Terraform: saída do módulo

Oct 30 2020

Temos três espaços de trabalho em app.terraform.io,

  • TESTE
  • DEV
  • PRÓ

Esses espaços de trabalho têm variáveis.

Eu obtenho o valor de com essas variáveis ​​com ...

variable "environment" {}

Quero usar essa variável para selecionar quais recursos ou módulos carregam.

resource "aws_directory_service_directory" "ds" {
  count = "${var.environment == "TEST" ? 0 : 1}"
  
  name       = "example.com"
  short_name = "example"
  password   = "******"
  type       = "MicrosoftAD"
}

Isso funciona, mas ...

A saída normal para este recurso é ...

output id {
  description = "The ID of the directory"
  value       = aws_directory_service_directory.ds.id
}

output access_url {
  description = "The access URL for the directory"
  value       = aws_directory_service_directory.ds.access_url
}

output dns_ip_addresses {
  description = "A list of IP addresses of the DNS servers for the directory or connector"
  value       = aws_directory_service_directory.ds.dns_ip_addresses
}

output security_group_id {
  description = "The ID of the security group created by the directory"
  value       = aws_directory_service_directory.ds.security_group_id
}

Mas se eu usar o atributo de contagem, a saída dela falha com ...

Because aws_directory_service_directory.ds has "count" set, its attributes
must be accessed on specific instances.

For example, to correlate with indices of a referring resource, use:
    aws_directory_service_directory.ds[count.index]

mixture of literal strings and interpolations. This deprecation applies only
to templates that consist entirely of a single interpolation sequence.


Error: Missing resource instance key

  on outputs.tf line 51, in output "security_group_id":
  51:   value       = aws_directory_service_directory.ds.security_group_id

Because aws_directory_service_directory.ds has "count" set, its attributes
must be accessed on specific instances.

For example, to correlate with indices of a referring resource, use:
    aws_directory_service_directory.ds[count.index]

Qual seria a saída correta?

Eu tentei:

output id {
  description = "The ID of the directory"
  value       = aws_directory_service_directory.ds[0].id
}

e:

output id {
  description = "The ID of the directory"
  value       = aws_directory_service_directory.ds[1].id
}

Mas não funciona (nem)

  on outputs.tf line 36, in output "id":
  36:   value       = aws_directory_service_directory.ds[0].id
    |----------------
    | aws_directory_service_directory.ds is empty tuple

The given key does not identify an element in this collection value.

Error: Invalid index

  on outputs.tf line 36, in output "id":
  36:   value       = aws_directory_service_directory.ds[1].id
    |----------------
    | aws_directory_service_directory.ds is tuple with 1 element

The given key does not identify an element in this collection value.

Eu tentei ver como isso é feito, por exemplo https://github.com/terraform-aws-modules/terraform-aws-vpc

output "vpc_id" {
  description = "The ID of the VPC"
  value       = concat(aws_vpc.this.*.id, [""])[0]
}

então ...

output id {
  description = "The ID of the directory"
  value       = concat(aws_directory_service_directory.*.id, [""])[0]
}

mas ...

Error: Invalid reference

  on outputs.tf line 36, in output "id":
  36:   value       = concat(aws_directory_service_directory.*.id, [""])[0]

A reference to a resource type must be followed by at least one attribute
access, specifying the resource name.

Respostas

3 BinaryMonster Oct 30 2020 at 09:49

Bem, nada complexo, é apenas que a saída está procurando o recurso que não foi criado, pois o terraform ainda está se referindo a esse recurso devido ao qual está gerando um erro.

Embora existam várias maneiras de lidar com esse problema, uma delas é concatenar todos os recursos como lista em uma etapa e recuperar um único elemento usando funções integradas do terraform.

Sua saída deve ser algo assim quando você estiver usando a contagem como uma condição para criar recursos. Se o recurso for criado, a saída será a id do recurso. Quando a contagem é zero, a saída estará vazia sem erros.

output id {
  description = "The ID of the directory"
  value       = element(concat(aws_directory_service_directory.ds.*.id, list("")), 0)
}