diff --git a/ansible/ansible.cfg b/ansible/ansible.cfg new file mode 100755 index 0000000..3614330 --- /dev/null +++ b/ansible/ansible.cfg @@ -0,0 +1,8 @@ +[defaults] +host_key_checking = False +inventory = gcp_compute.yml +interpreter_python = auto_silent +remote_user = berger_lu2004_gmail_com + +[inventory] +enable_plugins = gcp_compute, auto, host_list, yaml, ini, toml, script diff --git a/ansible/service_account.json b/ansible/service_account.json new file mode 100755 index 0000000..2753f35 --- /dev/null +++ b/ansible/service_account.json @@ -0,0 +1,13 @@ +{ + "type": "service_account", + "project_id": "automatisation-tp", + "private_key_id": "d6f4f7a06b3bfcdf4e74d1397a781557339f280c", + "private_key": "-----BEGIN PRIVATE KEY-----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\no3fEi/XS+nAgTzQOEXJ+0BY=\n-----END PRIVATE KEY-----\n", + "client_email": "terraform@automatisation-tp.iam.gserviceaccount.com", + "client_id": "111373189424254920373", + "auth_uri": "https://accounts.google.com/o/oauth2/auth", + "token_uri": "https://oauth2.googleapis.com/token", + "auth_provider_x509_cert_url": "https://www.googleapis.com/oauth2/v1/certs", + "client_x509_cert_url": "https://www.googleapis.com/robot/v1/metadata/x509/terraform%40automatisation-tp.iam.gserviceaccount.com", + "universe_domain": "googleapis.com" +} diff --git a/terraform/environments/dev/.terraform.lock.hcl b/terraform/environments/dev/.terraform.lock.hcl index a2fbec0..2a2c5cd 100644 --- a/terraform/environments/dev/.terraform.lock.hcl +++ b/terraform/environments/dev/.terraform.lock.hcl @@ -20,3 +20,22 @@ provider "registry.terraform.io/hashicorp/google" { "zh:f569b65999264a9416862bca5cd2a6177d94ccb0424f3a4ef424428912b9cb3c", ] } + +provider "registry.terraform.io/hashicorp/local" { + version = "2.5.2" + hashes = [ + "h1:JlMZD6nYqJ8sSrFfEAH0Vk/SL8WLZRmFaMUF9PJK5wM=", + "zh:136299545178ce281c56f36965bf91c35407c11897f7082b3b983d86cb79b511", + "zh:3b4486858aa9cb8163378722b642c57c529b6c64bfbfc9461d940a84cd66ebea", + "zh:4855ee628ead847741aa4f4fc9bed50cfdbf197f2912775dd9fe7bc43fa077c0", + "zh:4b8cd2583d1edcac4011caafe8afb7a95e8110a607a1d5fb87d921178074a69b", + "zh:52084ddaff8c8cd3f9e7bcb7ce4dc1eab00602912c96da43c29b4762dc376038", + "zh:71562d330d3f92d79b2952ffdda0dad167e952e46200c767dd30c6af8d7c0ed3", + "zh:78d5eefdd9e494defcb3c68d282b8f96630502cac21d1ea161f53cfe9bb483b3", + "zh:805f81ade06ff68fa8b908d31892eaed5c180ae031c77ad35f82cb7a74b97cf4", + "zh:8b6b3ebeaaa8e38dd04e56996abe80db9be6f4c1df75ac3cccc77642899bd464", + "zh:ad07750576b99248037b897de71113cc19b1a8d0bc235eb99173cc83d0de3b1b", + "zh:b9f1c3bfadb74068f5c205292badb0661e17ac05eb23bfe8bd809691e4583d0e", + "zh:cc4cbcd67414fefb111c1bf7ab0bc4beb8c0b553d01719ad17de9a047adff4d1", + ] +} diff --git a/terraform/environments/dev/.terraform/modules/modules.json b/terraform/environments/dev/.terraform/modules/modules.json index 7907402..2bf5e6f 100644 --- a/terraform/environments/dev/.terraform/modules/modules.json +++ b/terraform/environments/dev/.terraform/modules/modules.json @@ -1 +1 @@ -{"Modules":[{"Key":"","Source":"","Dir":"."},{"Key":"network","Source":"../../modules/network","Dir":"../../modules/network"}]} \ No newline at end of file +{"Modules":[{"Key":"","Source":"","Dir":"."},{"Key":"compute","Source":"../../modules/compute","Dir":"../../modules/compute"},{"Key":"iam","Source":"../../modules/iam","Dir":"../../modules/iam"},{"Key":"network","Source":"../../modules/network","Dir":"../../modules/network"}]} \ No newline at end of file diff --git a/terraform/environments/dev/.terraform/providers/registry.terraform.io/hashicorp/local/2.5.2/linux_amd64/LICENSE.txt b/terraform/environments/dev/.terraform/providers/registry.terraform.io/hashicorp/local/2.5.2/linux_amd64/LICENSE.txt new file mode 100644 index 0000000..b9ac071 --- /dev/null +++ b/terraform/environments/dev/.terraform/providers/registry.terraform.io/hashicorp/local/2.5.2/linux_amd64/LICENSE.txt @@ -0,0 +1,375 @@ +Copyright (c) 2017 HashiCorp, Inc. + +Mozilla Public License Version 2.0 +================================== + +1. Definitions +-------------- + +1.1. "Contributor" + means each individual or legal entity that creates, contributes to + the creation of, or owns Covered Software. + +1.2. "Contributor Version" + means the combination of the Contributions of others (if any) used + by a Contributor and that particular Contributor's Contribution. + +1.3. "Contribution" + means Covered Software of a particular Contributor. + +1.4. "Covered Software" + means Source Code Form to which the initial Contributor has attached + the notice in Exhibit A, the Executable Form of such Source Code + Form, and Modifications of such Source Code Form, in each case + including portions thereof. + +1.5. "Incompatible With Secondary Licenses" + means + + (a) that the initial Contributor has attached the notice described + in Exhibit B to the Covered Software; or + + (b) that the Covered Software was made available under the terms of + version 1.1 or earlier of the License, but not also under the + terms of a Secondary License. + +1.6. "Executable Form" + means any form of the work other than Source Code Form. + +1.7. "Larger Work" + means a work that combines Covered Software with other material, in + a separate file or files, that is not Covered Software. + +1.8. "License" + means this document. + +1.9. "Licensable" + means having the right to grant, to the maximum extent possible, + whether at the time of the initial grant or subsequently, any and + all of the rights conveyed by this License. + +1.10. "Modifications" + means any of the following: + + (a) any file in Source Code Form that results from an addition to, + deletion from, or modification of the contents of Covered + Software; or + + (b) any new file in Source Code Form that contains any Covered + Software. + +1.11. "Patent Claims" of a Contributor + means any patent claim(s), including without limitation, method, + process, and apparatus claims, in any patent Licensable by such + Contributor that would be infringed, but for the grant of the + License, by the making, using, selling, offering for sale, having + made, import, or transfer of either its Contributions or its + Contributor Version. + +1.12. "Secondary License" + means either the GNU General Public License, Version 2.0, the GNU + Lesser General Public License, Version 2.1, the GNU Affero General + Public License, Version 3.0, or any later versions of those + licenses. + +1.13. "Source Code Form" + means the form of the work preferred for making modifications. + +1.14. "You" (or "Your") + means an individual or a legal entity exercising rights under this + License. For legal entities, "You" includes any entity that + controls, is controlled by, or is under common control with You. For + purposes of this definition, "control" means (a) the power, direct + or indirect, to cause the direction or management of such entity, + whether by contract or otherwise, or (b) ownership of more than + fifty percent (50%) of the outstanding shares or beneficial + ownership of such entity. + +2. License Grants and Conditions +-------------------------------- + +2.1. Grants + +Each Contributor hereby grants You a world-wide, royalty-free, +non-exclusive license: + +(a) under intellectual property rights (other than patent or trademark) + Licensable by such Contributor to use, reproduce, make available, + modify, display, perform, distribute, and otherwise exploit its + Contributions, either on an unmodified basis, with Modifications, or + as part of a Larger Work; and + +(b) under Patent Claims of such Contributor to make, use, sell, offer + for sale, have made, import, and otherwise transfer either its + Contributions or its Contributor Version. + +2.2. Effective Date + +The licenses granted in Section 2.1 with respect to any Contribution +become effective for each Contribution on the date the Contributor first +distributes such Contribution. + +2.3. Limitations on Grant Scope + +The licenses granted in this Section 2 are the only rights granted under +this License. No additional rights or licenses will be implied from the +distribution or licensing of Covered Software under this License. +Notwithstanding Section 2.1(b) above, no patent license is granted by a +Contributor: + +(a) for any code that a Contributor has removed from Covered Software; + or + +(b) for infringements caused by: (i) Your and any other third party's + modifications of Covered Software, or (ii) the combination of its + Contributions with other software (except as part of its Contributor + Version); or + +(c) under Patent Claims infringed by Covered Software in the absence of + its Contributions. + +This License does not grant any rights in the trademarks, service marks, +or logos of any Contributor (except as may be necessary to comply with +the notice requirements in Section 3.4). + +2.4. Subsequent Licenses + +No Contributor makes additional grants as a result of Your choice to +distribute the Covered Software under a subsequent version of this +License (see Section 10.2) or under the terms of a Secondary License (if +permitted under the terms of Section 3.3). + +2.5. Representation + +Each Contributor represents that the Contributor believes its +Contributions are its original creation(s) or it has sufficient rights +to grant the rights to its Contributions conveyed by this License. + +2.6. Fair Use + +This License is not intended to limit any rights You have under +applicable copyright doctrines of fair use, fair dealing, or other +equivalents. + +2.7. Conditions + +Sections 3.1, 3.2, 3.3, and 3.4 are conditions of the licenses granted +in Section 2.1. + +3. Responsibilities +------------------- + +3.1. Distribution of Source Form + +All distribution of Covered Software in Source Code Form, including any +Modifications that You create or to which You contribute, must be under +the terms of this License. You must inform recipients that the Source +Code Form of the Covered Software is governed by the terms of this +License, and how they can obtain a copy of this License. You may not +attempt to alter or restrict the recipients' rights in the Source Code +Form. + +3.2. Distribution of Executable Form + +If You distribute Covered Software in Executable Form then: + +(a) such Covered Software must also be made available in Source Code + Form, as described in Section 3.1, and You must inform recipients of + the Executable Form how they can obtain a copy of such Source Code + Form by reasonable means in a timely manner, at a charge no more + than the cost of distribution to the recipient; and + +(b) You may distribute such Executable Form under the terms of this + License, or sublicense it under different terms, provided that the + license for the Executable Form does not attempt to limit or alter + the recipients' rights in the Source Code Form under this License. + +3.3. Distribution of a Larger Work + +You may create and distribute a Larger Work under terms of Your choice, +provided that You also comply with the requirements of this License for +the Covered Software. If the Larger Work is a combination of Covered +Software with a work governed by one or more Secondary Licenses, and the +Covered Software is not Incompatible With Secondary Licenses, this +License permits You to additionally distribute such Covered Software +under the terms of such Secondary License(s), so that the recipient of +the Larger Work may, at their option, further distribute the Covered +Software under the terms of either this License or such Secondary +License(s). + +3.4. Notices + +You may not remove or alter the substance of any license notices +(including copyright notices, patent notices, disclaimers of warranty, +or limitations of liability) contained within the Source Code Form of +the Covered Software, except that You may alter any license notices to +the extent required to remedy known factual inaccuracies. + +3.5. Application of Additional Terms + +You may choose to offer, and to charge a fee for, warranty, support, +indemnity or liability obligations to one or more recipients of Covered +Software. However, You may do so only on Your own behalf, and not on +behalf of any Contributor. You must make it absolutely clear that any +such warranty, support, indemnity, or liability obligation is offered by +You alone, and You hereby agree to indemnify every Contributor for any +liability incurred by such Contributor as a result of warranty, support, +indemnity or liability terms You offer. You may include additional +disclaimers of warranty and limitations of liability specific to any +jurisdiction. + +4. Inability to Comply Due to Statute or Regulation +--------------------------------------------------- + +If it is impossible for You to comply with any of the terms of this +License with respect to some or all of the Covered Software due to +statute, judicial order, or regulation then You must: (a) comply with +the terms of this License to the maximum extent possible; and (b) +describe the limitations and the code they affect. Such description must +be placed in a text file included with all distributions of the Covered +Software under this License. Except to the extent prohibited by statute +or regulation, such description must be sufficiently detailed for a +recipient of ordinary skill to be able to understand it. + +5. Termination +-------------- + +5.1. The rights granted under this License will terminate automatically +if You fail to comply with any of its terms. However, if You become +compliant, then the rights granted under this License from a particular +Contributor are reinstated (a) provisionally, unless and until such +Contributor explicitly and finally terminates Your grants, and (b) on an +ongoing basis, if such Contributor fails to notify You of the +non-compliance by some reasonable means prior to 60 days after You have +come back into compliance. Moreover, Your grants from a particular +Contributor are reinstated on an ongoing basis if such Contributor +notifies You of the non-compliance by some reasonable means, this is the +first time You have received notice of non-compliance with this License +from such Contributor, and You become compliant prior to 30 days after +Your receipt of the notice. + +5.2. If You initiate litigation against any entity by asserting a patent +infringement claim (excluding declaratory judgment actions, +counter-claims, and cross-claims) alleging that a Contributor Version +directly or indirectly infringes any patent, then the rights granted to +You by any and all Contributors for the Covered Software under Section +2.1 of this License shall terminate. + +5.3. In the event of termination under Sections 5.1 or 5.2 above, all +end user license agreements (excluding distributors and resellers) which +have been validly granted by You or Your distributors under this License +prior to termination shall survive termination. + +************************************************************************ +* * +* 6. Disclaimer of Warranty * +* ------------------------- * +* * +* Covered Software is provided under this License on an "as is" * +* basis, without warranty of any kind, either expressed, implied, or * +* statutory, including, without limitation, warranties that the * +* Covered Software is free of defects, merchantable, fit for a * +* particular purpose or non-infringing. The entire risk as to the * +* quality and performance of the Covered Software is with You. * +* Should any Covered Software prove defective in any respect, You * +* (not any Contributor) assume the cost of any necessary servicing, * +* repair, or correction. This disclaimer of warranty constitutes an * +* essential part of this License. No use of any Covered Software is * +* authorized under this License except under this disclaimer. * +* * +************************************************************************ + +************************************************************************ +* * +* 7. Limitation of Liability * +* -------------------------- * +* * +* Under no circumstances and under no legal theory, whether tort * +* (including negligence), contract, or otherwise, shall any * +* Contributor, or anyone who distributes Covered Software as * +* permitted above, be liable to You for any direct, indirect, * +* special, incidental, or consequential damages of any character * +* including, without limitation, damages for lost profits, loss of * +* goodwill, work stoppage, computer failure or malfunction, or any * +* and all other commercial damages or losses, even if such party * +* shall have been informed of the possibility of such damages. This * +* limitation of liability shall not apply to liability for death or * +* personal injury resulting from such party's negligence to the * +* extent applicable law prohibits such limitation. Some * +* jurisdictions do not allow the exclusion or limitation of * +* incidental or consequential damages, so this exclusion and * +* limitation may not apply to You. * +* * +************************************************************************ + +8. Litigation +------------- + +Any litigation relating to this License may be brought only in the +courts of a jurisdiction where the defendant maintains its principal +place of business and such litigation shall be governed by laws of that +jurisdiction, without reference to its conflict-of-law provisions. +Nothing in this Section shall prevent a party's ability to bring +cross-claims or counter-claims. + +9. Miscellaneous +---------------- + +This License represents the complete agreement concerning the subject +matter hereof. If any provision of this License is held to be +unenforceable, such provision shall be reformed only to the extent +necessary to make it enforceable. Any law or regulation which provides +that the language of a contract shall be construed against the drafter +shall not be used to construe this License against a Contributor. + +10. Versions of the License +--------------------------- + +10.1. New Versions + +Mozilla Foundation is the license steward. Except as provided in Section +10.3, no one other than the license steward has the right to modify or +publish new versions of this License. Each version will be given a +distinguishing version number. + +10.2. Effect of New Versions + +You may distribute the Covered Software under the terms of the version +of the License under which You originally received the Covered Software, +or under the terms of any subsequent version published by the license +steward. + +10.3. Modified Versions + +If you create software not governed by this License, and you want to +create a new license for such software, you may create and use a +modified version of this License if you rename the license and remove +any references to the name of the license steward (except to note that +such modified license differs from this License). + +10.4. Distributing Source Code Form that is Incompatible With Secondary +Licenses + +If You choose to distribute Source Code Form that is Incompatible With +Secondary Licenses under the terms of this version of the License, the +notice described in Exhibit B of this License must be attached. + +Exhibit A - Source Code Form License Notice +------------------------------------------- + + This Source Code Form is subject to the terms of the Mozilla Public + License, v. 2.0. If a copy of the MPL was not distributed with this + file, You can obtain one at http://mozilla.org/MPL/2.0/. + +If it is not possible or desirable to put the notice in a particular +file, then You may include the notice in a location (such as a LICENSE +file in a relevant directory) where a recipient would be likely to look +for such a notice. + +You may add additional accurate notices of copyright ownership. + +Exhibit B - "Incompatible With Secondary Licenses" Notice +--------------------------------------------------------- + + This Source Code Form is "Incompatible With Secondary Licenses", as + defined by the Mozilla Public License, v. 2.0. diff --git a/terraform/environments/dev/.terraform/providers/registry.terraform.io/hashicorp/local/2.5.2/linux_amd64/terraform-provider-local_v2.5.2_x5 b/terraform/environments/dev/.terraform/providers/registry.terraform.io/hashicorp/local/2.5.2/linux_amd64/terraform-provider-local_v2.5.2_x5 new file mode 100755 index 0000000..f486791 Binary files /dev/null and b/terraform/environments/dev/.terraform/providers/registry.terraform.io/hashicorp/local/2.5.2/linux_amd64/terraform-provider-local_v2.5.2_x5 differ diff --git a/terraform/environments/dev/main.tf b/terraform/environments/dev/main.tf index 20fac60..704d837 100644 --- a/terraform/environments/dev/main.tf +++ b/terraform/environments/dev/main.tf @@ -14,9 +14,51 @@ provider "google" { module "network" { source = "../../modules/network" + + # Variables d'entrée project_name = var.project_name region = var.region - frontend_cidr = "10.0.1.0/24" - backend_cidr = "10.0.2.0/24" - database_cidr = "10.0.3.0/24" + + # Autres variables spécifiques au module + + frontend_cidr = var.frontend_cidr + backend_cidr = var.backend_cidr + database_cidr = var.database_cidr + ssh_source_ranges = var.ssh_source_ranges + + +} + + +module "compute" { + source = "../../modules/compute" + + instance_type = "e2-micro" + zone ="us-central1-c" + frontend_subnet_id = module.network.id_subnetwork["frontend"] + backend_subnet_id = module.network.id_subnetwork["backend"] + database_subnet_id = module.network.id_subnetwork["database"] +} + + +module "iam" { + source = "../../modules/iam" + project_id = var.project_id +} + +data "google_client_openid_userinfo" "me" { +} + +resource "local_file" "ansible_config" { + content = templatefile("${path.module}/../../templates/ansible.cfg.tpl", + { + remote_user = data.google_client_openid_userinfo.me.email + } + ) + filename = "../../../ansible/ansible.cfg" +} + +resource "local_file" "service_account" { + content = base64decode(module.iam.service_account_key) + filename = "../../../ansible/service_account.json" } diff --git a/terraform/environments/dev/terraform.tfstate b/terraform/environments/dev/terraform.tfstate new file mode 100644 index 0000000..1856c6e --- /dev/null +++ b/terraform/environments/dev/terraform.tfstate @@ -0,0 +1,1128 @@ +{ + "version": 4, + "terraform_version": "1.10.1", + "serial": 23, + "lineage": "9cd7d550-f3e6-fb7f-5c88-ad81115966f2", + "outputs": {}, + "resources": [ + { + "mode": "data", + "type": "google_client_openid_userinfo", + "name": "me", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "email": "berger.lu2004@gmail.com", + "id": "berger.lu2004@gmail.com" + }, + "sensitive_attributes": [] + } + ] + }, + { + "mode": "managed", + "type": "local_file", + "name": "ansible_config", + "provider": "provider[\"registry.terraform.io/hashicorp/local\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "content": "[defaults]\nhost_key_checking = False\ninventory = gcp_compute.yml\ninterpreter_python = auto_silent\nremote_user = berger_lu2004_gmail_com\n\n[inventory]\nenable_plugins = gcp_compute, auto, host_list, yaml, ini, toml, script\n", + "content_base64": null, + "content_base64sha256": "tAyzhXJK2mhmEP/5U+K85Wr+3QAyBabUB8Vdg+lSg/s=", + "content_base64sha512": "PHqpN13EriqXSeJmr//etyU/4sx00X9djyo8s9PnypamsFOA2+c54QbPQwGupDIeu4EwXASPFrEJy+hjlowj+A==", + "content_md5": "893f4531c3ed1544c102f08b00a1158a", + "content_sha1": "ba47568b70bbbed22cf8f66401fb97b55540ee91", + "content_sha256": "b40cb385724ada686610fff953e2bce56afedd003205a6d407c55d83e95283fb", + "content_sha512": "3c7aa9375dc4ae2a9749e266afffdeb7253fe2cc74d17f5d8f2a3cb3d3e7ca96a6b05380dbe739e106cf4301aea4321ebb81305c048f16b109cbe863968c23f8", + "directory_permission": "0777", + "file_permission": "0777", + "filename": "../../../ansible/ansible.cfg", + "id": "ba47568b70bbbed22cf8f66401fb97b55540ee91", + "sensitive_content": null, + "source": null + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "sensitive_content" + } + ] + ], + "dependencies": [ + "data.google_client_openid_userinfo.me" + ] + } + ] + }, + { + "mode": "managed", + "type": "local_file", + "name": "service_account", + "provider": "provider[\"registry.terraform.io/hashicorp/local\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "content": "{\n \"type\": \"service_account\",\n \"project_id\": \"automatisation-tp\",\n \"private_key_id\": \"d6f4f7a06b3bfcdf4e74d1397a781557339f280c\",\n \"private_key\": \"-----BEGIN PRIVATE KEY-----\\nMIIEvQIBADANBgkqhkiG9w0BAQEFAASCBKcwggSjAgEAAoIBAQCgefDwisp+pveD\\nIdNTLIli1p8Sm3ZwAzCCrqOHM3BetK5M5c49NbK7EX32JqKoCmHVB+nxc7guQeXg\\n27n2uYb2EWwucYaRN2FqStkCatGwuFBWnStqo97b4UTkAhOSKiqX0KFp8M8I4RbS\\ncJxJPvnVbKmCCWDPtNBPo5HByQBAx82owB9zoqE0cWi+NmscbLpvbirhp29VxFlf\\ndqvbN3duxp6LrSTQ9pKyRmqOdNHZ0HmMLn4vasuxblmNhwg0Bhzrwqbqs54SDtnb\\nqn8IvPT0/JGlKI1S6EQl6+8z3pKRC2jLc85q6ZAQf8wP7NzL2601CG8Yfo4+Zakx\\nndapZaR9AgMBAAECggEAPmBnuPgZ0bUQzFXfkJrlJBgMaO0o0k1LE+DSC4GBEi7k\\n+VryGXS/7lrUPVOzMeInOOkElCfI1aIjuo1t8WsX/Jm1FTBngBaotOo3A+uFak2a\\nXLBm6eKcg5dCceYkuVHOkIg11boWn3rupgnDlez2q3C7SqJekR3VQr9vroV0pbjm\\nefmSm1V7j0bGZyCOvcI1w4PpqUptuFuDqxa0F8KfxnC/VuexLlhw+Mevi0JKkrc6\\nOblnkJz8ydK8/5Xl+aHbdLttkvN42bkjGtkTgxY/O5mlHFvzjU2CtQdt4kQfYpxV\\n7/FvonojIA2ixlnK3U8xsI13kz/EppC29lH8lnNNuQKBgQDV2Wldx3zFn8niyd1U\\n6hp2wbmFy5FHTchNhYceMrnqnYEtS93jSPhJ/k3LBmRDzq9frmrB/GXdplwe+d/g\\nELt1X2FcHHydwCqrMrAsSySNhIwoR/lRcMsyc9y1EojGmW/UrdB33r0ELU3vQb6P\\nLlC3jQTiR//7LFdVF0Ufy0lPlwKBgQDAG2SJ3mTwdLGYllDJhBgkoOLClFO1j1ah\\nw1xlsmRZxo2j0lcp/riwM0BFx8KDLhAwOhAEiP81KkoiwZw1EPFngdwDXsF8HgQh\\nmI4giCebDgak1jCARG1Dg+5bLQhb7a6BmhOntTfi36t5CNLmsqVmVVr/yw3hfkE+\\nbQYjicGvCwKBgQCKH8U4t1LV6qFhhHUbFaJGNlZ4HsYVQh4wRCDD1ovTCCyZbzlA\\nRq9oS4M/sT8ttN/9cxCtfzLkeUFjGI4LkYMjCpo9/oBW+/oTXcgAtABGD+jfU62r\\ndqkoS0GxCumhLRXYTvQpmIqJmiGOee51WLr183XGGi8ysq8t3LvfD1SovQKBgHvE\\najbE+IVOuWjUV0Itf5yBpvazt2a+7ZKUmf/POgX4/SIxjwS4Xmbu7hbHB1OapsVb\\ncxxo4vtuvoq78BbkTpNgP85QCxobAJBgiBj/f3zPQYqLkH3jF/4qjrNhRQRtEkPf\\nb5BaGaJqdkApZi9Jo3RVw6YPPWcs/33noc/dndJXAoGAN6RxQ7+2KfOKio1lYXCm\\nmbO4NJCzDM7Ov6QgWQQ2UvtZHn1JtDuSE3T9k4ATjogqV0EW7V6K9oYkLnfRQbta\\ng8a5e5tEt8t0mL51lwy4EpaQUvBEynV0c6lv33U3pzScBA/Dvf0vGiVNH7+T17XF\\no3fEi/XS+nAgTzQOEXJ+0BY=\\n-----END PRIVATE KEY-----\\n\",\n \"client_email\": \"terraform@automatisation-tp.iam.gserviceaccount.com\",\n \"client_id\": \"111373189424254920373\",\n \"auth_uri\": \"https://accounts.google.com/o/oauth2/auth\",\n \"token_uri\": \"https://oauth2.googleapis.com/token\",\n \"auth_provider_x509_cert_url\": \"https://www.googleapis.com/oauth2/v1/certs\",\n \"client_x509_cert_url\": \"https://www.googleapis.com/robot/v1/metadata/x509/terraform%40automatisation-tp.iam.gserviceaccount.com\",\n \"universe_domain\": \"googleapis.com\"\n}\n", + "content_base64": null, + "content_base64sha256": "35HrgaVJyTReIQxjQVRmGNXq38w9rDQV4hGfR6Il2g8=", + "content_base64sha512": "QzXgpZTsCG4CWAEnJeaaPJRhjpBwdMEU6xYmdFZmGMKlqyp8Atxr5ot4vUTOC9erquBgj8cFWnrwjA+0dEr7/A==", + "content_md5": "cddc05e5b6a3a154a7c5f38f804ad6bf", + "content_sha1": "9c7488a769ef045137ce57195807dc021f0dc5fb", + "content_sha256": "df91eb81a549c9345e210c6341546618d5eadfcc3dac3415e2119f47a225da0f", + "content_sha512": "4335e0a594ec086e0258012725e69a3c94618e907074c114eb162674566618c2a5ab2a7c02dc6be68b78bd44ce0bd7abaae0608fc7055a7af08c0fb4744afbfc", + "directory_permission": "0777", + "file_permission": "0777", + "filename": "../../../ansible/service_account.json", + "id": "9c7488a769ef045137ce57195807dc021f0dc5fb", + "sensitive_content": null, + "source": null + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "sensitive_content" + } + ], + [ + { + "type": "get_attr", + "value": "content" + } + ] + ], + "dependencies": [ + "module.iam.google_service_account.service_account", + "module.iam.google_service_account_key.service_account" + ] + } + ] + }, + { + "module": "module.compute", + "mode": "managed", + "type": "google_compute_instance", + "name": "backend", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 6, + "attributes": { + "advanced_machine_features": [], + "allow_stopping_for_update": null, + "attached_disk": [], + "boot_disk": [ + { + "auto_delete": true, + "device_name": "persistent-disk-0", + "disk_encryption_key_raw": "", + "disk_encryption_key_sha256": "", + "initialize_params": [ + { + "enable_confidential_compute": false, + "image": "https://www.googleapis.com/compute/v1/projects/debian-cloud/global/images/debian-11-bullseye-v20241112", + "labels": {}, + "provisioned_iops": 0, + "provisioned_throughput": 0, + "resource_manager_tags": null, + "resource_policies": [], + "size": 10, + "storage_pool": "", + "type": "pd-standard" + } + ], + "interface": "", + "kms_key_self_link": "", + "mode": "READ_WRITE", + "source": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/zones/us-central1-c/disks/ma-vm-backend" + } + ], + "can_ip_forward": false, + "confidential_instance_config": [], + "cpu_platform": "Intel Broadwell", + "creation_timestamp": "2024-12-06T06:58:25.038-08:00", + "current_status": "RUNNING", + "deletion_protection": false, + "description": "", + "desired_status": null, + "effective_labels": { + "goog-terraform-provisioned": "true" + }, + "enable_display": false, + "guest_accelerator": [], + "hostname": "", + "id": "projects/automatisation-tp/zones/us-central1-c/instances/ma-vm-backend", + "instance_id": "6952280805154402272", + "key_revocation_action_type": "", + "label_fingerprint": "vezUS-42LLM=", + "labels": null, + "machine_type": "e2-micro", + "metadata": { + "enable-oslogin": "TRUE" + }, + "metadata_fingerprint": "OiIE0CGQ8WM=", + "metadata_startup_script": null, + "min_cpu_platform": "", + "name": "ma-vm-backend", + "network_interface": [ + { + "access_config": [], + "alias_ip_range": [], + "internal_ipv6_prefix_length": 0, + "ipv6_access_config": [], + "ipv6_access_type": "", + "ipv6_address": "", + "name": "nic0", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "network_ip": "10.0.2.2", + "nic_type": "", + "queue_count": 0, + "stack_type": "IPV4_ONLY", + "subnetwork": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/regions/us-central1/subnetworks/backend-subnet", + "subnetwork_project": "automatisation-tp" + } + ], + "network_performance_config": [], + "params": [], + "project": "automatisation-tp", + "reservation_affinity": [], + "resource_policies": null, + "scheduling": [ + { + "automatic_restart": true, + "instance_termination_action": "", + "local_ssd_recovery_timeout": [], + "max_run_duration": [], + "min_node_cpus": 0, + "node_affinities": [], + "on_host_maintenance": "MIGRATE", + "on_instance_stop_action": [], + "preemptible": false, + "provisioning_model": "STANDARD" + } + ], + "scratch_disk": [], + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/zones/us-central1-c/instances/ma-vm-backend", + "service_account": [], + "shielded_instance_config": [ + { + "enable_integrity_monitoring": true, + "enable_secure_boot": false, + "enable_vtpm": true + } + ], + "tags": [ + "backend", + "ssh" + ], + "tags_fingerprint": "N2bbCLFli_k=", + "terraform_labels": { + "goog-terraform-provisioned": "true" + }, + "timeouts": null, + "zone": "us-central1-c" + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "boot_disk" + }, + { + "type": "index", + "value": { + "value": 0, + "type": "number" + } + }, + { + "type": "get_attr", + "value": "disk_encryption_key_raw" + } + ] + ], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiNiJ9", + "dependencies": [ + "module.network.google_compute_network.vpc", + "module.network.google_compute_subnetwork.backend_subnet", + "module.network.google_compute_subnetwork.database_subnet", + "module.network.google_compute_subnetwork.frontend_subnet" + ] + } + ] + }, + { + "module": "module.compute", + "mode": "managed", + "type": "google_compute_instance", + "name": "database", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 6, + "attributes": { + "advanced_machine_features": [], + "allow_stopping_for_update": null, + "attached_disk": [], + "boot_disk": [ + { + "auto_delete": true, + "device_name": "persistent-disk-0", + "disk_encryption_key_raw": "", + "disk_encryption_key_sha256": "", + "initialize_params": [ + { + "enable_confidential_compute": false, + "image": "https://www.googleapis.com/compute/v1/projects/debian-cloud/global/images/debian-11-bullseye-v20241112", + "labels": {}, + "provisioned_iops": 0, + "provisioned_throughput": 0, + "resource_manager_tags": null, + "resource_policies": [], + "size": 20, + "storage_pool": "", + "type": "pd-standard" + } + ], + "interface": "", + "kms_key_self_link": "", + "mode": "READ_WRITE", + "source": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/zones/us-central1-c/disks/ma-vm-database" + } + ], + "can_ip_forward": false, + "confidential_instance_config": [], + "cpu_platform": "Intel Broadwell", + "creation_timestamp": "2024-12-06T06:58:24.651-08:00", + "current_status": "RUNNING", + "deletion_protection": false, + "description": "", + "desired_status": null, + "effective_labels": { + "goog-terraform-provisioned": "true" + }, + "enable_display": false, + "guest_accelerator": [], + "hostname": "", + "id": "projects/automatisation-tp/zones/us-central1-c/instances/ma-vm-database", + "instance_id": "2548239443123154912", + "key_revocation_action_type": "", + "label_fingerprint": "vezUS-42LLM=", + "labels": null, + "machine_type": "e2-micro", + "metadata": { + "enable-oslogin": "TRUE" + }, + "metadata_fingerprint": "OiIE0CGQ8WM=", + "metadata_startup_script": null, + "min_cpu_platform": "", + "name": "ma-vm-database", + "network_interface": [ + { + "access_config": [], + "alias_ip_range": [], + "internal_ipv6_prefix_length": 0, + "ipv6_access_config": [], + "ipv6_access_type": "", + "ipv6_address": "", + "name": "nic0", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "network_ip": "10.0.3.2", + "nic_type": "", + "queue_count": 0, + "stack_type": "IPV4_ONLY", + "subnetwork": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/regions/us-central1/subnetworks/database-subnet", + "subnetwork_project": "automatisation-tp" + } + ], + "network_performance_config": [], + "params": [], + "project": "automatisation-tp", + "reservation_affinity": [], + "resource_policies": null, + "scheduling": [ + { + "automatic_restart": true, + "instance_termination_action": "", + "local_ssd_recovery_timeout": [], + "max_run_duration": [], + "min_node_cpus": 0, + "node_affinities": [], + "on_host_maintenance": "MIGRATE", + "on_instance_stop_action": [], + "preemptible": false, + "provisioning_model": "STANDARD" + } + ], + "scratch_disk": [], + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/zones/us-central1-c/instances/ma-vm-database", + "service_account": [], + "shielded_instance_config": [ + { + "enable_integrity_monitoring": true, + "enable_secure_boot": false, + "enable_vtpm": true + } + ], + "tags": [ + "database", + "ssh" + ], + "tags_fingerprint": "22sTRfPQYj4=", + "terraform_labels": { + "goog-terraform-provisioned": "true" + }, + "timeouts": null, + "zone": "us-central1-c" + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "boot_disk" + }, + { + "type": "index", + "value": { + "value": 0, + "type": "number" + } + }, + { + "type": "get_attr", + "value": "disk_encryption_key_raw" + } + ] + ], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiNiJ9", + "dependencies": [ + "module.network.google_compute_network.vpc", + "module.network.google_compute_subnetwork.backend_subnet", + "module.network.google_compute_subnetwork.database_subnet", + "module.network.google_compute_subnetwork.frontend_subnet" + ] + } + ] + }, + { + "module": "module.compute", + "mode": "managed", + "type": "google_compute_instance", + "name": "frontend", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 6, + "attributes": { + "advanced_machine_features": [], + "allow_stopping_for_update": null, + "attached_disk": [], + "boot_disk": [ + { + "auto_delete": true, + "device_name": "persistent-disk-0", + "disk_encryption_key_raw": "", + "disk_encryption_key_sha256": "", + "initialize_params": [ + { + "enable_confidential_compute": false, + "image": "https://www.googleapis.com/compute/v1/projects/debian-cloud/global/images/debian-11-bullseye-v20241112", + "labels": {}, + "provisioned_iops": 0, + "provisioned_throughput": 0, + "resource_manager_tags": null, + "resource_policies": [], + "size": 10, + "storage_pool": "", + "type": "pd-standard" + } + ], + "interface": "", + "kms_key_self_link": "", + "mode": "READ_WRITE", + "source": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/zones/us-central1-c/disks/ma-vm-frontend" + } + ], + "can_ip_forward": false, + "confidential_instance_config": [], + "cpu_platform": "Intel Broadwell", + "creation_timestamp": "2024-12-06T06:58:24.203-08:00", + "current_status": "RUNNING", + "deletion_protection": false, + "description": "", + "desired_status": null, + "effective_labels": { + "goog-terraform-provisioned": "true" + }, + "enable_display": false, + "guest_accelerator": [], + "hostname": "", + "id": "projects/automatisation-tp/zones/us-central1-c/instances/ma-vm-frontend", + "instance_id": "4195487481358888928", + "key_revocation_action_type": "", + "label_fingerprint": "vezUS-42LLM=", + "labels": null, + "machine_type": "e2-micro", + "metadata": { + "enable-oslogin": "TRUE" + }, + "metadata_fingerprint": "OiIE0CGQ8WM=", + "metadata_startup_script": null, + "min_cpu_platform": "", + "name": "ma-vm-frontend", + "network_interface": [ + { + "access_config": [ + { + "nat_ip": "34.172.11.249", + "network_tier": "PREMIUM", + "public_ptr_domain_name": "" + } + ], + "alias_ip_range": [], + "internal_ipv6_prefix_length": 0, + "ipv6_access_config": [], + "ipv6_access_type": "", + "ipv6_address": "", + "name": "nic0", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "network_ip": "10.0.1.2", + "nic_type": "", + "queue_count": 0, + "stack_type": "IPV4_ONLY", + "subnetwork": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/regions/us-central1/subnetworks/frontend-subnet", + "subnetwork_project": "automatisation-tp" + } + ], + "network_performance_config": [], + "params": [], + "project": "automatisation-tp", + "reservation_affinity": [], + "resource_policies": null, + "scheduling": [ + { + "automatic_restart": true, + "instance_termination_action": "", + "local_ssd_recovery_timeout": [], + "max_run_duration": [], + "min_node_cpus": 0, + "node_affinities": [], + "on_host_maintenance": "MIGRATE", + "on_instance_stop_action": [], + "preemptible": false, + "provisioning_model": "STANDARD" + } + ], + "scratch_disk": [], + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/zones/us-central1-c/instances/ma-vm-frontend", + "service_account": [], + "shielded_instance_config": [ + { + "enable_integrity_monitoring": true, + "enable_secure_boot": false, + "enable_vtpm": true + } + ], + "tags": [ + "frontend", + "ssh" + ], + "tags_fingerprint": "sermMtqzdso=", + "terraform_labels": { + "goog-terraform-provisioned": "true" + }, + "timeouts": null, + "zone": "us-central1-c" + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "boot_disk" + }, + { + "type": "index", + "value": { + "value": 0, + "type": "number" + } + }, + { + "type": "get_attr", + "value": "disk_encryption_key_raw" + } + ] + ], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiNiJ9", + "dependencies": [ + "module.network.google_compute_network.vpc", + "module.network.google_compute_subnetwork.backend_subnet", + "module.network.google_compute_subnetwork.database_subnet", + "module.network.google_compute_subnetwork.frontend_subnet" + ] + } + ] + }, + { + "module": "module.iam", + "mode": "data", + "type": "google_client_openid_userinfo", + "name": "me", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "email": "berger.lu2004@gmail.com", + "id": "berger.lu2004@gmail.com" + }, + "sensitive_attributes": [] + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_os_login_ssh_public_key", + "name": "add_my_key", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "expiration_time_usec": "", + "fingerprint": "048e7e3773d27e1206475729855b76c7e37b5fc8c6125cc26b27b0ef17f905ec", + "id": "users/berger.lu2004@gmail.com/sshPublicKeys/048e7e3773d27e1206475729855b76c7e37b5fc8c6125cc26b27b0ef17f905ec", + "key": "ssh-rsa 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 berger_lu2004_gmail_com\n", + "project": "automatisation-tp", + "timeouts": null, + "user": "berger.lu2004@gmail.com" + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19", + "dependencies": [ + "module.iam.data.google_client_openid_userinfo.me" + ] + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_project_iam_binding", + "name": "service_account_roles", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "condition": [], + "etag": "BwYomzG/Bcw=", + "id": "automatisation-tp/roles/viewer", + "members": [ + "serviceAccount:terraform@automatisation-tp.iam.gserviceaccount.com" + ], + "project": "automatisation-tp", + "role": "roles/viewer" + }, + "sensitive_attributes": [], + "private": "bnVsbA==", + "dependencies": [ + "module.iam.google_service_account.service_account" + ] + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_service_account", + "name": "service_account", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "account_id": "terraform", + "create_ignore_already_exists": null, + "description": "", + "disabled": false, + "display_name": "terraform", + "email": "terraform@automatisation-tp.iam.gserviceaccount.com", + "id": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com", + "member": "serviceAccount:terraform@automatisation-tp.iam.gserviceaccount.com", + "name": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com", + "project": "automatisation-tp", + "timeouts": null, + "unique_id": "111373189424254920373" + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjozMDAwMDAwMDAwMDB9fQ==" + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_service_account_key", + "name": "service_account", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "id": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com/keys/d6f4f7a06b3bfcdf4e74d1397a781557339f280c", + "keepers": null, + "key_algorithm": "KEY_ALG_RSA_2048", + "name": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com/keys/d6f4f7a06b3bfcdf4e74d1397a781557339f280c", + "private_key": "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", + "private_key_type": "TYPE_GOOGLE_CREDENTIALS_FILE", + "public_key": "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", + "public_key_data": null, + "public_key_type": "TYPE_X509_PEM_FILE", + "service_account_id": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com", + "valid_after": "2024-12-06T14:54:36Z", + "valid_before": "9999-12-31T23:59:59Z" + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "private_key" + } + ] + ], + "private": "bnVsbA==", + "dependencies": [ + "module.iam.google_service_account.service_account" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow-sql", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "3306" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.862-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-sql", + "log_config": [], + "name": "allow-sql", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-sql", + "source_ranges": [ + "10.0.2.0/24" + ], + "source_service_accounts": [], + "source_tags": [], + "target_service_accounts": [], + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_frontend_to_backend", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "8000" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.885-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-frontend-to-backend", + "log_config": [], + "name": "allow-frontend-to-backend", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-frontend-to-backend", + "source_ranges": [ + "10.0.1.0/24" + ], + "source_service_accounts": [], + "source_tags": [], + "target_service_accounts": [], + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_http", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "80" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.703-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-http", + "log_config": [], + "name": "allow-http", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-http", + "source_ranges": [ + "0.0.0.0/0" + ], + "source_service_accounts": [], + "source_tags": [], + "target_service_accounts": [], + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_https", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "443" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.836-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-https", + "log_config": [], + "name": "allow-https", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-https", + "source_ranges": [ + "0.0.0.0/0" + ], + "source_service_accounts": [], + "source_tags": [], + "target_service_accounts": [], + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_ssh", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "22" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.843-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-ssh", + "log_config": [], + "name": "allow-ssh", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-ssh", + "source_ranges": [ + "0.0.0.0/0" + ], + "source_service_accounts": [], + "source_tags": [], + "target_service_accounts": [], + "target_tags": [ + "ssh" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_network", + "name": "vpc", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "auto_create_subnetworks": false, + "delete_default_routes_on_create": false, + "description": "", + "enable_ula_internal_ipv6": false, + "gateway_ipv4": "", + "id": "projects/automatisation-tp/global/networks/myvpc", + "internal_ipv6_range": "", + "mtu": 0, + "name": "myvpc", + "network_firewall_policy_enforcement_order": "AFTER_CLASSIC_FIREWALL", + "numeric_id": "6028642736620351182", + "project": "automatisation-tp", + "routing_mode": "REGIONAL", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19" + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_subnetwork", + "name": "backend_subnet", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "creation_timestamp": "2024-12-06T06:58:02.426-08:00", + "description": "", + "external_ipv6_prefix": "", + "fingerprint": null, + "gateway_address": "10.0.2.1", + "id": "projects/automatisation-tp/regions/us-central1/subnetworks/backend-subnet", + "internal_ipv6_prefix": "", + "ip_cidr_range": "10.0.2.0/24", + "ipv6_access_type": "", + "ipv6_cidr_range": "", + "log_config": [], + "name": "backend-subnet", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "private_ip_google_access": false, + "private_ipv6_google_access": "DISABLE_GOOGLE_ACCESS", + "project": "automatisation-tp", + "purpose": "PRIVATE", + "region": "us-central1", + "reserved_internal_range": "", + "role": "", + "secondary_ip_range": [], + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/regions/us-central1/subnetworks/backend-subnet", + "send_secondary_ip_range_if_empty": null, + "stack_type": "IPV4_ONLY", + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_subnetwork", + "name": "database_subnet", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "creation_timestamp": "2024-12-06T06:58:02.371-08:00", + "description": "", + "external_ipv6_prefix": "", + "fingerprint": null, + "gateway_address": "10.0.3.1", + "id": "projects/automatisation-tp/regions/us-central1/subnetworks/database-subnet", + "internal_ipv6_prefix": "", + "ip_cidr_range": "10.0.3.0/24", + "ipv6_access_type": "", + "ipv6_cidr_range": "", + "log_config": [], + "name": "database-subnet", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "private_ip_google_access": false, + "private_ipv6_google_access": "DISABLE_GOOGLE_ACCESS", + "project": "automatisation-tp", + "purpose": "PRIVATE", + "region": "us-central1", + "reserved_internal_range": "", + "role": "", + "secondary_ip_range": [], + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/regions/us-central1/subnetworks/database-subnet", + "send_secondary_ip_range_if_empty": null, + "stack_type": "IPV4_ONLY", + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_subnetwork", + "name": "frontend_subnet", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "creation_timestamp": "2024-12-06T06:58:02.414-08:00", + "description": "", + "external_ipv6_prefix": "", + "fingerprint": null, + "gateway_address": "10.0.1.1", + "id": "projects/automatisation-tp/regions/us-central1/subnetworks/frontend-subnet", + "internal_ipv6_prefix": "", + "ip_cidr_range": "10.0.1.0/24", + "ipv6_access_type": "", + "ipv6_cidr_range": "", + "log_config": [], + "name": "frontend-subnet", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "private_ip_google_access": false, + "private_ipv6_google_access": "DISABLE_GOOGLE_ACCESS", + "project": "automatisation-tp", + "purpose": "PRIVATE", + "region": "us-central1", + "reserved_internal_range": "", + "role": "", + "secondary_ip_range": [], + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/regions/us-central1/subnetworks/frontend-subnet", + "send_secondary_ip_range_if_empty": null, + "stack_type": "IPV4_ONLY", + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + } + ], + "check_results": null +} diff --git a/terraform/environments/dev/terraform.tfstate.backup b/terraform/environments/dev/terraform.tfstate.backup new file mode 100644 index 0000000..e6d9acf --- /dev/null +++ b/terraform/environments/dev/terraform.tfstate.backup @@ -0,0 +1,531 @@ +{ + "version": 4, + "terraform_version": "1.10.1", + "serial": 16, + "lineage": "9cd7d550-f3e6-fb7f-5c88-ad81115966f2", + "outputs": {}, + "resources": [ + { + "mode": "data", + "type": "google_client_openid_userinfo", + "name": "me", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "email": "berger.lu2004@gmail.com", + "id": "berger.lu2004@gmail.com" + }, + "sensitive_attributes": [] + } + ] + }, + { + "mode": "managed", + "type": "local_file", + "name": "ansible_config", + "provider": "provider[\"registry.terraform.io/hashicorp/local\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "content": "[defaults]\nhost_key_checking = False\ninventory = gcp_compute.yml\ninterpreter_python = auto_silent\nremote_user = berger_lu2004_gmail_com\n\n[inventory]\nenable_plugins = gcp_compute, auto, host_list, yaml, ini, toml, script\n", + "content_base64": null, + "content_base64sha256": "tAyzhXJK2mhmEP/5U+K85Wr+3QAyBabUB8Vdg+lSg/s=", + "content_base64sha512": "PHqpN13EriqXSeJmr//etyU/4sx00X9djyo8s9PnypamsFOA2+c54QbPQwGupDIeu4EwXASPFrEJy+hjlowj+A==", + "content_md5": "893f4531c3ed1544c102f08b00a1158a", + "content_sha1": "ba47568b70bbbed22cf8f66401fb97b55540ee91", + "content_sha256": "b40cb385724ada686610fff953e2bce56afedd003205a6d407c55d83e95283fb", + "content_sha512": "3c7aa9375dc4ae2a9749e266afffdeb7253fe2cc74d17f5d8f2a3cb3d3e7ca96a6b05380dbe739e106cf4301aea4321ebb81305c048f16b109cbe863968c23f8", + "directory_permission": "0777", + "file_permission": "0777", + "filename": "../../../ansible/ansible.cfg", + "id": "ba47568b70bbbed22cf8f66401fb97b55540ee91", + "sensitive_content": null, + "source": null + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "sensitive_content" + } + ] + ], + "dependencies": [ + "data.google_client_openid_userinfo.me" + ] + } + ] + }, + { + "mode": "managed", + "type": "local_file", + "name": "service_account", + "provider": "provider[\"registry.terraform.io/hashicorp/local\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "content": "{\n \"type\": \"service_account\",\n \"project_id\": \"automatisation-tp\",\n \"private_key_id\": \"d6f4f7a06b3bfcdf4e74d1397a781557339f280c\",\n \"private_key\": \"-----BEGIN PRIVATE KEY-----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\\no3fEi/XS+nAgTzQOEXJ+0BY=\\n-----END PRIVATE KEY-----\\n\",\n \"client_email\": \"terraform@automatisation-tp.iam.gserviceaccount.com\",\n \"client_id\": \"111373189424254920373\",\n \"auth_uri\": \"https://accounts.google.com/o/oauth2/auth\",\n \"token_uri\": \"https://oauth2.googleapis.com/token\",\n \"auth_provider_x509_cert_url\": \"https://www.googleapis.com/oauth2/v1/certs\",\n \"client_x509_cert_url\": \"https://www.googleapis.com/robot/v1/metadata/x509/terraform%40automatisation-tp.iam.gserviceaccount.com\",\n \"universe_domain\": \"googleapis.com\"\n}\n", + "content_base64": null, + "content_base64sha256": "35HrgaVJyTReIQxjQVRmGNXq38w9rDQV4hGfR6Il2g8=", + "content_base64sha512": "QzXgpZTsCG4CWAEnJeaaPJRhjpBwdMEU6xYmdFZmGMKlqyp8Atxr5ot4vUTOC9erquBgj8cFWnrwjA+0dEr7/A==", + "content_md5": "cddc05e5b6a3a154a7c5f38f804ad6bf", + "content_sha1": "9c7488a769ef045137ce57195807dc021f0dc5fb", + "content_sha256": "df91eb81a549c9345e210c6341546618d5eadfcc3dac3415e2119f47a225da0f", + "content_sha512": "4335e0a594ec086e0258012725e69a3c94618e907074c114eb162674566618c2a5ab2a7c02dc6be68b78bd44ce0bd7abaae0608fc7055a7af08c0fb4744afbfc", + "directory_permission": "0777", + "file_permission": "0777", + "filename": "../../../ansible/service_account.json", + "id": "9c7488a769ef045137ce57195807dc021f0dc5fb", + "sensitive_content": null, + "source": null + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "sensitive_content" + } + ], + [ + { + "type": "get_attr", + "value": "content" + } + ] + ], + "dependencies": [ + "module.iam.google_service_account.service_account", + "module.iam.google_service_account_key.service_account" + ] + } + ] + }, + { + "module": "module.iam", + "mode": "data", + "type": "google_client_openid_userinfo", + "name": "me", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "email": "berger.lu2004@gmail.com", + "id": "berger.lu2004@gmail.com" + }, + "sensitive_attributes": [] + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_os_login_ssh_public_key", + "name": "add_my_key", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "expiration_time_usec": "", + "fingerprint": "048e7e3773d27e1206475729855b76c7e37b5fc8c6125cc26b27b0ef17f905ec", + "id": "users/berger.lu2004@gmail.com/sshPublicKeys/048e7e3773d27e1206475729855b76c7e37b5fc8c6125cc26b27b0ef17f905ec", + "key": "ssh-rsa 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 berger_lu2004_gmail_com\n", + "project": "automatisation-tp", + "timeouts": null, + "user": "berger.lu2004@gmail.com" + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19", + "dependencies": [ + "module.iam.data.google_client_openid_userinfo.me" + ] + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_project_iam_binding", + "name": "service_account_roles", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "condition": [], + "etag": "BwYomzG/Bcw=", + "id": "automatisation-tp/roles/viewer", + "members": [ + "serviceAccount:terraform@automatisation-tp.iam.gserviceaccount.com" + ], + "project": "automatisation-tp", + "role": "roles/viewer" + }, + "sensitive_attributes": [], + "private": "bnVsbA==", + "dependencies": [ + "module.iam.google_service_account.service_account" + ] + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_service_account", + "name": "service_account", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "account_id": "terraform", + "create_ignore_already_exists": null, + "description": "", + "disabled": false, + "display_name": "terraform", + "email": "terraform@automatisation-tp.iam.gserviceaccount.com", + "id": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com", + "member": "serviceAccount:terraform@automatisation-tp.iam.gserviceaccount.com", + "name": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com", + "project": "automatisation-tp", + "timeouts": null, + "unique_id": "111373189424254920373" + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjozMDAwMDAwMDAwMDB9fQ==" + } + ] + }, + { + "module": "module.iam", + "mode": "managed", + "type": "google_service_account_key", + "name": "service_account", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "id": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com/keys/d6f4f7a06b3bfcdf4e74d1397a781557339f280c", + "keepers": null, + "key_algorithm": "KEY_ALG_RSA_2048", + "name": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com/keys/d6f4f7a06b3bfcdf4e74d1397a781557339f280c", + "private_key": "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", + "private_key_type": "TYPE_GOOGLE_CREDENTIALS_FILE", + "public_key": "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", + "public_key_data": null, + "public_key_type": "TYPE_X509_PEM_FILE", + "service_account_id": "projects/automatisation-tp/serviceAccounts/terraform@automatisation-tp.iam.gserviceaccount.com", + "valid_after": "2024-12-06T14:54:36Z", + "valid_before": "9999-12-31T23:59:59Z" + }, + "sensitive_attributes": [ + [ + { + "type": "get_attr", + "value": "private_key" + } + ] + ], + "private": "bnVsbA==", + "dependencies": [ + "module.iam.google_service_account.service_account" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow-sql", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "3306" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.862-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-sql", + "log_config": [], + "name": "allow-sql", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-sql", + "source_ranges": [ + "10.0.2.0/24" + ], + "source_service_accounts": null, + "source_tags": null, + "target_service_accounts": null, + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_frontend_to_backend", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "8000" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.885-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-frontend-to-backend", + "log_config": [], + "name": "allow-frontend-to-backend", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-frontend-to-backend", + "source_ranges": [ + "10.0.1.0/24" + ], + "source_service_accounts": null, + "source_tags": null, + "target_service_accounts": null, + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_http", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "80" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.703-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-http", + "log_config": [], + "name": "allow-http", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-http", + "source_ranges": [ + "0.0.0.0/0" + ], + "source_service_accounts": null, + "source_tags": null, + "target_service_accounts": null, + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_https", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "443" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.836-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-https", + "log_config": [], + "name": "allow-https", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-https", + "source_ranges": [ + "0.0.0.0/0" + ], + "source_service_accounts": null, + "source_tags": null, + "target_service_accounts": null, + "target_tags": [ + "web" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_firewall", + "name": "allow_ssh", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 1, + "attributes": { + "allow": [ + { + "ports": [ + "22" + ], + "protocol": "tcp" + } + ], + "creation_timestamp": "2024-12-06T06:54:36.843-08:00", + "deny": [], + "description": "", + "destination_ranges": [], + "direction": "INGRESS", + "disabled": false, + "enable_logging": null, + "id": "projects/automatisation-tp/global/firewalls/allow-ssh", + "log_config": [], + "name": "allow-ssh", + "network": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "priority": 1000, + "project": "automatisation-tp", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/firewalls/allow-ssh", + "source_ranges": [ + "0.0.0.0/0" + ], + "source_service_accounts": null, + "source_tags": null, + "target_service_accounts": null, + "target_tags": [ + "ssh" + ], + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH0sInNjaGVtYV92ZXJzaW9uIjoiMSJ9", + "dependencies": [ + "module.network.google_compute_network.vpc" + ] + } + ] + }, + { + "module": "module.network", + "mode": "managed", + "type": "google_compute_network", + "name": "vpc", + "provider": "provider[\"registry.terraform.io/hashicorp/google\"]", + "instances": [ + { + "schema_version": 0, + "attributes": { + "auto_create_subnetworks": false, + "delete_default_routes_on_create": false, + "description": "", + "enable_ula_internal_ipv6": false, + "gateway_ipv4": "", + "id": "projects/automatisation-tp/global/networks/myvpc", + "internal_ipv6_range": "", + "mtu": 0, + "name": "myvpc", + "network_firewall_policy_enforcement_order": "AFTER_CLASSIC_FIREWALL", + "numeric_id": "6028642736620351182", + "project": "automatisation-tp", + "routing_mode": "REGIONAL", + "self_link": "https://www.googleapis.com/compute/v1/projects/automatisation-tp/global/networks/myvpc", + "timeouts": null + }, + "sensitive_attributes": [], + "private": "eyJlMmJmYjczMC1lY2FhLTExZTYtOGY4OC0zNDM2M2JjN2M0YzAiOnsiY3JlYXRlIjoxMjAwMDAwMDAwMDAwLCJkZWxldGUiOjEyMDAwMDAwMDAwMDAsInVwZGF0ZSI6MTIwMDAwMDAwMDAwMH19" + } + ] + } + ], + "check_results": null +} diff --git a/terraform/environments/dev/variables.tf b/terraform/environments/dev/variables.tf index e69de29..58c07cb 100644 --- a/terraform/environments/dev/variables.tf +++ b/terraform/environments/dev/variables.tf @@ -0,0 +1,48 @@ +#- project_name (string) +variable "project_name" { + description = "Nom du projet" + type = string + default = "automatisation-tp" +} +#- project_id (string) +variable "project_id" { + description = "ID du projet" + type = string + default = "automatisation-tp" +} +# - region (string) +variable "region" { + description = "Région du projet" + type = string + default = "us-central1" +} +# - frontend_cidr (string) +variable "frontend_cidr" { + description = "cidr du frontend" + type = string + default = "10.0.1.0/24" +} +# - backend_cidr (string) +variable "backend_cidr" { + description = "cidr du backend" + type = string + default = "10.0.2.0/24" +} +# - database_cidr (string) +variable "database_cidr" { + description = "cidr du database" + type = string + default = "10.0.3.0/24" +} +# - ssh_source_ranges (string) +variable "ssh_source_ranges" { + description = "Accès à internet" + type = string + default = "0.0.0.0/0" +} + +variable "cidr_range" { + description = "cidr de network" + type = string + default = "10.0.0.0/16" +} diff --git a/terraform/modules/compute/main.tf b/terraform/modules/compute/main.tf index e69de29..f2ee289 100644 --- a/terraform/modules/compute/main.tf +++ b/terraform/modules/compute/main.tf @@ -0,0 +1,69 @@ +resource "google_compute_instance" "frontend" { + name = "ma-vm-frontend" + machine_type = var.instance_type + zone = var.zone + + boot_disk { + initialize_params { + image = "debian-cloud/debian-11" + size = 10 + } + } + + network_interface { + subnetwork = var.frontend_subnet_id + access_config {} # IP publique + } + + tags = ["frontend", "ssh"] + + metadata = { + enable-oslogin = "TRUE" + } +} + +resource "google_compute_instance" "backend" { + name = "ma-vm-backend" + machine_type = var.instance_type + zone = var.zone + + boot_disk { + initialize_params { + image = "debian-cloud/debian-11" + size = 10 + } + } + + network_interface { + subnetwork = var.backend_subnet_id + } + + tags = ["backend", "ssh"] + + metadata = { + enable-oslogin = "TRUE" + } +} + +resource "google_compute_instance" "database" { + name = "ma-vm-database" + machine_type = var.instance_type + zone = var.zone + + boot_disk { + initialize_params { + image = "debian-cloud/debian-11" + size = 20 + } + } + + network_interface { + subnetwork = var.database_subnet_id + } + + tags = ["database", "ssh"] + + metadata = { + enable-oslogin = "TRUE" + } +} diff --git a/terraform/modules/compute/variables.tf b/terraform/modules/compute/variables.tf index e69de29..9f5228e 100644 --- a/terraform/modules/compute/variables.tf +++ b/terraform/modules/compute/variables.tf @@ -0,0 +1,26 @@ +variable "instance_type" { + description = "les types d'instances" + type = string + default = "e2-micro" +} + +variable "zone" { + description = "zone des instances" + type = string + default = "europe-west4" +} + +variable "frontend_subnet_id" { + description = "L'identifiant du subnet utilisé pour le frontend" + type = string +} + +variable "backend_subnet_id" { + description = "L'identifiant du subnet utilisé pour le backend" + type = string +} + +variable "database_subnet_id" { + description = "L'identifiant du subnet utilisé pour la database" + type = string +} diff --git a/terraform/modules/iam/main.tf b/terraform/modules/iam/main.tf index e69de29..993825e 100644 --- a/terraform/modules/iam/main.tf +++ b/terraform/modules/iam/main.tf @@ -0,0 +1,24 @@ +resource "google_service_account" "service_account" { + account_id = "terraform" + display_name = "terraform" +} + +resource "google_service_account_key" "service_account" { + service_account_id = google_service_account.service_account.name + public_key_type = "TYPE_X509_PEM_FILE" +} + +resource "google_project_iam_binding" "service_account_roles" { + project = var.project_id + role = "roles/viewer" + members = ["serviceAccount:${google_service_account.service_account.email}"] +} + +data "google_client_openid_userinfo" "me" { +} + +resource "google_os_login_ssh_public_key" "add_my_key" { + project = var.project_id + user = data.google_client_openid_userinfo.me.email + key = file("~/.ssh/id_ed25519.pub") +} diff --git a/terraform/modules/iam/outputs.tf b/terraform/modules/iam/outputs.tf index e69de29..c9489e7 100644 --- a/terraform/modules/iam/outputs.tf +++ b/terraform/modules/iam/outputs.tf @@ -0,0 +1,10 @@ +output "service_account_email" { + description = "Email du compte de service" + value = google_service_account.service_account.email +} + +output "service_account_key" { + description = "Clé du compte de service" + value = google_service_account_key.service_account.private_key + sensitive = true +} diff --git a/terraform/modules/iam/variables.tf b/terraform/modules/iam/variables.tf index e69de29..ea76873 100644 --- a/terraform/modules/iam/variables.tf +++ b/terraform/modules/iam/variables.tf @@ -0,0 +1,5 @@ +# modules/iam/variables.tf +variable "project_id" { + description = "ID du projet GCP" + type = string +} diff --git a/terraform/modules/network/main.tf b/terraform/modules/network/main.tf index 76e37f1..8d1e0af 100644 --- a/terraform/modules/network/main.tf +++ b/terraform/modules/network/main.tf @@ -1,68 +1,94 @@ -#réation du réseau VPC -resource "google_compute_network" "my_vpc" { - name = "mon-vpc" +# VPC +resource "google_compute_network" "vpc" { + name = "myvpc" auto_create_subnetworks = false } -# Création des sous-réseaux -resource "google_compute_subnetwork" "frontend" { - name = "frontend" - ip_cidr_range = "10.0.1.0/24" - region = google_compute_network.my_vpc.region - network = google_compute_network.my_vpc.id +# Sous-réseau +resource "google_compute_subnetwork" "frontend_subnet" { + name = "frontend-subnet" + network = google_compute_network.vpc.id + ip_cidr_range = var.frontend_cidr + region = var.region } -resource "google_compute_subnetwork" "backend" { - name = "backend" - ip_cidr_range = "10.0.2.0/24" - region = google_compute_network.my_vpc.region - network = google_compute_network.my_vpc.id +# Sous-réseau +resource "google_compute_subnetwork" "backend_subnet" { + name = "backend-subnet" + network = google_compute_network.vpc.id + ip_cidr_range = var.backend_cidr + region = var.region } -resource "google_compute_subnetwork" "database" { - name = "database" - ip_cidr_range = "10.0.3.0/24" - region = google_compute_network.my_vpc.region - network = google_compute_network.my_vpc.id +# Sous-réseau +resource "google_compute_subnetwork" "database_subnet" { + name = "database-subnet" + network = google_compute_network.vpc.id + ip_cidr_range = var.database_cidr + region = var.region } -# Création des règles de firewall -resource "google_compute_firewall" "allow_http_https" { - name = "allow-http-https" - network = google_compute_network.my_vpc.id - allowed = [ - { IPProtocol = "tcp", ports = ["80", "443"] }, - ] +resource "google_compute_firewall" "allow_http" { + name = "allow-http" + network = google_compute_network.vpc.id + + allow { + protocol = "tcp" + ports = ["80"] + } + + source_ranges = ["0.0.0.0/0"] + target_tags = ["web"] +} + +resource "google_compute_firewall" "allow_https" { + name = "allow-https" + network = google_compute_network.vpc.id + + allow { + protocol = "tcp" + ports = ["443"] + } + + source_ranges = ["0.0.0.0/0"] + target_tags = ["web"] } resource "google_compute_firewall" "allow_ssh" { - name = "allow-ssh" - network = google_compute_network.my_vpc.id - allowed = [ - { IPProtocol = "tcp", ports = ["22"] }, - ] + name = "allow-ssh" + network = google_compute_network.vpc.id + + allow { + protocol = "tcp" + ports = ["22"] + } + + source_ranges = [var.ssh_source_ranges] + target_tags = ["ssh"] } -resource "google_compute_firewall" "frontend_to_backend" { - name = "frontend-to-backend" - network = google_compute_network.my_vpc.id - allowed = [ - { IPProtocol = "tcp", ports = ["8000"] }, - ] - source_ranges = [ - google_compute_subnetwork.frontend.ip_cidr_range - ] - target_tags = ["backend"] +resource "google_compute_firewall" "allow_frontend_to_backend" { + name = "allow-frontend-to-backend" + network = google_compute_network.vpc.id + + allow { + protocol = "tcp" + ports = ["8000"] + } + + source_ranges = [var.frontend_cidr] + target_tags = ["web"] } -resource "google_compute_firewall" "backend_to_database" { - name = "backend-to-database" - network = google_compute_network.my_vpc.id - allowed = [ - { IPProtocol = "tcp", ports = ["3306"] }, - ] - source_ranges = [ - google_compute_subnetwork.backend.ip_cidr_range - ] - target_tags = ["database"] +resource "google_compute_firewall" "allow-sql" { + name = "allow-sql" + network = google_compute_network.vpc.id + + allow { + protocol = "tcp" + ports = ["3306"] + } + + source_ranges = [var.backend_cidr] + target_tags = ["web"] } diff --git a/terraform/modules/network/outputs.tf b/terraform/modules/network/outputs.tf index 55c080c..d592b3c 100644 --- a/terraform/modules/network/outputs.tf +++ b/terraform/modules/network/outputs.tf @@ -1,13 +1,11 @@ -output "vpc_id" { - value = google_compute_network.my_vpc.id - description = "ID du VPC créé" +output "id_vpc" { + value = google_compute_network.vpc.id } -output "subnet_ids" { - value = { - frontend = google_compute_subnetwork.frontend.id - backend = google_compute_subnetwork.backend.id - database = google_compute_subnetwork.database.id - } - description = "Map contenant les IDs des sous-réseaux" +output "id_subnetwork" { + value = { + frontend = google_compute_subnetwork.frontend_subnet.id, + backend = google_compute_subnetwork.backend_subnet.id, + database = google_compute_subnetwork.database_subnet.id + } } diff --git a/terraform/modules/network/variables.tf b/terraform/modules/network/variables.tf index 7a8fefb..d6841d7 100644 --- a/terraform/modules/network/variables.tf +++ b/terraform/modules/network/variables.tf @@ -1,16 +1,15 @@ # modules/network/variables.tf - variable "project_name" { - description = "Nom du projet Google Cloud" + description = "Nom du projet" type = string - default = "automatisation-tp" } variable "region" { - description = "Région Google Cloud" + description = "Région du projet" type = string } + variable "frontend_cidr" { description = "Bloc CIDR pour le sous-réseau frontend" type = string @@ -28,3 +27,9 @@ variable "database_cidr" { type = string default = "10.0.3.0/24" } +# variables (network) +variable "ssh_source_ranges" { + description = "ssh access" + type = string + default = "0.0.0.0/0" +} diff --git a/terraform/templates/ansible.cfg.tpl b/terraform/templates/ansible.cfg.tpl index e69de29..74a6dd3 100644 --- a/terraform/templates/ansible.cfg.tpl +++ b/terraform/templates/ansible.cfg.tpl @@ -0,0 +1,8 @@ +[defaults] +host_key_checking = False +inventory = gcp_compute.yml +interpreter_python = auto_silent +remote_user = ${replace(replace(remote_user, ".", "_"), "@", "_")} + +[inventory] +enable_plugins = gcp_compute, auto, host_list, yaml, ini, toml, script