mvm-s3 is a separate VK Cloud project whose admin pre-created two private networks/subnets with a known IP per router. Unify project-managed (private_network_cidrs, IPAM-assigned) and externally-owned (router_networks, fixed-IP) private interfaces into one local.router_interfaces so both share the existing port/dynamic-network mechanism instead of duplicating it. Switch from implicit *.auto.tfvars loading to explicit -var-file per environment (now two share this terraform/ directory) plus a dedicated Terraform workspace for mvm-s3, so PROD's state and credentials are never touched by mvm-s3 applies. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01GHfG9FgpMrGdrvC1QUewTw
19 lines
700 B
HCL
19 lines
700 B
HCL
username = "user@domain.local"
|
|
password = "DemoUserPassw"
|
|
project_id = "XXXXXd424998422XXXXXf13ac9XXXXX"
|
|
ssh_key_name = "mcs_ru"
|
|
|
|
# Adaptive router VM count (has a default - see variables.tf - uncomment to override).
|
|
router_count = 4
|
|
# router_availability_zones = ["ME1"]
|
|
|
|
# One CIDR per private network that router VMs get an interface into.
|
|
# No default - must be supplied explicitly. List order determines eth1..ethN.
|
|
# /28 (not /29): VKCS auto-creates its own service ports on each network
|
|
# (observed: a "network:dns" port) that consume addresses from the pool
|
|
# too, and a /29 (5 usable) proved too tight in practice.
|
|
private_network_cidrs = [
|
|
"10.90.0.0/28",
|
|
"10.90.0.16/28",
|
|
]
|