apiVersion: eksctl.io/v1alpha5
kind: ClusterConfig

metadata:
  name: wsc-prod-cluster
  version: "1.29"
  region: ap-northeast-2

cloudWatch:
  clusterLogging:
    enableTypes: ["*"]

iam:
  withOIDC: true
  serviceAccounts:
  - metadata:
      name: aws-load-balancer-controller
      namespace: kube-system
    wellKnownPolicies:
      awsLoadBalancerController: true
  - metadata:
      name: cert-manager
      namespace: cert-manager
    wellKnownPolicies:
      certManager: true

vpc:
  securityGroup: sg_id
  subnets:
    private:
      ap-northeast-2a: { id: private_a }
      ap-northeast-2b: { id: private_b }
      
managedNodeGroups:
  - name: wsc-prod-nodegroup
    labels: { app: prod }
    instanceName: wsc-prod-nodegroup
    instanceType: m5.large
    desiredCapacity: 2
    minSize: 2
    maxSize: 20
    privateNetworking: true
#!/bin/bash
private_a=$(aws ec2 describe-subnets --filters "Name=tag:Name,Values=wsc-prod-workload-sn-a" --query "Subnets[].SubnetId[]" --output text)
private_b=$(aws ec2 describe-subnets --filters "Name=tag:Name,Values=wsc-prod-workload-sn-c" --query "Subnets[].SubnetId[]" --output text)
sg_id=$(aws ec2 describe-security-groups --query "SecurityGroups[?GroupName=='wsc-controlplan-sg'].GroupId" --output text)

sed -i "s|private_a|$private_a|g" cluster.yaml
sed -i "s|private_b|$private_b|g" cluster.yaml
sed -i "s|sg_id|$sg_id|g" cluster.yaml
eksctl create cluster -f cluster.yaml
aws eks --region ap-northeast-2 update-kubeconfig --name wsc-prod-cluster
kubectl create ns wsc-prod