-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathazure.tf
93 lines (78 loc) · 2.39 KB
/
azure.tf
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
terraform {
required_providers {
azurerm = {
source = "hashicorp/azurerm"
version = "~> 3.94.0"
}
}
required_version = ">= 1.1.0"
}
provider "azurerm" {
features {}
}
# Create a resource group
resource "azurerm_resource_group" "demo_rg" {
name = "demo-rg"
location = "North Europe"
}
# Create container registry
resource "azurerm_container_registry" "demo_acr" {
name = "demoacr41235"
resource_group_name = azurerm_resource_group.demo_rg.name
location = azurerm_resource_group.demo_rg.location
sku = "Basic"
admin_enabled = true
}
# Create AKS cluster
resource "azurerm_kubernetes_cluster" "demo_aks" {
name = "demo-aks"
location = azurerm_resource_group.demo_rg.location
resource_group_name = azurerm_resource_group.demo_rg.name
dns_prefix = "demo-aks"
default_node_pool {
name = "default"
node_count = 1
vm_size = "Standard_DS2_v2"
}
identity {
type = "SystemAssigned"
}
storage_profile {
blob_driver_enabled = true
}
tags = {
environment = "development"
}
}
resource "azurerm_role_assignment" "aks_acr_role" {
principal_id = azurerm_kubernetes_cluster.demo_aks.kubelet_identity[0].object_id
role_definition_name = "AcrPull"
scope = azurerm_container_registry.demo_acr.id
skip_service_principal_aad_check = true
}
resource "azurerm_storage_account" "demo_sa_datalake" {
name = "demosa41235"
resource_group_name = azurerm_resource_group.demo_rg.name
location = azurerm_resource_group.demo_rg.location
account_tier = "Standard"
account_replication_type = "LRS"
tags = {
environment = "demo"
}
account_kind = "StorageV2"
is_hns_enabled = true
}
# Define the storage account
resource "azurerm_storage_account" "demo_sa" {
name = "demosa91776"
resource_group_name = azurerm_resource_group.demo_rg.name
location = azurerm_resource_group.demo_rg.location
account_tier = "Standard"
account_replication_type = "LRS"
}
# Define the file share within the storage account
resource "azurerm_storage_share" "demo_fs" {
name = "demofs91776"
storage_account_name = azurerm_storage_account.demo_sa.name
quota = 50
}