terraform-azurerm-caf-enterprise-scale
cloud-guardrails
terraform-azurerm-caf-enterprise-scale | cloud-guardrails | |
---|---|---|
6 | 2 | |
749 | 177 | |
1.3% | 0.6% | |
7.8 | 0.0 | |
2 days ago | 6 months ago | |
HCL | HCL | |
MIT License | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
terraform-azurerm-caf-enterprise-scale
-
Terraforming Azure, where to start?
I'm planning to use the official landing zone module developped by MSFT, but it's a big bite. https://github.com/Azure/terraform-azurerm-caf-enterprise-scale/wiki
-
Build greenfield Azure landing zones with Terraform in less than 1 hour
u/Ok-Inspection3886 Great question! Under the hood we use the Azure landing zones terraform module which is recommended by Azure when using Terraform if you're interested in "Platform Landing Zones". The module itself deploys custom policies and also allows users to add additional custom policies relatively easy.
-
What problems do you have when building landing zones?
Honestly, https://github.com/Azure/terraform-azurerm-caf-enterprise-scale does a pretty good job at deploying a landing zone-architecture, is active and maintained. I wouldnt try to re-invent the work Microsoft are doing themself but rather contribute to that project and build tools around the existing module. An issue I often hear from people is that they have a hard time visualizing which policies are added on parent management groups and how to exclude/adjust them.
-
Engineers Who Redesigned and Successfully Rebuilt an Already Established, Painfully Disorganized and Manually Built Cloud Infrastructure - How did you do it?
To add to the links, azure released their own version of terraformer (I've never used it myself but if your deployments are on azure it may fill the gaps where terraformer fails) https://techcommunity.microsoft.com/t5/azure-tools-blog/announcing-azure-terrafy-and-azapi-terraform-provider-previews/ba-p/3270937 also https://github.com/Azure/terraform-azurerm-caf-enterprise-scale/tree/main covers creating terraform to create stuff like policies not managed by the standard azurerm terraform module. Best of luck!
-
Cosmos DB secure Network Configuration
The azure environment I'm working on has the Terraform Module for Cloud Adoption Framework Enterprise-scale implemented, so how is the right pattern to connect the cosmos DB with the Hub VNet and also be able to receive data from external sources?
-
Large scale deployment best practices
Microsoft provides a an excellent enterprise scale terraform setup here: https://github.com/Azure/terraform-azurerm-caf-enterprise-scale
cloud-guardrails
What are some alternatives?
Enterprise-Scale - The Azure Landing Zones (Enterprise-Scale) architecture provides prescriptive guidance coupled with Azure best practices, and it follows design principles across the critical design areas for organizations to define their Azure architecture
cloud-custodian - Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources
typhoon - Minimal and free Kubernetes distribution with Terraform
caf-terraform-landingzones - Azure Terraform SRE framework
terraformer - CLI tool to generate terraform files from existing infrastructure (reverse Terraform). Infrastructure to Code
terraform-azurerm-vmseries-modules - Terraform Reusable Modules for VM-Series on Azure
checkov - Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
terraform-kubestack - Kubestack is a framework for Kubernetes platform engineering teams to define the entire cloud native stack in one Terraform code base and continuously evolve the platform safely through GitOps.
terraform-azurerm-caf - Terraform supermodule for the Terraform platform engineering for Azure
cloudoffice - Cloudoffice deploys Nextcloud and OnlyOffice automatically with LetsEncrypt HTTPS certificates. Text and video instructions included. Six compatible cloud providers, or via Ubuntu/Raspberry Pi. Cloud provider deployments include low-cost object storage integration (e.g. S3).