apiVersion: eksctl.io/v1alpha5
kind: ClusterConfig
metadata:
name: wsc-prod-cluster
version: "1.29"
region: ap-northeast-2
cloudWatch:
clusterLogging:
enableTypes: ["*"]
iam:
withOIDC: true
serviceAccounts:
- metadata:
name: aws-load-balancer-controller
namespace: kube-system
wellKnownPolicies:
awsLoadBalancerController: true
- metadata:
name: cert-manager
namespace: cert-manager
wellKnownPolicies:
certManager: true
vpc:
securityGroup: sg_id
subnets:
private:
ap-northeast-2a: { id: private_a }
ap-northeast-2b: { id: private_b }
managedNodeGroups:
- name: wsc-prod-nodegroup
labels: { app: prod }
instanceName: wsc-prod-nodegroup
instanceType: m5.large
desiredCapacity: 2
minSize: 2
maxSize: 20
privateNetworking: true
#!/bin/bash
private_a=$(aws ec2 describe-subnets --filters "Name=tag:Name,Values=wsc-prod-workload-sn-a" --query "Subnets[].SubnetId[]" --output text)
private_b=$(aws ec2 describe-subnets --filters "Name=tag:Name,Values=wsc-prod-workload-sn-c" --query "Subnets[].SubnetId[]" --output text)
sg_id=$(aws ec2 describe-security-groups --query "SecurityGroups[?GroupName=='wsc-controlplan-sg'].GroupId" --output text)
sed -i "s|private_a|$private_a|g" cluster.yaml
sed -i "s|private_b|$private_b|g" cluster.yaml
sed -i "s|sg_id|$sg_id|g" cluster.yaml
eksctl create cluster -f cluster.yaml
aws eks --region ap-northeast-2 update-kubeconfig --name wsc-prod-cluster
kubectl create ns wsc-prod