From 78c37329b4eb1767724579d50bdeb27064e934fd Mon Sep 17 00:00:00 2001 From: Eric D Date: Mon, 25 Sep 2023 17:04:52 -0400 Subject: [PATCH] added TF code for Azure Automation runbook --- quickstart/101-vm-auto-shutdown/main.tf | 215 +++++++++++++++++++ quickstart/101-vm-auto-shutdown/outputs.tf | 64 ++++++ quickstart/101-vm-auto-shutdown/providers.tf | 3 + quickstart/101-vm-auto-shutdown/readme.md | 42 ++++ quickstart/101-vm-auto-shutdown/variables.tf | 93 ++++++++ 5 files changed, 417 insertions(+) create mode 100644 quickstart/101-vm-auto-shutdown/main.tf create mode 100644 quickstart/101-vm-auto-shutdown/outputs.tf create mode 100644 quickstart/101-vm-auto-shutdown/providers.tf create mode 100644 quickstart/101-vm-auto-shutdown/readme.md create mode 100644 quickstart/101-vm-auto-shutdown/variables.tf diff --git a/quickstart/101-vm-auto-shutdown/main.tf b/quickstart/101-vm-auto-shutdown/main.tf new file mode 100644 index 000000000..3d3e96c47 --- /dev/null +++ b/quickstart/101-vm-auto-shutdown/main.tf @@ -0,0 +1,215 @@ +# Resource Group +resource "azurerm_resource_group" "rg" { + location = var.resource_group_location + name = "${random_pet.prefix.id}-rg" +} + +# Virtual Network +resource "azurerm_virtual_network" "my_terraform_network" { + name = "${random_pet.prefix.id}-vnet" + address_space = ["10.0.0.0/16"] + location = azurerm_resource_group.rg.location + resource_group_name = azurerm_resource_group.rg.name +} + +# Subnet +resource "azurerm_subnet" "my_terraform_subnet" { + name = "${random_pet.prefix.id}-subnet" + resource_group_name = azurerm_resource_group.rg.name + virtual_network_name = azurerm_virtual_network.my_terraform_network.name + address_prefixes = ["10.0.1.0/24"] +} + +# Public IP +resource "azurerm_public_ip" "my_terraform_public_ip" { + name = "${random_pet.prefix.id}-public-ip" + location = azurerm_resource_group.rg.location + resource_group_name = azurerm_resource_group.rg.name + allocation_method = "Dynamic" +} + +# Network Security Group and rules +resource "azurerm_network_security_group" "my_terraform_nsg" { + name = "${random_pet.prefix.id}-nsg" + location = azurerm_resource_group.rg.location + resource_group_name = azurerm_resource_group.rg.name + + security_rule { + name = "RDP" + priority = 1000 + direction = "Inbound" + access = "Allow" + protocol = "*" + source_port_range = "*" + destination_port_range = "3389" + source_address_prefix = "*" + destination_address_prefix = "*" + } + + security_rule { + name = "web" + priority = 1001 + direction = "Inbound" + access = "Allow" + protocol = "Tcp" + source_port_range = "*" + destination_port_range = "80" + source_address_prefix = "*" + destination_address_prefix = "*" + } +} + +# Network Interface +resource "azurerm_network_interface" "my_terraform_nic" { + name = "${random_pet.prefix.id}-nic" + location = azurerm_resource_group.rg.location + resource_group_name = azurerm_resource_group.rg.name + + ip_configuration { + name = "my_nic_configuration" + subnet_id = azurerm_subnet.my_terraform_subnet.id + private_ip_address_allocation = "Dynamic" + public_ip_address_id = azurerm_public_ip.my_terraform_public_ip.id + } +} + +# Connect the security group to the network interface +resource "azurerm_network_interface_security_group_association" "example" { + network_interface_id = azurerm_network_interface.my_terraform_nic.id + network_security_group_id = azurerm_network_security_group.my_terraform_nsg.id +} + +# Storage account for boot diagnostics +resource "azurerm_storage_account" "my_storage_account" { + name = "diag${random_id.random_id.hex}" + location = azurerm_resource_group.rg.location + resource_group_name = azurerm_resource_group.rg.name + account_tier = "Standard" + account_replication_type = "LRS" +} + +# Virtual Machine +resource "azurerm_windows_virtual_machine" "main" { + name = "${var.prefix}-vm" + admin_username = "azureuser" + admin_password = random_password.password.result + location = azurerm_resource_group.rg.location + resource_group_name = azurerm_resource_group.rg.name + network_interface_ids = [azurerm_network_interface.my_terraform_nic.id] + size = "Standard_DS1_v2" + + os_disk { + name = "myOsDisk" + caching = "ReadWrite" + storage_account_type = "Premium_LRS" + } + + source_image_reference { + publisher = "MicrosoftWindowsServer" + offer = "WindowsServer" + sku = "2022-datacenter-azure-edition" + version = "latest" + } + + boot_diagnostics { + storage_account_uri = azurerm_storage_account.my_storage_account.primary_blob_endpoint + } +} + +# # Install IIS web server to the virtual machine +# resource "azurerm_virtual_machine_extension" "web_server_install" { +# name = "${random_pet.prefix.id}-wsi" +# virtual_machine_id = azurerm_windows_virtual_machine.main.id +# publisher = "Microsoft.Compute" +# type = "CustomScriptExtension" +# type_handler_version = "1.8" +# auto_upgrade_minor_version = true + +# settings = <