5f15\u7528\u5230AWS\u7684&#8221;archive_file&#8221;\u8d44\u6e90\u3002<br \/>\n\u5728\u8fd9\u4e2a\u533a\u5757\u4e2d\uff0c\u5f15\u7528\u4e86&#8221;archive_file&#8221;\u8d44\u6e90\uff0c\u5e76\u5728\u6307\u5b9a\u7684\u76ee\u5f55\u4e0b\u521b\u5efa\u4e86&#8221;main.py&#8221;\u6587\u4ef6\u3002<\/p>\n<p>\u203b\u4ec5\u63d0\u4f9b\u4e00\u79cd\u4e2d\u6587\u7ffb\u8bd1\u9009\u9879\uff1a<br \/>\n\u8bf7\u53c2\u8003\u4ee5\u4e0b\u5185\u5bb9\u3002<\/p>\n<h2>\u7b2c\u4e03\u8f93\u51fa\u5757<\/h2>\n<p>\u5c06module\u5185\u7684\u8d44\u6e90\u4fe1\u606f\u5c01\u88c5\u6210block\u4ee5\u4fbf\u4e8e\u5bf9\u5916\u516c\u5f00\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_s3_bucket\"<\/span> <span class=\"s2\">\"s3-private-bucket\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">bucket<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"${var.project}-${var.enviroment}-private-bucket-105\"<\/span>\r\n  <span class=\"nx\">acl<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"private\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u8bf7\u5c06\u4ee5\u4e0b\u5185\u5bb9\u4ee5\u4e2d\u6587\u8fdb\u884c\u590d\u8ff0\uff1a<\/p>\n<p>\u2193<br \/>\n\u8bf7\u4ee5\u4e2d\u6587\u8fdb\u884c\u590d\u8ff0\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">output<\/span> <span class=\"s2\">\"aws_s3_bucket\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">value<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_s3_bucket<\/span><span class=\"err\">.<\/span><span class=\"nx\">s3<\/span><span class=\"err\">-<\/span><span class=\"nx\">private<\/span><span class=\"err\">-<\/span><span class=\"nx\">bucket<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n    <span class=\"nx\">sensitive<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">false<\/span> <span class=\"c1\"># not external output<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u8bf7\u5206\u522b\u4e3e\u51fa\u6bcf\u4e2a\u4eba\u4f5c\u98ce\u53cd\u6620\u51fa\u6765\u7684\u9738\u6c14\u3002<br \/>\n\u8bf7\u4ee5\u4ee5\u4e0b\u5f62\u5f0f\u4e3e\u4f8b\uff0c\u4e00\u4e2a\u4eba\uff0c\u4e00\u53e5\u8bdd\uff0c\u77ed\u65f6\u95f4\u5185\u505a\u51fa\u56de\u5e94\u3002<br \/>\n\u2193<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">module<\/span> <span class=\"s2\">\"sfn\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">source<\/span>                <span class=\"p\">=<\/span> <span class=\"s2\">\".\/modules\/sfn\"<\/span>\r\n  <span class=\"nx\">s3_private_bucket06<\/span>   <span class=\"p\">=<\/span> <span class=\"nx\">module<\/span><span class=\"err\">.<\/span><span class=\"nx\">S3<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws_s3_bucket<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u8bf7\u7528\u4e2d\u6587\u8fdb\u884c\u91cd\u65b0\u8868\u8ff0\uff1a\u2193<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_s3_bucket_object\"<\/span> <span class=\"s2\">\"lambda_file\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">bucket<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"${var.s3_private_bucket}\"<\/span>\r\n  <span class=\"nx\">key<\/span>    <span class=\"p\">=<\/span> <span class=\"s2\">\"initial.zip\"<\/span>\r\n  <span class=\"nx\">source<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\".\/src\/.temp_files\/lambda.zip\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/55-0.png\" alt=\"image.png\" \/><\/div>\n<pre class=\"post-pre\"><code><span class=\"nx\">output<\/span> <span class=\"err\">\u201c<\/span><span class=\"nx\">output_test<\/span><span class=\"s2\">\" {\r\n  value = \"<\/span><span class=\"nx\">test_value<\/span><span class=\"s2\">\"\r\n  sensitive = true # external display ok\r\n}\r\n\r\n$ terraform output\r\n&gt; Output:\r\n&gt; Value = test_value\r\n\u203b\u30c7\u30d0\u30c3\u30b0\u306b\u3082\u4f7f\u7528\u3067\u304d\u308b\r\n<\/span><\/code><\/pre>\n<p>\u203b\u8bf7\u53c2\u8003<\/p>\n<h2>\u672c\u5730\u533a\u5757<\/h2>\n<p>\u5b9a\u4e49\u4e00\u4e2a\u5c40\u90e8\u53d8\u91cf\u7684\u4ee3\u7801\u5757<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">locals<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">bucket_name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"terraform-dev-private-bucket-41627\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"err\">\u2193<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_s3_bucket\"<\/span> <span class=\"s2\">\"s3-private-bucket\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">cidr_block<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">local<\/span><span class=\"err\">.<\/span><span class=\"nx\">bucket_name<\/span>  <span class=\"c1\"># \u53c2\u7167<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<p>\u203b\u4ec5\u63d0\u4f9b\u4e00\u79cd\u4e2d\u6587\u8868\u8fbe\uff0c\u53ef\u4ee5\u53c2\u8003\uff1a<\/p>\n<p>&#8211; \u53c2\u8003\u4e00\u4e0b<\/p>\n<h1>\u5982\u4f55\u6709\u6548\u5730\u8c03\u67e5Terraform\u7684\u65b9\u6cd5<\/h1>\n<h2>\u8bed\u6cd5\u3001\u53e5\u6cd5\u3002<\/h2>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/66-0.png\" alt=\"image.png\" \/><\/div>\n<p>\u53ef\u4ee5\u67e5\u770b\u8d44\u6e90\u533a\u5757\u7684\u5199\u6cd5\u3002<\/p>\n<h2>\u63d0\u4f9b\u8005\uff08\u4e0eAWS\u76f8\u5173\u7684\u8bed\u6cd5\uff09<\/h2>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/70-0.png\" alt=\"image.png\" \/><\/div>\n<h2>\u7d22\u5f15\u9875 (su\u01d2 y\u00e8)<\/h2>\n<p>\u6211\u5728\u4e0b\u9762\u6574\u7406\u4e86\u5173\u4e8eTerraform\u7684\u4e3b\u9898\u5e76\u8fdb\u884c\u4e86\u4ecb\u7ecd\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u57fa\u672c\u5757\uff088\u4e2a\uff09 \u2460terraform\u6a21\u5757\uff1a\u5b9a\u4e49Terraform \u2461provider\u6a21\u5757\uff1a\u8fde\u63a5\u7684\u63d0\u4f9b\u8005\uff08\u8fde\u63a5\u5230 [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-48655","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Terraform\u7684\u57fa\u672c\u6a21\u5757 - Blog - Silicon Cloud<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.silicloud.com\/zh\/blog\/terraform\u7684\u57fa\u672c\u6a21\u5757\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Terraform\u7684\u57fa\u672c\u6a21\u5757\" \/>\n<meta property=\"og:description\" content=\"\u57fa\u672c\u5757\uff088\u4e2a\uff09 \u2460terraform\u6a21\u5757\uff1a\u5b9a\u4e49Terraform \u2461provider\u6a21\u5757\uff1a\u8fde\u63a5\u7684\u63d0\u4f9b\u8005\uff08\u8fde\u63a5\u5230 [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.silicloud.com\/zh\/blog\/terraform\u7684\u57fa\u672c\u6a21\u5757\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog - Silicon Cloud\" \/>\n<meta property=\"article:published_time\" content=\"2023-07-29T22:05:59+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-05-04T10:22:30+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/26-0.png\" \/>\n<meta name=\"author\" content=\"\u79d1, \u96c5\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u79d1, \u96c5\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/\",\"name\":\"Terraform\u7684\u57fa\u672c\u6a21\u5757 - Blog - Silicon Cloud\",\"isPartOf\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\"},\"datePublished\":\"2023-07-29T22:05:59+00:00\",\"dateModified\":\"2024-05-04T10:22:30+00:00\",\"author\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/41e222757cdd2a3365361328bd79970a\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.silicloud.com\/zh\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Terraform\u7684\u57fa\u672c\u6a21\u5757\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/\",\"name\":\"Blog - Silicon Cloud\",\"description\":\"\",\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/41e222757cdd2a3365361328bd79970a\",\"name\":\"\u79d1, \u96c5\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/1b2d3e00a7df03689797ebd4af8c5827ba5af936849a71050ec331f4cf902c5d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/1b2d3e00a7df03689797ebd4af8c5827ba5af936849a71050ec331f4cf902c5d?s=96&d=mm&r=g\",\"caption\":\"\u79d1, \u96c5\"},\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/author\/keya\/\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/#local-main-organization-logo\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"Blog - Silicon Cloud\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Terraform\u7684\u57fa\u672c\u6a21\u5757 - Blog - Silicon Cloud","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.silicloud.com\/zh\/blog\/terraform\u7684\u57fa\u672c\u6a21\u5757\/","og_locale":"zh_CN","og_type":"article","og_title":"Terraform\u7684\u57fa\u672c\u6a21\u5757","og_description":"\u57fa\u672c\u5757\uff088\u4e2a\uff09 \u2460terraform\u6a21\u5757\uff1a\u5b9a\u4e49Terraform \u2461provider\u6a21\u5757\uff1a\u8fde\u63a5\u7684\u63d0\u4f9b\u8005\uff08\u8fde\u63a5\u5230 [&hellip;]","og_url":"https:\/\/www.silicloud.com\/zh\/blog\/terraform\u7684\u57fa\u672c\u6a21\u5757\/","og_site_name":"Blog - Silicon Cloud","article_published_time":"2023-07-29T22:05:59+00:00","article_modified_time":"2024-05-04T10:22:30+00:00","og_image":[{"url":"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d86a8913a08637a6bdbba\/26-0.png"}],"author":"\u79d1, \u96c5","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"\u79d1, \u96c5","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"2 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/","url":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/","name":"Terraform\u7684\u57fa\u672c\u6a21\u5757 - Blog - Silicon Cloud","isPartOf":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website"},"datePublished":"2023-07-29T22:05:59+00:00","dateModified":"2024-05-04T10:22:30+00:00","author":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/41e222757cdd2a3365361328bd79970a"},"breadcrumb":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.silicloud.com\/zh\/blog\/"},{"@type":"ListItem","position":2,"name":"Terraform\u7684\u57fa\u672c\u6a21\u5757"}]},{"@type":"WebSite","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website","url":"https:\/\/www.silicloud.com\/zh\/blog\/","name":"Blog - Silicon Cloud","description":"","inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/41e222757cdd2a3365361328bd79970a","name":"\u79d1, \u96c5","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/1b2d3e00a7df03689797ebd4af8c5827ba5af936849a71050ec331f4cf902c5d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/1b2d3e00a7df03689797ebd4af8c5827ba5af936849a71050ec331f4cf902c5d?s=96&d=mm&r=g","caption":"\u79d1, \u96c5"},"url":"https:\/\/www.silicloud.com\/zh\/blog\/author\/keya\/"},{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/terraform%e7%9a%84%e5%9f%ba%e6%9c%ac%e6%a8%a1%e5%9d%97\/#local-main-organization-logo","url":"","contentUrl":"","caption":"Blog - Silicon Cloud"}]}},"_links":{"self":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/48655","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/comments?post=48655"}],"version-history":[{"count":2,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/48655\/revisions"}],"predecessor-version":[{"id":99938,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/48655\/revisions\/99938"}],"wp:attachment":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/media?parent=48655"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/categories?post=48655"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/tags?post=48655"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}