Skip to content
Snippets Groups Projects
Code owners
Assign users and groups as approvers for specific file changes. Learn more.
ecs.tf 1.88 KiB
data "template_file" "container" {
  template = file("./templates/container-definitions.tpl")
  vars = {
    container_name            = var.container_name
    image_name                = var.image_name
    container_memory          = var.container_memory
    container_hostname        = var.container_hostname
    app_port1                 = var.container_app_port[0]
    app_port2                 = var.container_app_port[1]
    app_port3                 = var.container_app_port[2]
    informatica_username      = var.informatica_username
    informatica_password      = var.informatica_password
    secure_agent_configs_path = var.secure_agent_configs_path
  }
}

data "aws_iam_role" "ecs-task-execution" {
  name = "ecsTaskExecutionRole"
}

resource "aws_ecs_task_definition" "task" {
  family             = var.ecs_task_name
  execution_role_arn = data.aws_iam_role.ecs-task-execution.arn
  network_mode       = var.container_network_mode
  requires_compatibilities = [
  "EC2"]
  container_definitions = data.template_file.container.rendered
  volume {
    name = "agent-configs-path"
    docker_volume_configuration {
      autoprovision = true
      scope         = "shared"
      driver        = "local"

      driver_opts = {
        "type"   = "nfs"
        "device" = "${aws_efs_file_system.secure-agent-fs.dns_name}:/"
        "o"      = "addr=${aws_efs_file_system.secure-agent-fs.dns_name},nfsvers=4.1,rsize=1048576,wsize=1048576,hard,timeo=600,retrans=2,nosuid"
      }
    }
  }
  tags = var.ecs_task_tags
}

resource "aws_ecs_service" "service" {
  name            = var.ecs_service_name
  cluster         = aws_ecs_cluster.cluster.id
  task_definition = aws_ecs_task_definition.task.arn
  desired_count   = 1
  # secure agent configs and logs are persisted into an EFS volume.
  launch_type = "EC2"
}

resource "aws_ecs_cluster" "cluster" {
  name = var.ecs_cluster_name
  tags = var.ecs_cluster_tags
}