diff --git a/main.tf b/main.tf index 9b32ce06b..7af7abc79 100644 --- a/main.tf +++ b/main.tf @@ -14,11 +14,61 @@ data "aws_ami" "app_ami" { owners = ["979382823631"] # Bitnami } + +data "aws_vpc" "default" { + default = true +} + +resource "aws_instance" "blog" { + ami = data.aws_ami.app_ami.id + instance_type = var.instance_type + vpc_security_group_ids = [aws_security_group.blog.id] +} + resource "aws_instance" "web" { ami = data.aws_ami.app_ami.id - instance_type = "t3.nano" + instance_type = var.instance_type + + + tags = { + Name = "Learning Terraform" + } +} +resource "aws_security_group" "blog" { + name = "blog" + description = "Allow http and https in. Allow anything out." tags = { - Name = "HelloWorld" + Terraform = "true" } + vpc_id = data.aws_vpc.default.id +} + +resource "aws_security_group_rule" "blog_http_in" { + type = "ingress" + from_port = 80 + to_port = 80 + protocol = "tcp" + cidr_blocks = ["0.0.0.0/0"] + security_group_id = aws_security_group.blog.id +} + + +resource "aws_security_group_rule" "blog_https_in" { + type = "ingress" + from_port = 443 + to_port = 443 + protocol = "tcp" + cidr_blocks = ["0.0.0.0/0"] + security_group_id = aws_security_group.blog.id +} + + +resource "aws_security_group_rule" "blog_everything_out" { + type = "egress" + from_port = 0 + to_port = 0 + protocol = "-1" + cidr_blocks = ["0.0.0.0/0"] + security_group_id = aws_security_group.blog.id } diff --git a/outputs.tf b/outputs.tf index b35171bef..e3f582a21 100644 --- a/outputs.tf +++ b/outputs.tf @@ -1,7 +1,15 @@ -#output "instance_ami" { -# value = aws_instance.web.ami -#} +output "instance_ami" { -#output "instance_arn" { -# value = aws_instance.web.arn -#} + value = aws_instance.blog.ami +} + +output "instance_arn" { + value = aws_instance.blog.arn + + value = aws_instance.web.ami +} + +output "instance_arn" { + value = aws_instance.web.arn + +} diff --git a/variables.tf b/variables.tf index c750667e0..7850d7a5f 100644 --- a/variables.tf +++ b/variables.tf @@ -1,4 +1,7 @@ -#variable "instance_type" { -# description = "Type of EC2 instance to provision" -# default = "t3.nano" -#} +variable "instance_type" { + description = "Type of EC2 instance to provision" + default = "t3.nano" + +} +======= +}