Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Azure ユーザに捧げる Terraform Cloud 101 / Terraform C...
Search
ののし
February 02, 2024
0
460
Azure ユーザに捧げる Terraform Cloud 101 / Terraform Cloud 101 for Azure Users
ののし
February 02, 2024
Tweet
Share
More Decks by ののし
See All by ののし
HCP Vault Secrets でシークレット管理を始めよう / Getting Started with Secret Management Using HCP Vault Secrets
nnstt1
0
41
HashiCorp Ambassador が予想!Red Hat × HashiCorp の未来 / The Future of Red Hat and HashiCorp
nnstt1
1
120
Terraform を使った Front Door の小ネタ / Terraform for Front Door
nnstt1
0
76
つまずきから学ぶ Backstage の Golden Path 構築
nnstt1
2
910
AKS と HCP Vault の組み合わせでつまずいた話 / Stumbles with AKS and HCP Vault combination
nnstt1
1
96
Vault Secrets Operator と HCP Vault を使った AKS のシークレット管理 / AKS secret management using the Vault Secrets Operator and HCP Vault
nnstt1
0
110
Vault Secrets Operator と Dynamic Secrets で安全にシークレットを使おう / Vault Secrets Operator and Dynamic Secrets
nnstt1
4
780
OpenShift を身近に感じる Single Node OpenShift と OpenShift Local / Single Node OpenShift and OpenShift Local that makes OpenShift familiar
nnstt1
1
980
カンタンお手軽?!k8sから使えるラズパイ分散ストレージ / Raspberry Pi distributed storage from k8s
nnstt1
1
1.5k
Featured
See All Featured
Building Your Own Lightsaber
phodgson
103
6.1k
GraphQLの誤解/rethinking-graphql
sonatard
67
10k
Build your cross-platform service in a week with App Engine
jlugia
229
18k
[RailsConf 2023] Rails as a piece of cake
palkan
52
4.9k
Done Done
chrislema
181
16k
Unsuck your backbone
ammeep
668
57k
Gamification - CAS2011
davidbonilla
80
5k
Large-scale JavaScript Application Architecture
addyosmani
510
110k
Let's Do A Bunch of Simple Stuff to Make Websites Faster
chriscoyier
506
140k
RailsConf & Balkan Ruby 2019: The Past, Present, and Future of Rails at GitHub
eileencodes
131
33k
Bootstrapping a Software Product
garrettdimon
PRO
305
110k
A Modern Web Designer's Workflow
chriscoyier
693
190k
Transcript
APC #41 2024.02.02 Taichi Nonoshita @nnstt1 Terraform Cloud 101 Azure
SIer → → APC 👦(4y) 👦👦(1y) Azure 9/19 Terraform Associate
#apc8a1 #apc8a1
Terraform Cloud #apc8a1
38% 20% 18% IaC Terraform Terraform IaC Terraform Terraform
Terraform Cloud 101 Azure Terraform
HashiCorp IaC 2023 BSL Terraform plan/apply
Terraform Terraform Terraform O’Reilly Japan, Inc
Terraform Terraform plan/apply Azure Blob Storage plan/apply GitHub Actions commit
Amazon S3 Amazon DynamoDB
Terraform Cloud 101 Azure Terraform Cloud
HashiCorp PoC Terraform Terraform AI Terraform Cloud
Free 500 Free/Standard Plus Terraform Cloud 2023/5 Terraform Cloud updates
plans with an enhanced Free tier and more flexibility
mode=”managed” random_id time_sleep Data Source null_resource terraform_data Terraform Cloud
Terraform Cloud 101 Azure Terraform Cloud
GitHub Azure Terraform Cloud Terraform Cloud main .tf Plan Apply
HCP HCP HCP GitHub SSO Organization Terraform Cloud https://app.terraform.io/public/signup/account
Workspace Workspace CLI
Organization Project Workspace Project Workspace VCS Workspace Workspace Organization /
Project / Workspace Organization Project Workspace Project Workspace Workspace
Workspace Workflow …
Version Control Workflow GitHub Azure DevOps CLI-Driven Workflow terraform API-Driven
Workflow Terraform Cloud API Terraform Cloud Workflow Version Control Workflow
Plan
1. Microsoft Entra ID Terraform Cloud Azure 2. Terraform Cloud
ID, ID, ID, etc. ID
2 Terraform Cloud Key Value ARM_TENANT_ID Microsoft Entra ID ARM_SUBSCRIPTION_ID
ID ARM_CLIENT_ID ID ARM_CLIENT_SECRET
Terraform Cloud Dynamic Provider Credentials OIDC Terraform Cloud Terraform Cloud
ID Key Value ARM_TENANT_ID Microsoft Entra ID ARM_SUBSCRIPTION_ID ID TFC_AZURE_RUN_CLIENT_ID ID TFC_AZURE_PROVIDER_AUTH true
Workspace 10 ID 20 Workspace 2 ID organization:<Org >:project:<Project >:workspace:<workspace
>:run_phase:plan organization:<Org >:project:<Project >:workspace:<workspace >:run_phase:apply Dynamic Provider Credentials
Plan
Terraform Cloud Workspace main .tf Plan Apply 3 Free/Standard/Plus /
ID VCS Workspace Workspace
Terraform Cloud 101 Azure Terraform Cloud Free
Local Terraform Cloud main .tf Plan Apply dev .tf PR
Plan .tf Plan
Version Control Workflow CLI-Driven Workflow cloud Plan • terraform plan
Terraform Cloud • • terraform apply
Workspace Plan Apply Plan & Apply PR Plan
Terraform Sentinel Open Policy Agent (OPA) Terraform Registry Sentinel Policy
as Code Free https://registry.terraform.io/browse/policies
Terraform Sentinel Azure VM, VMSS, App Service Plan, SQL Database,
Cosmos DB, Managed Disk, Firewall, etc. Cost Estimation Free
Private Registry Free
Terraform Cloud 101 Azure Terraform Cloud Plus
Local Terraform Cloud main .tf Plan Apply dev .tf .tf
Cost Estimation Policy check Terraform Terraform Private Registry
IaC IaC Terraform Drift Detection Plus
check check Terraform v1.5.0 Plan/Apply Terraform Registry AzureRM check App
Service 30 Continuous Validation Plus check precondition postcondition Apply Apply
Terraform Cloud Terraform v1.6.0 Free(beta) Free
AI (Beta) Plus(beta)
HCL Terraform module Workspace No-Code Provisioning Plus .tf Private Registry
Workspace .tf Plan/Apply Terraform Terraform
Dynamic Provider Credentials No-Code Provisioning Workspace ID Workspace Azure No-Code
Provisioning Plus
Workspace Apply No-Code Provisioning …… Ephemeral workspace Plus
Terraform Cloud 101 Azure
Terraform Cloud PoC Terraform Cloud #apc8a1 Terraform Cloud Terraform No
More Terraform Cloud Plus
Terraform Cloud 101 Azure
2024/2/21( ) 15:00-16:00 APC https://www.ap-com.co.jp/seminar/post-10679
We are hiring
Terraform Cloud 101 Azure