Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Azure ユーザに捧げる Terraform Cloud 101 / Terraform C...
Search
ののし
February 02, 2024
0
460
Azure ユーザに捧げる Terraform Cloud 101 / Terraform Cloud 101 for Azure Users
ののし
February 02, 2024
Tweet
Share
More Decks by ののし
See All by ののし
HCP Vault Secrets でシークレット管理を始めよう / Getting Started with Secret Management Using HCP Vault Secrets
nnstt1
0
41
HashiCorp Ambassador が予想!Red Hat × HashiCorp の未来 / The Future of Red Hat and HashiCorp
nnstt1
1
120
Terraform を使った Front Door の小ネタ / Terraform for Front Door
nnstt1
0
76
つまずきから学ぶ Backstage の Golden Path 構築
nnstt1
2
920
AKS と HCP Vault の組み合わせでつまずいた話 / Stumbles with AKS and HCP Vault combination
nnstt1
1
96
Vault Secrets Operator と HCP Vault を使った AKS のシークレット管理 / AKS secret management using the Vault Secrets Operator and HCP Vault
nnstt1
0
110
Vault Secrets Operator と Dynamic Secrets で安全にシークレットを使おう / Vault Secrets Operator and Dynamic Secrets
nnstt1
4
780
OpenShift を身近に感じる Single Node OpenShift と OpenShift Local / Single Node OpenShift and OpenShift Local that makes OpenShift familiar
nnstt1
1
980
カンタンお手軽?!k8sから使えるラズパイ分散ストレージ / Raspberry Pi distributed storage from k8s
nnstt1
1
1.5k
Featured
See All Featured
Fashionably flexible responsive web design (full day workshop)
malarkey
405
65k
We Have a Design System, Now What?
morganepeng
50
7.2k
VelocityConf: Rendering Performance Case Studies
addyosmani
325
24k
The Illustrated Children's Guide to Kubernetes
chrisshort
48
48k
The Art of Delivering Value - GDevCon NA Keynote
reverentgeek
8
890
How STYLIGHT went responsive
nonsquared
95
5.2k
The MySQL Ecosystem @ GitHub 2015
samlambert
250
12k
How to Think Like a Performance Engineer
csswizardry
20
1.1k
Save Time (by Creating Custom Rails Generators)
garrettdimon
PRO
27
840
Fontdeck: Realign not Redesign
paulrobertlloyd
82
5.2k
Exploring the Power of Turbo Streams & Action Cable | RailsConf2023
kevinliebholz
27
4.3k
Become a Pro
speakerdeck
PRO
25
5k
Transcript
APC #41 2024.02.02 Taichi Nonoshita @nnstt1 Terraform Cloud 101 Azure
SIer → → APC 👦(4y) 👦👦(1y) Azure 9/19 Terraform Associate
#apc8a1 #apc8a1
Terraform Cloud #apc8a1
38% 20% 18% IaC Terraform Terraform IaC Terraform Terraform
Terraform Cloud 101 Azure Terraform
HashiCorp IaC 2023 BSL Terraform plan/apply
Terraform Terraform Terraform O’Reilly Japan, Inc
Terraform Terraform plan/apply Azure Blob Storage plan/apply GitHub Actions commit
Amazon S3 Amazon DynamoDB
Terraform Cloud 101 Azure Terraform Cloud
HashiCorp PoC Terraform Terraform AI Terraform Cloud
Free 500 Free/Standard Plus Terraform Cloud 2023/5 Terraform Cloud updates
plans with an enhanced Free tier and more flexibility
mode=”managed” random_id time_sleep Data Source null_resource terraform_data Terraform Cloud
Terraform Cloud 101 Azure Terraform Cloud
GitHub Azure Terraform Cloud Terraform Cloud main .tf Plan Apply
HCP HCP HCP GitHub SSO Organization Terraform Cloud https://app.terraform.io/public/signup/account
Workspace Workspace CLI
Organization Project Workspace Project Workspace VCS Workspace Workspace Organization /
Project / Workspace Organization Project Workspace Project Workspace Workspace
Workspace Workflow …
Version Control Workflow GitHub Azure DevOps CLI-Driven Workflow terraform API-Driven
Workflow Terraform Cloud API Terraform Cloud Workflow Version Control Workflow
Plan
1. Microsoft Entra ID Terraform Cloud Azure 2. Terraform Cloud
ID, ID, ID, etc. ID
2 Terraform Cloud Key Value ARM_TENANT_ID Microsoft Entra ID ARM_SUBSCRIPTION_ID
ID ARM_CLIENT_ID ID ARM_CLIENT_SECRET
Terraform Cloud Dynamic Provider Credentials OIDC Terraform Cloud Terraform Cloud
ID Key Value ARM_TENANT_ID Microsoft Entra ID ARM_SUBSCRIPTION_ID ID TFC_AZURE_RUN_CLIENT_ID ID TFC_AZURE_PROVIDER_AUTH true
Workspace 10 ID 20 Workspace 2 ID organization:<Org >:project:<Project >:workspace:<workspace
>:run_phase:plan organization:<Org >:project:<Project >:workspace:<workspace >:run_phase:apply Dynamic Provider Credentials
Plan
Terraform Cloud Workspace main .tf Plan Apply 3 Free/Standard/Plus /
ID VCS Workspace Workspace
Terraform Cloud 101 Azure Terraform Cloud Free
Local Terraform Cloud main .tf Plan Apply dev .tf PR
Plan .tf Plan
Version Control Workflow CLI-Driven Workflow cloud Plan • terraform plan
Terraform Cloud • • terraform apply
Workspace Plan Apply Plan & Apply PR Plan
Terraform Sentinel Open Policy Agent (OPA) Terraform Registry Sentinel Policy
as Code Free https://registry.terraform.io/browse/policies
Terraform Sentinel Azure VM, VMSS, App Service Plan, SQL Database,
Cosmos DB, Managed Disk, Firewall, etc. Cost Estimation Free
Private Registry Free
Terraform Cloud 101 Azure Terraform Cloud Plus
Local Terraform Cloud main .tf Plan Apply dev .tf .tf
Cost Estimation Policy check Terraform Terraform Private Registry
IaC IaC Terraform Drift Detection Plus
check check Terraform v1.5.0 Plan/Apply Terraform Registry AzureRM check App
Service 30 Continuous Validation Plus check precondition postcondition Apply Apply
Terraform Cloud Terraform v1.6.0 Free(beta) Free
AI (Beta) Plus(beta)
HCL Terraform module Workspace No-Code Provisioning Plus .tf Private Registry
Workspace .tf Plan/Apply Terraform Terraform
Dynamic Provider Credentials No-Code Provisioning Workspace ID Workspace Azure No-Code
Provisioning Plus
Workspace Apply No-Code Provisioning …… Ephemeral workspace Plus
Terraform Cloud 101 Azure
Terraform Cloud PoC Terraform Cloud #apc8a1 Terraform Cloud Terraform No
More Terraform Cloud Plus
Terraform Cloud 101 Azure
2024/2/21( ) 15:00-16:00 APC https://www.ap-com.co.jp/seminar/post-10679
We are hiring
Terraform Cloud 101 Azure