Files
CloudRouterAdvanced/terraform/prod.auto.tfvars.example
T

29 lines
1.4 KiB
Plaintext
Raw Normal View History

# Example of the *.auto.tfvars overlay pattern for real credentials.
#
# terraform.tfvars stays a committed, anonymized template. To deploy with
# real credentials (e.g. from an openrc.sh for a service account), copy this
# file to prod.auto.tfvars (gitignored - see .gitignore) and fill in real
# values. Terraform auto-loads *.auto.tfvars in addition to terraform.tfvars,
# so this layers on top of the template without ever modifying/committing it.
#
# Mapping from an OpenStack-style openrc.sh:
# OS_AUTH_URL -> auth_url
# OS_USERNAME -> username
# OS_PASSWORD -> password
# OS_PROJECT_ID -> project_id
# OS_REGION_NAME -> region
# OS_USER_DOMAIN_NAME -> user_domain_name
auth_url = "https://infra.mail.ru:35357/v3/"
username = "svc-<project_id>-svc-deployer"
password = "<real password - never commit this>"
project_id = "<project_id>"
region = "RegionOne"
user_domain_name = "service-users"
# Optional: Nova keypairs are per-user, not per-project - a keypair uploaded
# under a different account (e.g. your personal VK Cloud login) is invisible
# to a service account. Set this to have Terraform register var.ssh_key_name
# under the deploying account from this public key. Leave unset if a keypair
# with that name already exists under the deploying account.
ssh_public_key = "ssh-ed25519 AAAA... or ssh-rsa AAAA... your-public-key-content"