{"id":49115,"date":"2023-08-17T07:29:38","date_gmt":"2023-10-04T05:44:40","guid":{"rendered":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/"},"modified":"2024-04-30T18:54:14","modified_gmt":"2024-04-30T10:54:14","slug":"%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82","status":"publish","type":"post","link":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/","title":{"rendered":"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684&#8221;Terraform&#8221;"},"content":{"rendered":"<h1>\u9996\u5148<\/h1>\n<p>\u6211\u5c06\u4f7f\u7528Terraform\u521b\u5efaAWS (EC2\uff0cRDS)\u3002<\/p>\n<h1>\u6574\u4f53\u8d8b\u52bf<\/h1>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5b89\u88c5Terraform<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u521b\u5efaIAM\u7528\u6237\u5728AWS\u4e0a<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5b89\u88c5AWS CLI<\/ol>\n<\/li>\n<\/ol>\n<p>\u5728AWS CLI\u4e0a\u6ce8\u518cIAM\u7528\u6237<\/p>\n<p>\u4ec0\u4e48\u662fTerraform<br \/>\n\u5b89\u88c5Terraform<\/p>\n<p>\u914d\u7f6e\u63d0\u4f9b\u5546<br \/>\n\u521b\u5efaVPC<br \/>\n\u521b\u5efa\u5b50\u7f51<br \/>\n\u521b\u5efa\u4e92\u8054\u7f51\u7f51\u5173<br \/>\n\u521b\u5efa\u8def\u7531\u8868<br \/>\n\u521b\u5efaEC2<br \/>\n\u521b\u5efa\u5b89\u5168\u7ec4<br \/>\n\u521b\u5efaRDS<\/p>\n<p>* 10\u5206\u949f\u5185\u4e86\u89e3Terraform<\/p>\n<h1>\u5b89\u88c5Terraform<\/h1>\n<pre class=\"post-pre\"><code>$ brew update\r\n$ brew install terraform\r\n<\/code><\/pre>\n<h1>\u5728AWS\u4e2d\u521b\u5efaIAM\u7528\u6237\u3002<\/h1>\n<p>* \u6b22\u8fce\u8bbf\u95ee Identity and Access Management<br \/>\n* \u4f7f\u7528 Terraform \u6784\u5efa AWS<\/p>\n<pre class=\"post-pre\"><code>\r\nAdministratorAccess\u30dd\u30ea\u30b7\u30fc(\u7ba1\u7406\u8005\u6a29\u9650)\u3092\u9078\u629e\u3057\u3066\u304f\u3060\u3055\u3044\u3002\r\n\r\n\u6a29\u9650\u304c\u8db3\u308a\u306a\u3044\u3068\r\nError creating VPC: UnauthorizedOperation: You are not authorized to perform this operation.\r\n\u3068\u30a8\u30e9\u30fc\u304c\u51fa\u307e\u3059\u3002\r\n<\/code><\/pre>\n<h1>\u5b89\u88c5 AWS CLI<\/h1>\n<p>\u53c2\u8003\u6587\u732e<br \/>\n&#8211; \u5b89\u88c5\u548c\u914d\u7f6eAWS CLI<br \/>\n\u6309\u987a\u5e8f\u8fdb\u884c\u5373\u53ef\uff0c\u4f46\u5bf9\u6211\u6765\u8bf4\uff0c\u5728\u8bbe\u7f6ePython\u7684\u8def\u5f84\u548c\u73af\u5883\u65f6\u9047\u5230\u4e86\u4e00\u4e9b\u95ee\u9898<br \/>\n\u9519\u8bef\u89e3\u51b3\u2193<br \/>\n&#8211; \u5728MacOS\u548cHomebrew\u548cpyenv\u4e0a\u521b\u5efa\u8212\u9002\u7684Python\u73af\u5883<br \/>\n&#8211; \u786e\u8ba4Python\u548cPython3\u7684\u5b89\u88c5\u4f4d\u7f6e\u3001\u8def\u5f84\u7b49\u4fe1\u606f<br \/>\n&#8211; \u4ecePython2.7\u5207\u6362\u5230\u9ed8\u8ba4\u7684Python3.6\u7248\u672c<br \/>\n&#8211; \u5b89\u88c5Python3\uff08\u9002\u7528\u4e8eMac\uff09<\/p>\n<p>\u6211\u8ba4\u4e3a\u5982\u679c\u53c2\u8003\u4e0a\u8ff0\u94fe\u63a5\u7684\u8bdd\uff0c\u5c31\u53ef\u4ee5\u4e86\u3002<\/p>\n<pre class=\"post-pre\"><code>curl \"https:\/\/bootstrap.pypa.io\/get-pip.py\" -o \"get-pip.py\"\r\nsudo python get-pip.py\r\nsudo pip install awscli\r\n<\/code><\/pre>\n<p>\u5982\u679c\u5b89\u88c5\u6ca1\u6709\u9519\u8bef\u5e76\u4e14\u7248\u672c\u6b63\u786e\u5730\u663e\u793a\u51fa\u6765\uff0c\u90a3\u5c31\u662f\u6210\u529f\u4e86\u3002<\/p>\n<pre class=\"post-pre\"><code>pip --version\r\naws --version\r\n<\/code><\/pre>\n<h1>\u5c06IAM\u7528\u6237\u6ce8\u518c\u5230AWS CLI<\/h1>\n<pre class=\"post-pre\"><code>aws configure\r\n\u307e\u305f\u306f\u3001\r\naws configure --profile \u30e6\u30fc\u30b6\u30fc\u540d\r\n<\/code><\/pre>\n<h2>\u4f9d\u6b21\u586b\u5199<\/h2>\n<p>AWS CLI \u306e\u8a2d\u5b9a<\/p>\n<p>AWS-CLI\u306e\u521d\u671f\u8a2d\u5b9a\u306e\u30e1\u30e2<br \/>\n\u305d\u308c\u305e\u308c\u5148\u307b\u3069\u4f5c\u6210\u3057\u305f\u3001IAM\u30e6\u30fc\u30b6\u30fc\u3092\u30b3\u30d4\u30da\u3057\u307e\u3059\u3002<br \/>\n\u30ea\u30fc\u30b8\u30e7\u30f3\u3068\u51fa\u529b\u5f62\u5f0f\u306f\u30ea\u30f3\u30af\u5148\u304b\u3089\u9078\u3093\u3067\u304f\u3060\u3055\u3044\u3002<\/p>\n<pre class=\"post-pre\"><code>AWS Access Key ID [None]: \r\nAWS Secret Access Key [None]: \r\nDefault region name [None]: \r\nDefault output format [None]: json\r\n# Asia Pacific (Tokyo) ap-northeast-1\r\n<\/code><\/pre>\n<h1>&#8220;terraform&#8221; \u662f\u4ec0\u4e48\u610f\u601d\uff1f<\/h1>\n<p>\u901a\u8fc7\u5c06\u57fa\u7840\u8bbe\u65bd\u7f16\u5199\u6210\u4ee3\u7801\u7684\u5f62\u5f0f\uff0c\u53ef\u4ee5\u76f4\u63a5\u5bf9\u57fa\u7840\u8bbe\u65bd\u8fdb\u884c\u4fee\u6539\uff0c\u5b9e\u73b0\u4ee3\u7801\u7684\u5171\u4eab\u548c\u91cd\u590d\u5229\u7528\uff0c\u65e0\u9700\u901a\u8fc7GUI\u754c\u9762\u3002\u53c2\u8003\u8d44\u6599\u5305\u62ec\u300a\u81ea\u52a8\u5316\u57fa\u7840\u8bbe\u65bd\u914d\u7f6e\u7ba1\u7406\u7684\u5165\u95e8\u6307\u5357\uff1aTerraform\u300b\u548c\u300a\u4f7f\u7528Terraform\u521b\u5efaAWS\u7684VPC\u5e76\u542f\u52a8EC2\u5b9e\u4f8b\u300b\u3002\u5e38\u7528\u7684\u6587\u4ef6\u683c\u5f0f\u4e3a.tf\u548c.tfvars\u3002\u6587\u4ef6\u7684\u5206\u5272\u53ef\u4ee5\u5ef6\u540e\uff0c\u6240\u6709\u5185\u5bb9\u90fd\u5199\u5728main.tf\u4e2d\u3002<\/p>\n<h2>\u4e3b\u8981\u547d\u4ee4<\/h2>\n<pre class=\"post-pre\"><code>#\u3000\u521d\u671f\u5316\u3000Terraform\u3067\u65b0\u3057\u304f\u8a2d\u5b9a\u3092\u8a18\u8ff0\u3057\u305f\u5834\u5408\u3001\u521d\u671f\u5316\u3092\u884c\u3046\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002\r\nterraform init\r\n# \u78ba\u8a8d(\u6240\u8b02dry-run)\r\nterraform plan\r\n# \u9069\u7528 \u30b3\u30fc\u30c9\u306e\u72b6\u614b\u3092AWS\u4e0a\u3078\u9069\u7528\r\nterraform apply\r\n# \u3059\u3079\u3066\u6d88\u53bb\u3059\u308b\u30b3\u30de\u30f3\u30c9\r\nterraform destroy\r\n# \u30ea\u30bd\u30fc\u30b9\u306e\u95b2\u89a7\r\nterraform show\r\n\r\n<\/code><\/pre>\n<h2>\u5907\u7528<\/h2>\n<pre class=\"post-pre\"><code>mkdir terraform\r\ncd terraform\r\ntouch main.tf\r\ntouch terraform.tfvars\r\n<\/code><\/pre>\n<h1>\u63d0\u4f9b\u8005\u7684\u8bbe\u7f6e<\/h1>\n<p>\u9700\u8981\u9996\u5148\u6307\u5b9aprovider\u3002<br \/>\n\u7531\u4e8e\u53ef\u9002\u7528\u4e8e\u591a\u4e2a\u73af\u5883\uff0c\u9700\u58f0\u660e\u201c\u8981\u4f7f\u7528\u54ea\u4e2a\u63d0\u4f9b\u8005\uff1f\u201d<\/p>\n<h2>&#8220;\u63d0\u4f9b\u8005&#8221;\u662f\u4ec0\u4e48\u610f\u601d\uff1f<\/h2>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">\u305d\u306e\u540d\u3068\u901a\u308a\u30d7\u30ed\u30d0\u30a4\u30c0\u3067AWS\u306e\u4ed6\u306bheroku\u3084GCP\u3082\u3067\u304d\u308b\u3089\u3057\u3044<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">profile\u3067aws config\u3067profile\u3092\u6307\u5b9a\u3057\u305f\u5834\u5408\u306f\u305d\u306e\u540d\u524d\u3001\u3057\u3066\u3044\u306a\u3044\u5834\u5408\u306f&#8221;default&#8221;<\/ul>\n<\/li>\n<\/ul>\n<p>region = &#8220;ap-northeast-1&#8243;\u3067\u6307\u5b9a\u3057\u305f\u30ea\u30fc\u30b8\u30e7\u30f3\u5185\u306bVPC\u306a\u3069\u3092\u4f5c\u3063\u3066\u3044\u304f<\/p>\n<pre class=\"post-pre\"><code>\r\n<span class=\"nx\">provider<\/span> <span class=\"s2\">\"aws\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">profile<\/span> <span class=\"p\">=<\/span> <span class=\"err\">\u30e6\u30fc\u30b6\u30fc\u540d<\/span>\r\n  <span class=\"nx\">region<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h2>\u521b\u5efaVPC<\/h2>\n<p>\u4f7f\u7528AWS_VPC\u8d44\u6e90<\/p>\n<pre class=\"post-pre\"><code><span class=\"c1\"># VPC<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_vpc\"<\/span> <span class=\"s2\">\"aws-tf-vpc\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>           <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.0.0\/16\"<\/span>\r\n  <span class=\"nx\">instance_tenancy<\/span>     <span class=\"p\">=<\/span> <span class=\"s2\">\"default\"<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-vpc\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h1>\u6267\u884c<\/h1>\n<pre class=\"post-pre\"><code>terraform init\r\nterraform plan\r\nterraform apply\r\n\r\n# \u30ea\u30bd\u30fc\u30b9\u306e\u95b2\u89a7\r\nterraform show\r\n<\/code><\/pre>\n<h1>\u8bd5\u7740\u5b9e\u9645\u53bb\u9a8c\u8bc1<\/h1>\n<ul class=\"post-ul\">\u5b9f\u969b\u306bAWS\u306b\u30a2\u30af\u30bb\u30b9\u3057\u3066\u78ba\u8a8d\u3057\u3066\u307f\u307e\u3057\u3087\u3046<\/ul>\n<p>\u53ea\u8981\u6709\u4e00\u4e2a\u5199\u6709&#8221;aws-tf-vpc&#8221;\u7684VPC\uff0c\u5c31\u7b97\u6210\u529f\u3002<\/p>\n<h2>&#8220;\u8d44\u6e90&#8221;\u4e00\u8bcd\u7684\u610f\u601d<\/h2>\n<pre class=\"post-pre\"><code>resource\u306fVPC\u3084EC2\u306e\u3088\u3046\u306a\u8d77\u52d5\u3057\u305f\u3044\u30ea\u30bd\u30fc\u30b9\u3092\u5b9a\u7fa9\r\n\u30ea\u30bd\u30fc\u30b9\u306e\u7a2e\u985e\u306f\u3001\u30d7\u30ed\u30d0\u30a4\u30c0\u30fc\u304cAWS\u306e\u5834\u5408\u306faws_*\u3068\u3044\u3046\u540d\u524d\u3067Terraform\u3067\u4e88\u3081\u5b9a\u7fa9\u3055\u308c\u3066\u3044\u307e\u3059\u3002VPC\u3067\u3042\u308c\u3070aws_vpc\u3001EC2\u3067\u3042\u308c\u3070aws_instance\u3067\u3059\u3002\r\n<\/code><\/pre>\n<h2>\u8d44\u6e90\u7684\u8bed\u6cd5<\/h2>\n<pre class=\"post-pre\"><code>\u30ea\u30bd\u30fc\u30b9\u306fresource\u30d6\u30ed\u30c3\u30af\u3067\u8a2d\u5b9a\u3057\u307e\u3059\u3002resource \"&lt;\u30ea\u30fc\u30b9\u306e\u7a2e\u985e&gt;\" \"&lt;\u30ea\u30bd\u30fc\u30b9\u540d&gt;\" {}\u3068\u3044\u3046\u69cb\u6587\u3067\u3059\u3002\r\n<\/code><\/pre>\n<h2>\u8d44\u6e90\u7684\u5b9a\u4e49\u548c\u547d\u540d<\/h2>\n<pre class=\"post-pre\"><code>resource \"aws_vpc\" \"this\" {\r\n\r\n\u3053\u3053\u3067\u306f \u300c\"aws_vpc\"\u3068\u3044\u3046\u30ea\u30bd\u30fc\u30b9\u3092\"this\"\u3068\u3044\u3046\u540d\u524d\u300d \u3067\u4f5c\u6210\u3057\u3066\u3044\u307e\u3059\u3002\r\nresource \"aws_vpc\" \u307e\u3067\u306fAWS\u306eVPC\u3092\u4f5c\u6210\u3059\u308b\u3068\u3044\u3046\u610f\u5473\u3067\u3001 \"this\" \u306fTerraform\u3067\u5b9a\u7fa9\u3059\u308b\u4ed6\u306e\u30ea\u30bd\u30fc\u30b9\u304b\u3089\u53c2\u7167\u3059\u308b\u969b\u306b\u4f7f\u7528\u3057\u307e\u3059\u3002\r\n<\/code><\/pre>\n<h2>\u53c2\u8003\u4ed6\u8d44\u6e90\u7684\u5c5e\u6027<\/h2>\n<pre class=\"post-pre\"><code>Terraform\u306b\u306f\u30c6\u30f3\u30d7\u30ec\u30fc\u30c8\u5185\u306e\u4ed6\u30ea\u30bd\u30fc\u30b9\u306e\u5c5e\u6027\u3092\u53c2\u7167\u3059\u308b\u65b9\u6cd5\u304c\u3042\u308a\u307e\u3059\u3002\r\n\u5177\u4f53\u7684\u306b\u306f\u3001&lt;\u30ea\u30bd\u30fc\u30b9\u306e\u7a2e\u985e&gt;.&lt;\u30ea\u30bd\u30fc\u30b9\u540d&gt;.&lt;\u5c5e\u6027\u540d&gt;\u3067\u4ed6\u30ea\u30bd\u30fc\u30b9\u306e\u5c5e\u6027\u3092\u53c2\u7167\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\r\n<\/code><\/pre>\n<p>\u5176\u4ed6\u77e5\u8bc6\u8bf7\u70b9\u51fb\u4e0b\u9762\u7684\u94fe\u63a5<br \/>\n* \u5b66\u4e60\u5982\u4f55\u5728AWS\u4e0a\u4f7f\u7528Terraform<\/p>\n<h2>\u5c06VSCode\u5347\u7ea7\u81f3\u652f\u6301Terraform v0.12\u7248\u672c\u3002<\/h2>\n<pre class=\"post-pre\"><code>\r\n\u4e0b\u8a18\u306e\u3088\u3046\u306a\u30e1\u30c3\u30bb\u30fc\u30b8\u304c\u51fa\u305f\u4eba\u5411\u3051\r\nFor Terraform 0.12 support try enabling the experimental language server with the 'Terraform: Enable\/Disable Language Server' command\r\n\r\n\u30b3\u30de\u30f3\u30c9\u30d1\u30ec\u30c3\u30c8\u3092\u958b\u304f(ctl\/cmd+shift+p)\r\nterraform: install\/update language server -&gt; \u73fe\u5728\u6700\u65b0\u306e v0.0.9 \u3092\u9078\u629e\r\nterraform: Enable\/Disable Language Server \u3092\u5b9f\u884c\r\n\u4e00\u5ea6vscode\u3092\u9589\u3058\u305f\u3089HCL2\u8a18\u6cd5\u306e.tf\u30d5\u30a1\u30a4\u30eb\u3067\u3082\u30a8\u30e9\u30fc\u304c\u51fa\u306a\u304f\u306a\u308a\u307e\u3057\u305f\u3002\r\n\r\n<\/code><\/pre>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">VSCode\u3067Terraform\u3092\u66f8\u304f\u3068\u304d\u306e\u8a2d\u5b9a(2019\/11\/07\u8ffd\u8a18: HCL2\u5bfe\u5fdc)<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">feat: Terraform 0.12 support (was hcl2 support) #157<\/ul>\n<h1>\u6dfb\u52a0\u4e0d\u80fd\u4e0a\u4f20\u5230.gitignore\u7684\u6587\u4ef6\u3002<\/h1>\n<p>\u6211\u4f1a\u628a\u4ee5\u4e0b\u6587\u4ef6\u6dfb\u52a0\u5230GitHub\u4e0a\uff0c\u56e0\u4e3a\u4e0d\u80fd\u4e0a\u4f20\u5230GitHub\u3002<br \/>\n* Terraform.gitignore<\/p>\n<pre class=\"post-pre\"><code>#  Local .terraform directories\r\n**\/.terraform\/*\r\n\r\n# .tfstate files\r\n*.tfstate\r\n*.tfstate.*\r\n\r\n# .tfvars files\r\n*.tfvars\r\n<\/code><\/pre>\n<h1>\u521b\u5efa\u5b50\u7f51<\/h1>\n<p>\u4f7f\u7528\u7684\u8d44\u6e90aws_subnet<\/p>\n<pre class=\"post-pre\"><code>\r\n<span class=\"c1\"># \u30b5\u30d6\u30cd\u30c3\u30c8\uff12\u3064\u4f5c\u6210(public\u3068private)<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"aws-tf-public-subnet-1a\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>            <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.1.0\/24\"<\/span>\r\n  <span class=\"nx\">availability_zone<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1a\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-public-subnet-1a\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1a\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>            <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.20.0\/24\"<\/span>\r\n  <span class=\"nx\">availability_zone<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1a\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1a\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<\/code><\/pre>\n<h1>\u521b\u5efa\u4e92\u8054\u7f51\u7f51\u5173<\/h1>\n<p>\u4f7f\u7528\u8d44\u6e90aws_internet_gateway<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_internet_gateway\"<\/span> <span class=\"s2\">\"aws-tf-igw\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-igw\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h1>\u521b\u5efa\u8def\u7531\u8868<\/h1>\n<p>AWS \u8def\u7531\u8868\u8d44\u6e90<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_route_table\"<\/span> <span class=\"s2\">\"aws-tf-public-route\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">route<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">cidr_block<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"0.0.0.0\/0\"<\/span>\r\n    <span class=\"nx\">gateway_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_internet_gateway<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">igw<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"p\">}<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-public-route\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h2>\u5c06\u8def\u7531\u8868\u4e0e\u516c\u5171\u5b50\u7f51\u76f8\u5173\u8054<\/h2>\n<p>\u4f7f\u7528AWS\u8def\u7531\u8868\u5173\u8054<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_route_table_association\"<\/span> <span class=\"s2\">\"aws-tf-public-subnet-association\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">subnet_id<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">public<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">a<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">route_table_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_route_table<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">public<\/span><span class=\"err\">-<\/span><span class=\"nx\">route<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h1>\u521b\u5efa EC2 \u5b9e\u4f8b\uff08\u5728\u516c\u5171\u7f51\u7edc\u4e2d\u521b\u5efa\uff09\u3002<\/h1>\n<p>\u4f7f\u7528\u7684\u8d44\u6e90\u4e3aaws_instance\u548caws_key_pair\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_instance\"<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">ami<\/span>                     <span class=\"p\">=<\/span> <span class=\"s2\">\"ami-011facbea5ec0363b\"<\/span>\r\n  <span class=\"nx\">instance_type<\/span>           <span class=\"p\">=<\/span> <span class=\"s2\">\"t2.micro\"<\/span>\r\n  <span class=\"nx\">disable_api_termination<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">false<\/span>\r\n  <span class=\"nx\">key_name<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_key_pair<\/span><span class=\"err\">.<\/span><span class=\"nx\">auth<\/span><span class=\"err\">.<\/span><span class=\"nx\">key_name<\/span>\r\n  <span class=\"nx\">vpc_security_group_ids<\/span>  <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">subnet_id<\/span>               <span class=\"p\">=<\/span> <span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">public<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">a<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># ami\u3068\u306fAmazon Linux 2 AMI\u3067\u3059\u3002\u4eca\u56de\u306f\u5b9f\u969b\u306eami\u306e\u5024\u3092\u76f4\u63a5\u5165\u308c\u3066\u307e\u3059\u304c\u3001\u3044\u3064\u3082\u6700\u65b0\u7248\u306b\u3067\u304d\u307e\u3059\u3002<\/span>\r\n\r\n<span class=\"nx\">variable<\/span> <span class=\"s2\">\"public_key_path\"<\/span> <span class=\"p\">{}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_key_pair\"<\/span> <span class=\"s2\">\"auth\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">key_name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"terraform-aws\"<\/span>\r\n    <span class=\"nx\">public_key<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">file<\/span><span class=\"err\">(<\/span><span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">public_key_path<\/span><span class=\"err\">)<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<pre class=\"post-pre\"><code># \u30ed\u30fc\u30ab\u30eb\u306b\u9375\u304c\u3042\u308b\u5834\u6240\u3092\u6307\u5b9a\r\npublic_key_path = \"~\/.ssh\/terraform-aws.pub\"\r\n<\/code><\/pre>\n<h2>\u786e\u4fdd\u6211\u59cb\u7ec8\u4f7f\u7528\u6700\u65b0\u7248\u672c\u7684Ami\u3002<\/h2>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Terraform\u3067\u3082\u3044\u3064\u3067\u3082\u6700\u65b0AMI\u304b\u3089EC2\u3092\u8d77\u52d5\u3057\u305f\u3044<\/ul>\n<\/li>\n<\/ul>\n<p>Terraform\u3067AWS AMI\u306e\u6700\u65b0\u3092\u5e38\u306b\u4f7f\u3046\u3088\u3046\u306b\u3059\u308b<\/p>\n<h2>\u5173\u4e8e\u5b9e\u4f8b\u7684key_name\u3002<\/h2>\n<p>\u5728\u4f7f\u7528GUI\u521b\u5efa\u65f6\uff0c\u5728\u521b\u5efa\u5b9e\u4f8b\u7684\u540c\u65f6\uff0c\u4f1a\u4f7f\u7528\u65b0\u521b\u5efa\u7684ssh\u5bc6\u94a5\u6216\u73b0\u6709\u7684\u5bc6\u94a5\u6765\u8bbf\u95eeAWS\u3002\u4f46\u662f\u5728\u4f7f\u7528terraform\u521b\u5efa\u65f6\uff0c\u5c06\u4ece.tfvars\u6587\u4ef6\u4e2d\u5f15\u7528\u5e76\u5c06\u516c\u94a5\u7c98\u8d34\u5230\u5b9e\u4f8b\u7684key_name\u4e2d\u3002<br \/>\n\u6211\u521b\u5efa\u4e86\u4e00\u4e2a\u540d\u4e3aterraform-aws\u7684\u5bc6\u94a5\u3002<\/p>\n<pre class=\"post-pre\"><code>$ cd .ssh\r\n$ ssh-keygen -t rsa\r\nterraform-aws\u3000\u4eca\u56de\u306e\u5834\u5408\u306e\u540d\u524d\r\n\u3053\u3053\u3067\u30a8\u30f3\u30bf\u30fc\u30ad\u30fc\u3092\uff12\u9023\u6253\r\n$ ls\r\n\u3053\u3053\u3067terraform-aws  terraform-aws.pub\u304c\u3067\u304d\u3066\u3044\u308b\u3053\u3068\u3092\u78ba\u8a8d\r\n<\/code><\/pre>\n<p>\u53c2\u8003\uff1a<br \/>\n* \u8d44\u6e90\uff1aaws_key_pair<br \/>\n* \u901a\u8fc7Terraform\u6ce8\u518c\u5e76\u542f\u52a8EC2\u5e76\u8fdb\u884cSSH\u8fde\u63a5<\/p>\n<h3>\u6709\u5173Terraform\u53d8\u91cf\u7684\u4fe1\u606f<\/h3>\n<p>Terraform\u7684\u53d8\u91cf\u901a\u8fc7variable\u5757\u6765\u5b9a\u4e49\u3002\u53ef\u4ee5\u4f7f\u7528var.&lt;\u53d8\u91cf\u540d&gt;\u7684\u683c\u5f0f\u8fdb\u884c\u5f15\u7528\u3002\u5982\u679c\u5c06\u503c\u5b9a\u4e49\u5728\u5916\u90e8\u6587\u4ef6\u4e2d\uff0c\u4f8b\u5982terraform.tfvars\uff0c\u5b83\u5c06\u81ea\u52a8\u88ab\u8bfb\u53d6\u5e76\u8d4b\u503c\u7ed9\u53d8\u91cf\u3002\u800c.tfvars\u7684\u91cd\u8981\u6027\u5728\u4e8e\u4e0d\u9700\u8981\u5c06\u5176\u4e0a\u4f20\u81f3GitHub\u3002\u53c2\u8003\u3010Terraform \u518d\u5165\u95e8\u3011\uff0c\u8ba9\u6211\u4eec\u4e00\u952e\u901a\u8fc7\u547d\u4ee4\u884c\u6765\u6784\u5efa\u7531EC2\u548cRDS\u7ec4\u6210\u7684\u6700\u5c0f\u5316AWS\u73af\u5883\u3002<\/p>\n<h1>\u521b\u5efa\u5b89\u5168\u7ec4<\/h1>\n<p>\u4f7f\u7528AWS\u5b89\u5168\u7ec4\u548cAWS\u5b89\u5168\u7ec4\u89c4\u5219<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group\"<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span>\r\n  <span class=\"nx\">description<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web_sg\"<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># 80\u756a\u30dd\u30fc\u30c8\u8a31\u53ef\u306e\u30a4\u30f3\u30d0\u30a6\u30f3\u30c9\u30eb\u30fc\u30eb<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"inbound_http\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"ingress\"<\/span>\r\n  <span class=\"nx\">from_port<\/span> <span class=\"p\">=<\/span> <span class=\"mi\">80<\/span>\r\n  <span class=\"nx\">to_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">80<\/span>\r\n  <span class=\"nx\">protocol<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n  <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n    <span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">,<\/span>\r\n  <span class=\"p\">]<\/span>\r\n\r\n  <span class=\"c1\"># \u3053\u3053\u3067web_server\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u7d10\u4ed8\u3051<\/span>\r\n  <span class=\"nx\">security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># 22\u756a\u30dd\u30fc\u30c8\u8a31\u53ef\u306e\u30a4\u30f3\u30d0\u30a6\u30f3\u30c9\u30eb\u30fc\u30eb<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"inbound_ssh\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"ingress\"<\/span>\r\n  <span class=\"nx\">from_port<\/span> <span class=\"p\">=<\/span> <span class=\"mi\">22<\/span>\r\n  <span class=\"nx\">to_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">22<\/span>\r\n  <span class=\"nx\">protocol<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n  <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n    <span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">,<\/span>\r\n  <span class=\"p\">]<\/span>\r\n\r\n  <span class=\"c1\"># \u3053\u3053\u3067web_server\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u7d10\u4ed8\u3051<\/span>\r\n  <span class=\"nx\">security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># \u30a2\u30a6\u30c8\u30d0\u30a6\u30f3\u30c9\u30eb\u30fc\u30eb<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"outbound_all\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"egress\"<\/span>\r\n  <span class=\"nx\">from_port<\/span> <span class=\"p\">=<\/span> <span class=\"mi\">0<\/span>\r\n  <span class=\"nx\">to_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">0<\/span>\r\n  <span class=\"nx\">protocol<\/span>  <span class=\"p\">=<\/span> <span class=\"err\">-<\/span><span class=\"mi\">1<\/span>\r\n  <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n    <span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">,<\/span>\r\n  <span class=\"p\">]<\/span>\r\n\r\n  <span class=\"c1\"># \u3053\u3053\u3067web_server\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u7d10\u4ed8\u3051<\/span>\r\n  <span class=\"nx\">security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h2>\u5b89\u5168\u7ec4\u8be6\u7ec6\u4fe1\u606f<\/h2>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Terraform \u3067\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u3092\u7ba1\u7406<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Terraform\u30671\u3064\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u8907\u6570\u306e\u30eb\u30fc\u30eb\u3092\u8a2d\u5b9a\u3059\u308b<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">Terraform\u3067Security Group\u3092\u4f5c\u3063\u305f\u3089\u4e0a\u624b\u304f\u3044\u304b\u306a\u304b\u3063\u305f<\/ul>\n<h1>\u521b\u5efa\u5f39\u6027IP<\/h1>\n<p>\u4f7f\u7528\u4e9a\u9a6c\u900a\u5f39\u6027 IP \u8d44\u6e90<\/p>\n<pre class=\"post-pre\"><code><span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_eip\"<\/span> <span class=\"s2\">\"aws-tf-eip\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">instance<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_instance<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">vpc<\/span>      <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"nx\">output<\/span> <span class=\"s2\">\"example-public-ip\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">value<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"${aws_eip.aws-tf-eip.public_ip}\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<\/code><\/pre>\n<h3>\u5173\u4e8e\u8f93\u51fa<\/h3>\n<p>\u5f39\u6027IP\u7b49\u53ef\u4ee5\u901a\u8fc7GUI\u8fdb\u884c\u786e\u8ba4\uff0c\u4f46\u5982\u679c\u5728\u8f93\u51fa\u5757\u4e2d\u8fdb\u884c\u63cf\u8ff0\uff0c\u5219\u5728\u8fd0\u884cterraform apply\u65f6\u5c06\u8f93\u51fa\u4ee5\u4e0b\u5185\u5bb9\u3002<\/p>\n<pre class=\"post-pre\"><code>Apply complete! \r\n\r\nOutputs:\r\n\r\nexample-public-ip = ElasticIP\r\n<\/code><\/pre>\n<h1>\u521b\u5efa RDS<\/h1>\n<p>\u7531\u4e8eRDS\u9700\u8981\u4e24\u4e2a\u5b50\u7f51\uff0c\u6240\u4ee5\u6211\u4eec\u5c06\u4ece\u53e6\u4e00\u4e2a\u53ef\u7528\u533a\u521b\u5efa\u4e00\u4e2a\u5b50\u7f51\u3002<br \/>\n\u6211\u4eec\u5c06\u4f7f\u7528aws_subnet\u548caws_db_subnet_group\u8fd9\u4e24\u4e2a\u8d44\u6e90\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"c1\"># RDS\u7528\u306e\u30b5\u30d6\u30cd\u30c3\u30c8\u3092\u4f5c\u6210<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1c\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">cidr_block<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.3.0\/24\"<\/span>\r\n  <span class=\"nx\">availability_zone<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1c\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1c\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"c1\"># \u4f7f\u7528\u3059\u308b\uff12\u3064\u3092\u6307\u5b9a\u3057\u307e\u3059\u3002<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_db_subnet_group\"<\/span> <span class=\"s2\">\"rdb-tf-db\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"rdb-tf-db-subnet\"<\/span>\r\n    <span class=\"nx\">description<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"It is a DB subnet group on tf_vpc.\"<\/span>\r\n    <span class=\"nx\">subnet_ids<\/span>  <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">private<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">a<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">,<\/span><span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">private<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">c<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n    <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n        <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"rdb-tf-db\"<\/span>\r\n    <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<\/code><\/pre>\n<h1>\u521b\u5efa\u7528\u4e8e\u6570\u636e\u5e93\u7684\u5b89\u5168\u6027<\/h1>\n<p>\u4e3a\u4e86\u4ec5\u5141\u8bb8Web\u670d\u52a1\u5668\u8bbf\u95eeDB\u670d\u52a1\u5668\uff0c\u6211\u4eec\u5c06\u521b\u5efa\u5b89\u5168\u6027\u63aa\u65bd\u3002<br \/>\n\u4f7f\u7528\u7684\u8d44\u6e90\u662faws_security_group\u548caws_security_group_rule\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"c1\"># Security Group<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group\"<\/span> <span class=\"s2\">\"aws-tf-db\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-db\"<\/span>\r\n    <span class=\"nx\">description<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-db-sg\"<\/span>\r\n    <span class=\"nx\">vpc_id<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n    <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n      <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-db\"<\/span>\r\n    <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"db\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">type<\/span>                     <span class=\"p\">=<\/span> <span class=\"s2\">\"ingress\"<\/span>\r\n    <span class=\"nx\">from_port<\/span>                <span class=\"p\">=<\/span> <span class=\"mi\">5432<\/span>\r\n    <span class=\"nx\">to_port<\/span>                  <span class=\"p\">=<\/span> <span class=\"mi\">5432<\/span>\r\n    <span class=\"nx\">protocol<\/span>                 <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n    <span class=\"nx\">source_security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n    <span class=\"nx\">security_group_id<\/span>        <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># source_security_group_id\u3068\u306f\u30a2\u30af\u30bb\u30b9\u3092\u8a31\u53ef\u3059\u308b\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7ID\u3064\u307e\u308aWeb\u5074\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u3092\u6307\u3057\u307e\u3059\u3002<\/span>\r\n<\/code><\/pre>\n<h1>\u521b\u5efaRDS\u5b9e\u4f8b<\/h1>\n<p>\u4f7f\u7528AWS\u7684DB\u5b9e\u4f8b<\/p>\n<pre class=\"post-pre\"><code>\r\n\r\n<span class=\"nx\">variable<\/span> <span class=\"s2\">\"aws-td-db-username\"<\/span> <span class=\"p\">{}<\/span>\r\n<span class=\"nx\">variable<\/span> <span class=\"s2\">\"aws-td-db-password\"<\/span> <span class=\"p\">{}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_db_instance\"<\/span> <span class=\"s2\">\"aws-td-db\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">identifier<\/span>              <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-td-db\"<\/span>\r\n  <span class=\"nx\">allocated_storage<\/span>       <span class=\"p\">=<\/span> <span class=\"mi\">20<\/span>\r\n  <span class=\"nx\">name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"db11\"<\/span>\r\n  <span class=\"nx\">engine<\/span>                  <span class=\"p\">=<\/span> <span class=\"s2\">\"postgres\"<\/span>\r\n  <span class=\"nx\">engine_version<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"11.5\"<\/span>\r\n  <span class=\"nx\">instance_class<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"db.t2.micro\"<\/span>\r\n  <span class=\"nx\">storage_type<\/span>            <span class=\"p\">=<\/span> <span class=\"s2\">\"gp2\"<\/span>\r\n  <span class=\"nx\">username<\/span>                <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">td<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">-<\/span><span class=\"nx\">username<\/span>\r\n  <span class=\"nx\">password<\/span>                <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">td<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">-<\/span><span class=\"nx\">password<\/span>\r\n  <span class=\"nx\">vpc_security_group_ids<\/span>  <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">db_subnet_group_name<\/span>    <span class=\"p\">=<\/span> <span class=\"nx\">aws_db_subnet_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">rdb<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">.<\/span><span class=\"nx\">name<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<\/code><\/pre>\n<pre class=\"post-pre\"><code>\r\npublic_key_path = \"~\/.ssh\/terraform-aws.pub\"\r\naws-td-db-username = \u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\r\naws-td-db-password = \u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\r\n\u305d\u308c\u305e\u308c\u6307\u5b9a\u3057\u3066\u304f\u3060\u3055\u3044\u3002\r\n<\/code><\/pre>\n<h1>\u6267\u884c<\/h1>\n<pre class=\"post-pre\"><code>terraform plan\r\nterraform apply\r\n# \u78ba\u8a8d\r\nterrafom show\r\n<\/code><\/pre>\n<h2>\u5173\u4e8e\u5728\u521b\u5efaRDS\u5b9e\u4f8b\u65f6\u9047\u5230\u7684\u9519\u8bef<\/h2>\n<pre class=\"post-pre\"><code>DBName must begin with a letter and contain only alphanumeric characters\r\n\r\n\u3053\u308c\u306fRDS\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u306ename\u306b\u3064\u3044\u3066\u306e\u30a8\u30e9\u30fc\u3067\u3059\u3002\u79c1\u306e\u5834\u5408\u306f`name = \"db11\"`\u3068\u66f8\u304d\u307e\u3057\u305f\u304c\u3001\u6587\u5b57\u3067\u521d\u3081\u3066\u82f1\u6570\u5b57\u4e21\u65b9\u3092\u66f8\u304b\u306a\u3044\u3068\u3044\u3051\u306a\u3044\u3089\u3057\u3044\u3067\u3059\u3002\r\n<\/code><\/pre>\n<p>AWS aws_db_instance \u6570\u636e\u5e93\u540d\u79f0\u95ee\u9898<\/p>\n<pre class=\"post-pre\"><code>Error creating DB Instance: InvalidParameterValue: Invalid DB engine\r\n\r\n\u3053\u308c\u306fRDS\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u306e`engine`\u306e\u540d\u524d\u306e\u66f8\u304d\u65b9\u3067\u30a8\u30e9\u30fc\u304c\u51fa\u307e\u3057\u305f\u3002\u4eca\u56de\u306f`engine = \"postgres\"`\u3068\u66f8\u304d\u307e\u3057\u305f\u3002\r\n<\/code><\/pre>\n<p>\u521b\u5efaAWS\/RDS PostgreSQL\u5b9e\u4f8b\u65f6\u51fa\u73b0&#8221;\u65e0\u6548\u7684DB\u5f15\u64ce&#8221;\u9519\u8bef\u3002<br \/>\n\u8bf7\u67e5\u770b\u5f15\u64ce\u90e8\u5206\u3002<\/p>\n<h1>\u4ee5\u4e0b\u5185\u5bb9\u6709\u4e2d\u6587\u7248\u672c\u3002<\/h1>\n<pre class=\"post-pre\"><code><span class=\"nx\">provider<\/span> <span class=\"s2\">\"aws\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">profile<\/span> <span class=\"p\">=<\/span> <span class=\"err\">\u30d7\u30ed\u30d5\u30a3\u30fc\u30eb\u540d<\/span>\r\n  <span class=\"nx\">region<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1\"<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># VPC\u4f5c\u6210<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_vpc\"<\/span> <span class=\"s2\">\"aws-tf-vpc\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>           <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.0.0\/16\"<\/span>\r\n  <span class=\"nx\">instance_tenancy<\/span>     <span class=\"p\">=<\/span> <span class=\"s2\">\"default\"<\/span>\r\n  <span class=\"nx\">enable_dns_support<\/span>   <span class=\"p\">=<\/span> <span class=\"s2\">\"true\"<\/span>\r\n  <span class=\"nx\">enable_dns_hostnames<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"true\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-vpc\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># \u30b5\u30d6\u30cd\u30c3\u30c8\uff12\u3064\u4f5c\u6210(public\u3068private)<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"aws-tf-public-subnet-1a\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>            <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.1.0\/24\"<\/span>\r\n  <span class=\"nx\">availability_zone<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1a\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-public-subnet-1a\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1a\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>            <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">cidr_block<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.20.0\/24\"<\/span>\r\n  <span class=\"nx\">availability_zone<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1a\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1a\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># \u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u30b2\u30fc\u30c8\u30a6\u30a7\u30a4\u306e\u4f5c\u6210<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_internet_gateway\"<\/span> <span class=\"s2\">\"aws-tf-igw\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-igw\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># \u30eb\u30fc\u30c8\u30c6\u30fc\u30d6\u30eb\u306e\u4f5c\u6210<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_route_table\"<\/span> <span class=\"s2\">\"aws-tf-public-route\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">route<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">cidr_block<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"0.0.0.0\/0\"<\/span>\r\n    <span class=\"nx\">gateway_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_internet_gateway<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">igw<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"p\">}<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-public-route\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># \u30b5\u30d6\u30cd\u30c3\u30c8\u306e\u95a2\u9023\u4ed8\u3051\u3067\u30eb\u30fc\u30c8\u30c6\u30fc\u30d6\u30eb\u3092\u30d1\u30d6\u30ea\u30c3\u30af\u30b5\u30d6\u30cd\u30c3\u30c8\u306b\u7d10\u4ed8\u3051<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_route_table_association\"<\/span> <span class=\"s2\">\"aws-tf-public-subnet-association\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">subnet_id<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">public<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">a<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">route_table_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_route_table<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">public<\/span><span class=\"err\">-<\/span><span class=\"nx\">route<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># EC2\u4f5c\u6210(public\u5074)<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_instance\"<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">ami<\/span>                     <span class=\"p\">=<\/span> <span class=\"s2\">\"ami-011facbea5ec0363b\"<\/span>\r\n  <span class=\"nx\">instance_type<\/span>           <span class=\"p\">=<\/span> <span class=\"s2\">\"t2.micro\"<\/span>\r\n  <span class=\"nx\">disable_api_termination<\/span> <span class=\"p\">=<\/span> <span class=\"kc\">false<\/span>\r\n  <span class=\"nx\">key_name<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_key_pair<\/span><span class=\"err\">.<\/span><span class=\"nx\">auth<\/span><span class=\"err\">.<\/span><span class=\"nx\">key_name<\/span>\r\n  <span class=\"nx\">vpc_security_group_ids<\/span>  <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">subnet_id<\/span>               <span class=\"p\">=<\/span> <span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">public<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">a<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"nx\">variable<\/span> <span class=\"s2\">\"public_key_path\"<\/span> <span class=\"p\">{}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_key_pair\"<\/span> <span class=\"s2\">\"auth\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">key_name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"terraform-aws\"<\/span>\r\n    <span class=\"nx\">public_key<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">file<\/span><span class=\"err\">(<\/span><span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">public_key_path<\/span><span class=\"err\">)<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"c1\"># Security Group<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group\"<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span>\r\n  <span class=\"nx\">description<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web_sg\"<\/span>\r\n  <span class=\"nx\">vpc_id<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-web\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># 80\u756a\u30dd\u30fc\u30c8\u8a31\u53ef\u306e\u30a4\u30f3\u30d0\u30a6\u30f3\u30c9\u30eb\u30fc\u30eb<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"inbound_http\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"ingress\"<\/span>\r\n  <span class=\"nx\">from_port<\/span> <span class=\"p\">=<\/span> <span class=\"mi\">80<\/span>\r\n  <span class=\"nx\">to_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">80<\/span>\r\n  <span class=\"nx\">protocol<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n  <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n    <span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">,<\/span>\r\n  <span class=\"p\">]<\/span>\r\n\r\n  <span class=\"c1\"># \u3053\u3053\u3067web_server\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u7d10\u4ed8\u3051<\/span>\r\n  <span class=\"nx\">security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># 22\u756a\u30dd\u30fc\u30c8\u8a31\u53ef\u306e\u30a4\u30f3\u30d0\u30a6\u30f3\u30c9\u30eb\u30fc\u30eb<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"inbound_ssh\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"ingress\"<\/span>\r\n  <span class=\"nx\">from_port<\/span> <span class=\"p\">=<\/span> <span class=\"mi\">22<\/span>\r\n  <span class=\"nx\">to_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">22<\/span>\r\n  <span class=\"nx\">protocol<\/span>  <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n  <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n    <span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">,<\/span>\r\n  <span class=\"p\">]<\/span>\r\n\r\n  <span class=\"c1\"># \u3053\u3053\u3067web_server\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u7d10\u4ed8\u3051<\/span>\r\n  <span class=\"nx\">security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># \u30a2\u30a6\u30c8\u30d0\u30a6\u30f3\u30c9\u30eb\u30fc\u30eb<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"outbound_all\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">type<\/span>      <span class=\"p\">=<\/span> <span class=\"s2\">\"egress\"<\/span>\r\n  <span class=\"nx\">from_port<\/span> <span class=\"p\">=<\/span> <span class=\"mi\">0<\/span>\r\n  <span class=\"nx\">to_port<\/span>   <span class=\"p\">=<\/span> <span class=\"mi\">0<\/span>\r\n  <span class=\"nx\">protocol<\/span>  <span class=\"p\">=<\/span> <span class=\"err\">-<\/span><span class=\"mi\">1<\/span>\r\n  <span class=\"nx\">cidr_blocks<\/span> <span class=\"p\">=<\/span> <span class=\"p\">[<\/span>\r\n    <span class=\"s2\">\"0.0.0.0\/0\"<\/span><span class=\"p\">,<\/span>\r\n  <span class=\"p\">]<\/span>\r\n\r\n  <span class=\"c1\"># \u3053\u3053\u3067web_server\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306b\u7d10\u4ed8\u3051<\/span>\r\n  <span class=\"nx\">security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\"># ElasticIP<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_eip\"<\/span> <span class=\"s2\">\"aws-tf-eip\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">instance<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_instance<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">vpc<\/span>      <span class=\"p\">=<\/span> <span class=\"kc\">true<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"nx\">output<\/span> <span class=\"s2\">\"example-public-ip\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">value<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_eip<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">eip<\/span><span class=\"err\">.<\/span><span class=\"nx\">public_ip<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"c1\">####RDS\u306e\u4f5c\u6210<\/span>\r\n<span class=\"c1\"># RDS\u7528\u306e\u30b5\u30d6\u30cd\u30c3\u30c8\u3092\u4f5c\u6210<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_subnet\"<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1c\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">vpc_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n  <span class=\"nx\">cidr_block<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"10.1.3.0\/24\"<\/span>\r\n  <span class=\"nx\">availability_zone<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"ap-northeast-1c\"<\/span>\r\n  <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-private-subnet-1c\"<\/span>\r\n  <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n<span class=\"c1\"># DB\u7528\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30fc\u3092\u4f5c\u6210<\/span>\r\n<span class=\"c1\"># Security Group<\/span>\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group\"<\/span> <span class=\"s2\">\"aws-tf-db\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-db\"<\/span>\r\n    <span class=\"nx\">description<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-db-sg\"<\/span>\r\n    <span class=\"nx\">vpc_id<\/span>      <span class=\"p\">=<\/span> <span class=\"nx\">aws_vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">vpc<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n    <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n      <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-tf-db\"<\/span>\r\n    <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_security_group_rule\"<\/span> <span class=\"s2\">\"db\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">type<\/span>                     <span class=\"p\">=<\/span> <span class=\"s2\">\"ingress\"<\/span>\r\n    <span class=\"nx\">from_port<\/span>                <span class=\"p\">=<\/span> <span class=\"mi\">5432<\/span>\r\n    <span class=\"nx\">to_port<\/span>                  <span class=\"p\">=<\/span> <span class=\"mi\">5432<\/span>\r\n    <span class=\"nx\">protocol<\/span>                 <span class=\"p\">=<\/span> <span class=\"s2\">\"tcp\"<\/span>\r\n    <span class=\"nx\">source_security_group_id<\/span> <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">web<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n    <span class=\"nx\">security_group_id<\/span>        <span class=\"p\">=<\/span> <span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_db_subnet_group\"<\/span> <span class=\"s2\">\"rdb-tf-db\"<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"nx\">name<\/span>        <span class=\"p\">=<\/span> <span class=\"s2\">\"rdb-tf-db-subnet\"<\/span>\r\n    <span class=\"nx\">description<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"It is a DB subnet group on tf_vpc.\"<\/span>\r\n    <span class=\"nx\">subnet_ids<\/span>  <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">private<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">a<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">,<\/span><span class=\"nx\">aws_subnet<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">private<\/span><span class=\"err\">-<\/span><span class=\"nx\">subnet<\/span><span class=\"err\">-<\/span><span class=\"mi\">1<\/span><span class=\"nx\">c<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n    <span class=\"nx\">tags<\/span> <span class=\"p\">=<\/span> <span class=\"p\">{<\/span>\r\n        <span class=\"nx\">Name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"rdb-tf-db\"<\/span>\r\n    <span class=\"p\">}<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<span class=\"nx\">variable<\/span> <span class=\"s2\">\"aws-td-db-username\"<\/span> <span class=\"p\">{}<\/span>\r\n<span class=\"nx\">variable<\/span> <span class=\"s2\">\"aws-td-db-password\"<\/span> <span class=\"p\">{}<\/span>\r\n\r\n<span class=\"nx\">resource<\/span> <span class=\"s2\">\"aws_db_instance\"<\/span> <span class=\"s2\">\"aws-td-db\"<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"nx\">identifier<\/span>              <span class=\"p\">=<\/span> <span class=\"s2\">\"aws-td-db\"<\/span>\r\n  <span class=\"nx\">allocated_storage<\/span>       <span class=\"p\">=<\/span> <span class=\"mi\">20<\/span>\r\n  <span class=\"nx\">name<\/span> <span class=\"p\">=<\/span> <span class=\"s2\">\"db11\"<\/span>\r\n  <span class=\"nx\">engine<\/span>                  <span class=\"p\">=<\/span> <span class=\"s2\">\"postgres\"<\/span>\r\n  <span class=\"nx\">engine_version<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"11.5\"<\/span>\r\n  <span class=\"nx\">instance_class<\/span>          <span class=\"p\">=<\/span> <span class=\"s2\">\"db.t2.micro\"<\/span>\r\n  <span class=\"nx\">storage_type<\/span>            <span class=\"p\">=<\/span> <span class=\"s2\">\"gp2\"<\/span>\r\n  <span class=\"nx\">username<\/span>                <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">td<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">-<\/span><span class=\"nx\">username<\/span>\r\n  <span class=\"nx\">password<\/span>                <span class=\"p\">=<\/span> <span class=\"nx\">var<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">td<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">-<\/span><span class=\"nx\">password<\/span>\r\n\r\n  <span class=\"nx\">vpc_security_group_ids<\/span>  <span class=\"p\">=<\/span> <span class=\"p\">[<\/span><span class=\"nx\">aws_security_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">aws<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">.<\/span><span class=\"nx\">id<\/span><span class=\"p\">]<\/span>\r\n  <span class=\"nx\">db_subnet_group_name<\/span>    <span class=\"p\">=<\/span> <span class=\"nx\">aws_db_subnet_group<\/span><span class=\"err\">.<\/span><span class=\"nx\">rdb<\/span><span class=\"err\">-<\/span><span class=\"nx\">tf<\/span><span class=\"err\">-<\/span><span class=\"nx\">db<\/span><span class=\"err\">.<\/span><span class=\"nx\">name<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<\/code><\/pre>\n<pre class=\"post-pre\"><code>public_key_path = \"~\/.ssh\/terraform-aws.pub\"\r\naws-td-db-username = \u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\r\naws-td-db-password = \u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\u203b\r\n<\/code><\/pre>\n<p>\u5982\u679c\u6709\u4efb\u4f55\u95ee\u9898\uff0c\u8bf7\u5728\u8bc4\u8bba\u680f\u4e2d\u7559\u8a00\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u9996\u5148 \u6211\u5c06\u4f7f\u7528Terraform\u521b\u5efaAWS (EC2\uff0cRDS)\u3002 \u6574\u4f53\u8d8b\u52bf \u5b89\u88c5Terraform &#038;nbsp [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-49115","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684&quot;Terraform&quot; - Blog - Silicon Cloud<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.silicloud.com\/zh\/blog\/\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662frails\u4f7f\u7528\u7684terraform\u3002\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684&quot;Terraform&quot;\" \/>\n<meta property=\"og:description\" content=\"\u9996\u5148 \u6211\u5c06\u4f7f\u7528Terraform\u521b\u5efaAWS (EC2\uff0cRDS)\u3002 \u6574\u4f53\u8d8b\u52bf \u5b89\u88c5Terraform &amp;nbsp [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.silicloud.com\/zh\/blog\/\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662frails\u4f7f\u7528\u7684terraform\u3002\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog - Silicon Cloud\" \/>\n<meta property=\"article:published_time\" content=\"2023-10-04T05:44:40+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-04-30T10:54:14+00:00\" \/>\n<meta name=\"author\" content=\"\u97f5, \u79d1\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u97f5, \u79d1\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"7 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/\",\"name\":\"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684\\\"Terraform\\\" - Blog - Silicon Cloud\",\"isPartOf\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\"},\"datePublished\":\"2023-10-04T05:44:40+00:00\",\"dateModified\":\"2024-04-30T10:54:14+00:00\",\"author\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/6530331a63adef3b3443a1fab53a0e6e\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.silicloud.com\/zh\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684&#8221;Terraform&#8221;\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/\",\"name\":\"Blog - Silicon Cloud\",\"description\":\"\",\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/6530331a63adef3b3443a1fab53a0e6e\",\"name\":\"\u97f5, \u79d1\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/429ccb39b3fff5188bc17986222cfb0936cbadb8cc933cff04ab5ca01bd30a08?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/429ccb39b3fff5188bc17986222cfb0936cbadb8cc933cff04ab5ca01bd30a08?s=96&d=mm&r=g\",\"caption\":\"\u97f5, \u79d1\"},\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/author\/yunke\/\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/#local-main-organization-logo\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"Blog - Silicon Cloud\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684\"Terraform\" - Blog - Silicon Cloud","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.silicloud.com\/zh\/blog\/\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662frails\u4f7f\u7528\u7684terraform\u3002\/","og_locale":"zh_CN","og_type":"article","og_title":"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684\"Terraform\"","og_description":"\u9996\u5148 \u6211\u5c06\u4f7f\u7528Terraform\u521b\u5efaAWS (EC2\uff0cRDS)\u3002 \u6574\u4f53\u8d8b\u52bf \u5b89\u88c5Terraform &nbsp [&hellip;]","og_url":"https:\/\/www.silicloud.com\/zh\/blog\/\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662frails\u4f7f\u7528\u7684terraform\u3002\/","og_site_name":"Blog - Silicon Cloud","article_published_time":"2023-10-04T05:44:40+00:00","article_modified_time":"2024-04-30T10:54:14+00:00","author":"\u97f5, \u79d1","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"\u97f5, \u79d1","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"7 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/","url":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/","name":"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684\"Terraform\" - Blog - Silicon Cloud","isPartOf":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website"},"datePublished":"2023-10-04T05:44:40+00:00","dateModified":"2024-04-30T10:54:14+00:00","author":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/6530331a63adef3b3443a1fab53a0e6e"},"breadcrumb":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.silicloud.com\/zh\/blog\/"},{"@type":"ListItem","position":2,"name":"\u7b2c\u4e09\u4e2a\u73af\u5883\u914d\u7f6e\u7684\u6a21\u5757\u662fRails\u4f7f\u7528\u7684&#8221;Terraform&#8221;"}]},{"@type":"WebSite","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website","url":"https:\/\/www.silicloud.com\/zh\/blog\/","name":"Blog - Silicon Cloud","description":"","inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/6530331a63adef3b3443a1fab53a0e6e","name":"\u97f5, \u79d1","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/429ccb39b3fff5188bc17986222cfb0936cbadb8cc933cff04ab5ca01bd30a08?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/429ccb39b3fff5188bc17986222cfb0936cbadb8cc933cff04ab5ca01bd30a08?s=96&d=mm&r=g","caption":"\u97f5, \u79d1"},"url":"https:\/\/www.silicloud.com\/zh\/blog\/author\/yunke\/"},{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e7%ac%ac%e4%b8%89%e4%b8%aa%e7%8e%af%e5%a2%83%e9%85%8d%e7%bd%ae%e7%9a%84%e6%a8%a1%e5%9d%97%e6%98%afrails%e4%bd%bf%e7%94%a8%e7%9a%84terraform%e3%80%82\/#local-main-organization-logo","url":"","contentUrl":"","caption":"Blog - Silicon Cloud"}]}},"_links":{"self":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/49115","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/comments?post=49115"}],"version-history":[{"count":2,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/49115\/revisions"}],"predecessor-version":[{"id":93679,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/49115\/revisions\/93679"}],"wp:attachment":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/media?parent=49115"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/categories?post=49115"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/tags?post=49115"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}