Difference between revisions of "Deploy EKS cluster using Terraform"
Jump to navigation
Jump to search
(26 intermediate revisions by the same user not shown) | |||
Line 12: | Line 12: | ||
:<code>[[git clone]] https://github.com/hashicorp/learn-terraform-provision-eks-cluster && [[cd learn-terraform-provision-eks-cluster]]</code> | :<code>[[git clone]] https://github.com/hashicorp/learn-terraform-provision-eks-cluster && [[cd learn-terraform-provision-eks-cluster]]</code> | ||
− | 1) Execute ([[tf login]]) | + | 1) Execute (<code>[[tf login]]</code>) |
− | export [[TF_CLOUD_ORGANIZATION]]=test | + | * Change [[TFC execution mode]] to [[local]] in TFC web portal |
+ | * Change [[name]] in [[main.tf]] ([[Terraform module: vpc]] section) to your prefered VPC name | ||
+ | * Configure your [[AWS profile]] name in <code>[[main.tf]]</code>, do not use default. | ||
+ | |||
+ | [[export]] [[TF_CLOUD_ORGANIZATION]]=test | ||
+ | |||
+ | |||
[[terraform init]] #It may take several minutes | [[terraform init]] #It may take several minutes | ||
[[terraform plan]] | [[terraform plan]] | ||
Line 23: | Line 29: | ||
2) Update configuration | 2) Update configuration | ||
Update [[kubeconfig]] with credentials: | Update [[kubeconfig]] with credentials: | ||
− | [[aws eks]] --region $([[terraform output -raw region]]) [[update-kubeconfig]] --name $(terraform output -raw cluster_name) | + | [[aws eks]] --region $([[terraform output -raw region]]) [[update-kubeconfig]] --name $([[terraform output -raw]] cluster_name) |
[[Added new context]] arn:aws:eks:us-east-2:XXXXXXX:cluster/myeks-eks-xxxx to /Users/youruser/[[.kube/config]] | [[Added new context]] arn:aws:eks:us-east-2:XXXXXXX:cluster/myeks-eks-xxxx to /Users/youruser/[[.kube/config]] | ||
Line 36: | Line 42: | ||
3) Review [[resources]]: | 3) Review [[resources]]: | ||
<code>[[terraform show (EKS using Terraform)|terraform show]] | grep -w resource | sort | uniq</code> | <code>[[terraform show (EKS using Terraform)|terraform show]] | grep -w resource | sort | uniq</code> | ||
+ | <code>[[terraform show (EKS using Terraform)|terraform show]] | grep -w resource | sort | uniq | [[wc -l]]</code> | ||
+ | 34 | ||
4) Configure <code>[[kubectl]]</code> | 4) Configure <code>[[kubectl]]</code> | ||
[[aws eks list-clusters]] --output text | awk '{print $2}' | [[aws eks list-clusters]] --output text | awk '{print $2}' | ||
− | [[aws eks update-kubeconfig]] --name my-eks-cluster-name | + | [[aws eks update-kubeconfig]] --name [[my-eks-cluster-name]] |
5) Review [[cluster status]]/configuration | 5) Review [[cluster status]]/configuration | ||
[[kubectl cluster-info]] | [[kubectl cluster-info]] | ||
+ | [[kubectl cluster-info dump]] | ||
[[kubectl get all -A]] | [[kubectl get all -A]] | ||
[[Default EKS installation]] | [[Default EKS installation]] | ||
Line 48: | Line 57: | ||
6) Install your desired [[addons]]: | 6) Install your desired [[addons]]: | ||
[[helm install]] | [[helm install]] | ||
+ | |||
+ | == Errors == | ||
+ | * <code>[[Error: Failed to read organization]]</code> | ||
+ | * <code>[[Error: failed to create backend alias to target]] "". The hostname is not in the correct format.</code> | ||
+ | * <code>[[Error: Invalid or missing required argument]] .../... [[TF_CLOUD_ORGANIZATION]]</code> | ||
+ | * [[Unable to parse config file]] ~/.aws/config | ||
== Related == | == Related == | ||
+ | * [[Addons]]: <code>[[eks-pod-identity-agent]]</code>, <code>[[aws-efs-csi-driver]], [[amazon-cloudwatch-observability]]</code> | ||
* <code>[[helm install]]</code> | * <code>[[helm install]]</code> | ||
* <code>[[aws eks update-kubeconfig --name my-eks-cluster-name]]</code> | * <code>[[aws eks update-kubeconfig --name my-eks-cluster-name]]</code> | ||
Line 66: | Line 82: | ||
* <code>[[worker_groups]]</code> | * <code>[[worker_groups]]</code> | ||
* <code>[[node_groups]]</code> | * <code>[[node_groups]]</code> | ||
− | |||
* [[terraform.tf]] | * [[terraform.tf]] | ||
− | * [[ | + | * [[Apply complete! Resources: 63 added, 0 changed, 0 destroyed.]] |
== Activities == | == Activities == |
Latest revision as of 11:07, 12 February 2024
- Terraform EKS module:
Contents
Example[edit]
0) Download code
git clone https://github.com/hashicorp/learn-terraform-provision-eks-cluster && cd learn-terraform-provision-eks-cluster
1) Execute (tf login
)
- Change TFC execution mode to local in TFC web portal
- Change name in main.tf (Terraform module: vpc section) to your prefered VPC name
- Configure your AWS profile name in
main.tf
, do not use default.
export TF_CLOUD_ORGANIZATION=test
terraform init #It may take several minutes terraform plan terraform apply: Terraform EKS apply output It may take around 15 min
one liner: export TF_CLOUD_ORGANIZATION=test && tf init && tf plan && tf apply
2) Update configuration
Update kubeconfig with credentials: aws eks --region $(terraform output -raw region) update-kubeconfig --name $(terraform output -raw cluster_name) Added new context arn:aws:eks:us-east-2:XXXXXXX:cluster/myeks-eks-xxxx to /Users/youruser/.kube/config
2.1) Review EKS cluster created
kubectl get nodes NAME STATUS ROLES AGE VERSION ip-10-0-1-29.us-east-2.compute.internal Ready <none> 5m31s v1.23.9-eks-ba74326 ip-10-0-1-47.us-east-2.compute.internal Ready <none> 5m21s v1.23.9-eks-ba74326 ip-10-0-2-121.us-east-2.compute.internal Ready <none> 5m13s v1.23.9-eks-ba74326
3) Review resources:
terraform show | grep -w resource | sort | uniq
terraform show | grep -w resource | sort | uniq | wc -l
34
4) Configure kubectl
aws eks list-clusters --output text | awk '{print $2}' aws eks update-kubeconfig --name my-eks-cluster-name
5) Review cluster status/configuration
kubectl cluster-info kubectl cluster-info dump kubectl get all -A Default EKS installation
6) Install your desired addons:
helm install
Errors[edit]
Error: Failed to read organization
Error: failed to create backend alias to target "". The hostname is not in the correct format.
Error: Invalid or missing required argument .../... TF_CLOUD_ORGANIZATION
- Unable to parse config file ~/.aws/config
Related[edit]
- Addons:
eks-pod-identity-agent
,aws-efs-csi-driver, amazon-cloudwatch-observability
helm install
aws eks update-kubeconfig --name my-eks-cluster-name
kubectl cluster-info
kubectl get nodes
,kubectl describe nodes
kubeclt get services
Terraform resource: aws eks cluster
AccessDenied ... CreateRole
iam:CreatePolicy
,iam:CreateRole
aws eks create-cluster
asg_desired_capacity
,InstanceType
- Terraform eks managed node groups: instance types
- K8s installation:
eksctl create cluster
- Deploy GKE cluster using Terraform
eks-cluster.tf
https://github.com/hashicorp/learn-terraform-provision-eks-cluster/blob/main/eks-cluster.tfworker_groups
node_groups
- terraform.tf
- Apply complete! Resources: 63 added, 0 changed, 0 destroyed.
Activities[edit]
- Review https://learn.hashicorp.com/tutorials/terraform/eks
- Create your first EKS Cluster using AWS Management Console
See also[edit]
- Terraform EKS module:
manage_aws_auth_configmap, create_aws_auth_configmap, aws_auth_roles, aws_auth_users, aws_auth_accounts, module.eks, Amazon EKS Blueprints for Terraform, OIDC
- Terraform EKS, Terraform EKS module, Deploy EKS cluster using Terraform, Terraform EKS apply output,
terraform show, ~/.kube/config
,aws_eks_cluster, aws_eks_addon, module.eks_managed_node_group, eks-cluster.tf, node_groups, worker_groups
Advertising: