虛擬雲端網路 |
resource oci_core_vcn export_iad-cloudmaa-vcn {
#cidr_block = <<Optional value not found in discovery>>
cidr_blocks = [
“10.0.0.0/16”,
]
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “iad-cloudmaa-vcn”
dns_label = “iadcloudmaavcn”
freeform_tags = {
}
#is_ipv6enabled = <<Optional value not found in discovery>>
}
|
必要的修改包括移除 export_ 、指派其他非重疊的 CIDR、顯示名稱,以及變更 DNS 標籤:resource oci_core_vcn phx-cloudmaa-vcn {
#cidr_block = <<Optional value not found in discovery>>
cidr_blocks = [
“10.10.0.0/16”,
]
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “phx-cloudmaa-vcn”
dns_label = “phxcloudmaavcn”
freeform_tags = {
}
#is_ipv6enabled = <<Optional value not found in discovery>>
}
|
NAT 閘道 |
resource oci_core_nat_gateway export_iadmaa-ngwy {
block_traffic = “false”
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = “iadmaa-ngwy”
freeform_tags = {
}
public_ip_id = “ocid1.publicip.oc1.iad.aaaaaaaagwkvnlh6y4irjubj63dm36mdsuig6zbc2oakgmssvifpprvx6kzq”
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括移除 export_ 、變更顯示名稱及 VCN 參照。resource oci_core_nat_gateway phxmaa-ngwy {
block_traffic = "false"
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phxmaa-ngwy"
freeform_tags = {
}
public_ip_id = "ocid1.publicip.oc1.iad.aaaaaaaagwkvnlh6y4irjubj63dm36mdsuig6zbc2oakgmssvifpprvx6kzq"
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
路由表格 |
resource oci_core_route_table export_iad-db-private-RT {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "iad-db-private-RT"
freeform_tags = {
}
route_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
network_entity_id = oci_core_nat_gateway.export_iadmaa-ngwy.id
}
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括移除 export_ 、變更路由表的名稱、顯示名稱和 VCN 參照。resource oci_core_route_table phx-db-private-RT {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phx-db-private-RT"
freeform_tags = {
}
route_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
network_entity_id = oci_core_nat_gateway.phxmaa-ngwy.id
}
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
安全清單 |
resource oci_core_security_list export_iad-db-private-seclist {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "iad-db-private-seclist"
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
freeform_tags = {
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
source = "10.0.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "22"
min = "22"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.0.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "1530"
min = "1521"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括移除 export_ 、變更安全清單的名稱及其顯示名稱、將每個輸入規則中 10.0.x.y 變更為 10.10.x.y 的 CIDR 區塊,以及變更 VCN 參照。保留 0.0.0.0/0 不變更。resource oci_core_security_list phx-db-private-seclist {
compartment_id = var.compartment_ocid
defined_tags = {
}
display_name = "phx-db-private-seclist"
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
egress_security_rules {
#description = <<Optional value not found in discovery>>
destination = "0.0.0.0/0"
destination_type = "CIDR_BLOCK"
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
freeform_tags = {
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "1"
source = "10.10.102.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
#tcp_options = <<Optional value not found in discovery>>
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "22"
min = "22"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
ingress_security_rules {
#description = <<Optional value not found in discovery>>
#icmp_options = <<Optional value not found in discovery>>
protocol = "6"
source = "10.10.103.0/24"
source_type = "CIDR_BLOCK"
stateless = "false"
tcp_options {
max = "1530"
min = "1521"
#source_port_range = <<Optional value not found in discovery>>
}
#udp_options = <<Optional value not found in discovery>>
}
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|
子網路 |
resource oci_core_subnet export_exadb-private-subnet-ad2 {
availability_domain = "LoSv:US-ASHBURN-AD-2"
cidr_block = "10.0.101.0/24"
compartment_id = var.compartment_ocid
defined_tags = {
"Oracle-Tags.CreatedBy" = "ocid1.saml2idp.oc1..aaaaaaaatilj7lqztsx6jehhm7k5374c5jxg6uuhzvdehgbiprb55gnyejba/<oci user name>"
"Oracle-Tags.CreatedOn" = "2020-03-13T18:50:55.371Z"
}
dhcp_options_id = oci_core_vcn.export_iad-cloudmaa-vcn.default_dhcp_options_id
display_name = "exadb-private-subnet-ad2"
dns_label = "exadbprivate"
freeform_tags = {
}
#ipv6cidr_block = <<Optional value not found in discovery>>
prohibit_internet_ingress = "true"
prohibit_public_ip_on_vnic = "true"
route_table_id = oci_core_route_table.export_iad-db-private-RT.id
security_list_ids = [
oci_core_security_list.export_siteguard-seclist.id,
oci_core_security_list.export_bastion-private-seclist.id,
oci_core_security_list.export_iad-db-private-seclist.id,
]
vcn_id = oci_core_vcn.export_iad-cloudmaa-vcn.id
}
|
修改包括移除出現的 "export_",將 CIDR 變更為鳳凰城區域 VCN 內的子網路,變更可用性網域,變更路由表和 VCN 參照。
resource oci_core_subnet exadb-private-subnet-ad1 {
availability_domain = "LoSv:US-PHOENIX-AD-1"
cidr_block = "10.10.101.0/24"
compartment_id = var.compartment_ocid
defined_tags = {
"Oracle-Tags.CreatedBy" = "ocid1.saml2idp.oc1..aaaaaaaatilj7lqztsx6jehhm7k5374c5jxg6uuhzvdehgbiprb55gnyejba/<oci user name>"
"Oracle-Tags.CreatedOn" = "2020-03-13T18:50:55.371Z"
}
dhcp_options_id = oci_core_vcn.phx-cloudmaa-vcn.default_dhcp_options_id
display_name = "exadb-private-subnet-ad1"
dns_label = "exadbprivate"
freeform_tags = {
}
#ipv6cidr_block = <<Optional value not found in discovery>>
prohibit_internet_ingress = "true"
prohibit_public_ip_on_vnic = "true"
route_table_id = oci_core_route_table.phx-db-private-RT.id
security_list_ids = [
oci_core_security_list.siteguard-seclist.id,
oci_core_security_list.bastion-private-seclist.id,
oci_core_security_list.phx-db-private-seclist.id,
]
vcn_id = oci_core_vcn.phx-cloudmaa-vcn.id
}
|