虚拟云网络 |
resource oci_core_vcn export_iad-cloudmaa-vcn {
#cidr_block = <<Optional value not found in discovery>>
cidr_blocks = [
“10.0.0.0/16”,
]
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “iad-cloudmaa-vcn”
dns_label = “iadcloudmaavcn”
freeform_tags = {
}
#is_ipv6enabled = <<Optional value not found in discovery>>
}
|
必需的修改包括删除 export_ 、分配其他不重叠的 CIDR、显示名称以及更改 DNS 标签:resource oci_core_vcn phx-cloudmaa-vcn {
#cidr_block = <<Optional value not found in discovery>>
cidr_blocks = [
“10.10.0.0/16”,
]
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “phx-cloudmaa-vcn”
dns_label = “phxcloudmaavcn”
freeform_tags = {
}
#is_ipv6enabled = <<Optional value not found in discovery>>
}
|
NAT 网关网关 |
resource oci_core_nat_gateway export_iadmaa-ngwy {
block_traffic = “false”
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “iadmaa-ngwy”
freeform_tags = {
}
public_ip_id = “ocid1.publicip.oc1.iad.aaaaaaaagwkvnlh6y4irjubj63dm36mdsuig6zbc2oakgmssvifpprvx6kzq”
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括删除 export_ 、更改显示名称和 VCN 引用。resource oci_core_nat_gateway phxmaa-ngwy {
block_traffic = "false"
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phxmaa-ngwy"
freeform_tags = {
}
public_ip_id = "ocid1.publicip.oc1.iad.aaaaaaaagwkvnlh6y4irjubj63dm36mdsuig6zbc2oakgmssvifpprvx6kzq"
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
路由表 |
resource oci_core_route_table export_iad-db-private-RT {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "iad-db-private-RT"
freeform_tags = {
}
route_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
network_entity_id = oci_core_nat_gateway.export_iadmaa-ngwy.id
}
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括删除 export_ 、更改路由表的名称、显示名称和 VCN 引用。resource oci_core_route_table phx-db-private-RT {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phx-db-private-RT"
freeform_tags = {
}
route_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
network_entity_id = oci_core_nat_gateway.phxmaa-ngwy.id
}
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
安全列表 |
resource oci_core_security_list export_iad-db-private-seclist {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "iad-db-private-seclist"
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
freeform_tags = {
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
source = "10.0.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "22"
min = "22"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "1530"
min = "1521"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括删除 export_ 、更改安全列表的名称及其显示名称、将每个具有 10.0.x.y 到 10.10.x.y 的入站规则中的 CIDR 块更改为 10.10.x.y 以及更改 VCN 引用。保持 0.0.0.0/0 未更改。resource oci_core_security_list phx-db-private-seclist {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phx-db-private-seclist"
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
freeform_tags = {
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
source = "10.10.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "22"
min = "22"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "1530"
min = "1521"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
子网 |
resource oci_core_subnet export_exadb-private-subnet-ad2 {
availability_domain = "LoSv:US-ASHBURN-AD-2"
cidr_block = "10.0.101.0/24"
compartment_id = var.compartment_ocid
defined_tags = {
"Oracle-Tags.CreatedBy" = "ocid1.saml2idp.oc1..aaaaaaaatilj7lqztsx6jehhm7k5374c5jxg6uuhzvdehgbiprb55gnyejba/<oci user name>"
"Oracle-Tags.CreatedOn" = "2020-03-13T18:50:55.371Z"
}
dhcp_options_id = oci_core_vcn.export_iad-cloudmaa-vcn.default_dhcp_options_id
display_name = "exadb-private-subnet-ad2"
dns_label = "exadbprivate"
freeform_tags = {
}
#ipv6cidr_block = <<Optional value not found in discovery>>
prohibit_internet_ingress = "true"
prohibit_public_ip_on_vnic = "true"
route_table_id = oci_core_route_table.export_iad-db-private-RT.id
security_list_ids = [
oci_core_security_list.export_siteguard-seclist.id,
oci_core_security_list.export_bastion-private-seclist.id,
oci_core_security_list.export_iad-db-private-seclist.id,
]
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括移除出现位置的 "export_"、将 CIDR 更改为 VCN 中凤凰城区域的子网、更改可用性域、更改路由表和 VCN 引用。
resource oci_core_subnet exadb-private-subnet-ad1 {
availability_domain = "LoSv:US-PHOENIX-AD-1"
cidr_block = "10.10.101.0/24"
compartment_id = var.compartment_ocid
defined_tags = {
"Oracle-Tags.CreatedBy" = "ocid1.saml2idp.oc1..aaaaaaaatilj7lqztsx6jehhm7k5374c5jxg6uuhzvdehgbiprb55gnyejba/<oci user name>"
"Oracle-Tags.CreatedOn" = "2020-03-13T18:50:55.371Z"
}
dhcp_options_id = oci_core_vcn.phx-cloudmaa-vcn.default_dhcp_options_id
display_name = "exadb-private-subnet-ad1"
dns_label = "exadbprivate"
freeform_tags = {
}
#ipv6cidr_block = <<Optional value not found in discovery>>
prohibit_internet_ingress = "true"
prohibit_public_ip_on_vnic = "true"
route_table_id = oci_core_route_table.phx-db-private-RT.id
security_list_ids = [
oci_core_security_list.siteguard-seclist.id,
oci_core_security_list.bastion-private-seclist.id,
oci_core_security_list.phx-db-private-seclist.id,
]
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|