가상 클라우드 네트워크 |
resource oci_core_vcn export_iad-cloudmaa-vcn {
#cidr_block = <<Optional value not found in discovery>>
cidr_blocks = [
“10.0.0.0/16”,
]
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “iad-cloudmaa-vcn”
dns_label = “iadcloudmaavcn”
freeform_tags = {
}
#is_ipv6enabled = <<Optional value not found in discovery>>
}
|
필요한 수정 사항으로는 export_ 제거, 겹치지 않는 다른 CIDR 지정, 표시 이름 및 DNS 레이블 변경이 있습니다.resource oci_core_vcn phx-cloudmaa-vcn {
#cidr_block = <<Optional value not found in discovery>>
cidr_blocks = [
“10.10.0.0/16”,
]
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “phx-cloudmaa-vcn”
dns_label = “phxcloudmaavcn”
freeform_tags = {
}
#is_ipv6enabled = <<Optional value not found in discovery>>
}
|
NAT 게이트웨이 |
resource oci_core_nat_gateway export_iadmaa-ngwy {
block_traffic = “false”
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “iadmaa-ngwy”
freeform_tags = {
}
public_ip_id = “ocid1.publicip.oc1.iad.aaaaaaaagwkvnlh6y4irjubj63dm36mdsuig6zbc2oakgmssvifpprvx6kzq”
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
export_ 제거, 표시 이름 변경 및 VCN 참조가 수정되었습니다.resource oci_core_nat_gateway phxmaa-ngwy {
block_traffic = "false"
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phxmaa-ngwy"
freeform_tags = {
}
public_ip_id = "ocid1.publicip.oc1.iad.aaaaaaaagwkvnlh6y4irjubj63dm36mdsuig6zbc2oakgmssvifpprvx6kzq"
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
경로 지정 테이블 |
resource oci_core_route_table export_iad-db-private-RT {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "iad-db-private-RT"
freeform_tags = {
}
route_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
network_entity_id = oci_core_nat_gateway.export_iadmaa-ngwy.id
}
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
export_ 제거, 경로 테이블 이름 변경, 표시 이름 및 VCN 참조가 수정되었습니다.resource oci_core_route_table phx-db-private-RT {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phx-db-private-RT"
freeform_tags = {
}
route_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
network_entity_id = oci_core_nat_gateway.phxmaa-ngwy.id
}
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
보안 목록 |
resource oci_core_security_list export_iad-db-private-seclist {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "iad-db-private-seclist"
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
freeform_tags = {
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
source = "10.0.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "22"
min = "22"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "1530"
min = "1521"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
수정 사항으로는 export_ 제거, 보안 목록 이름 및 표시 이름 변경, 10.0.x.y가 10.10.x.y인 각 수신 규칙의 CIDR 블록 변경, VCN 참조 변경 등이 있습니다. 0.0.0.0/0를 변경하지 않은 상태로 유지합니다.resource oci_core_security_list phx-db-private-seclist {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phx-db-private-seclist"
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
freeform_tags = {
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
source = "10.10.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "22"
min = "22"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "1530"
min = "1521"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
서브넷 |
resource oci_core_subnet export_exadb-private-subnet-ad2 {
availability_domain = "LoSv:US-ASHBURN-AD-2"
cidr_block = "10.0.101.0/24"
compartment_id = var.compartment_ocid
defined_tags = {
"Oracle-Tags.CreatedBy" = "ocid1.saml2idp.oc1..aaaaaaaatilj7lqztsx6jehhm7k5374c5jxg6uuhzvdehgbiprb55gnyejba/<oci user name>"
"Oracle-Tags.CreatedOn" = "2020-03-13T18:50:55.371Z"
}
dhcp_options_id = oci_core_vcn.export_iad-cloudmaa-vcn.default_dhcp_options_id
display_name = "exadb-private-subnet-ad2"
dns_label = "exadbprivate"
freeform_tags = {
}
#ipv6cidr_block = <<Optional value not found in discovery>>
prohibit_internet_ingress = "true"
prohibit_public_ip_on_vnic = "true"
route_table_id = oci_core_route_table.export_iad-db-private-RT.id
security_list_ids = [
oci_core_security_list.export_siteguard-seclist.id,
oci_core_security_list.export_bastion-private-seclist.id,
oci_core_security_list.export_iad-db-private-seclist.id,
]
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
수정 사항으로는 "export_" 제거, 피닉스 지역의 VCN 내 서브넷으로 CIDR 변경, 가용성 도메인 변경, 라우팅 테이블 및 VCN 참조 변경 등이 있습니다.
resource oci_core_subnet exadb-private-subnet-ad1 {
availability_domain = "LoSv:US-PHOENIX-AD-1"
cidr_block = "10.10.101.0/24"
compartment_id = var.compartment_ocid
defined_tags = {
"Oracle-Tags.CreatedBy" = "ocid1.saml2idp.oc1..aaaaaaaatilj7lqztsx6jehhm7k5374c5jxg6uuhzvdehgbiprb55gnyejba/<oci user name>"
"Oracle-Tags.CreatedOn" = "2020-03-13T18:50:55.371Z"
}
dhcp_options_id = oci_core_vcn.phx-cloudmaa-vcn.default_dhcp_options_id
display_name = "exadb-private-subnet-ad1"
dns_label = "exadbprivate"
freeform_tags = {
}
#ipv6cidr_block = <<Optional value not found in discovery>>
prohibit_internet_ingress = "true"
prohibit_public_ip_on_vnic = "true"
route_table_id = oci_core_route_table.phx-db-private-RT.id
security_list_ids = [
oci_core_security_list.siteguard-seclist.id,
oci_core_security_list.bastion-private-seclist.id,
oci_core_security_list.phx-db-private-seclist.id,
]
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|