AWS Elastic Load Balancing V2 Deployment with CloudFormation: Difference between revisions

From NovaOrdis Knowledge Base
Jump to navigation Jump to search
 
(9 intermediate revisions by the same user not shown)
Line 1: Line 1:
=External=
=External=


* [https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/cfn-reference-elasticloadbalancingv2.html Elastic Load Balancing V2 Resource Types Reference]
* [https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/AWS_ElasticLoadBalancingV2.html Elastic Load Balancing V2 Resource Types Reference]


=Internal=
=Internal=
Line 12: Line 12:


==AWS::ElasticLoadBalancingV2::LoadBalancer==
==AWS::ElasticLoadBalancingV2::LoadBalancer==
{{External|[https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-elasticloadbalancingv2-loadbalancer.html AWS::ElasticLoadBalancingV2::LoadBalancer]}}


  Resources:
  Resources:
Line 33: Line 35:
       [[AWS_Elastic_Load_Balancing_Concepts#Subnet_Mapping|SubnetMappings]]:
       [[AWS_Elastic_Load_Balancing_Concepts#Subnet_Mapping|SubnetMappings]]:
         - ...
         - ...
       [[AWS_Elastic_Load_Balancing_Concepts#Application_Load_Balancer_Configuration|SecurityGroups]]:
       [[AWS_Elastic_Load_Balancing_Concepts#Application_Load_Balancer_and_Security_Groups|SecurityGroups]]:
         - some-security-group-for-application-load-balancer
         - some-security-group-for-application-load-balancer
===Create an Application Load Balancer===
<syntaxhighlight lang='yaml'>
Resources:
  InternalALB:
    Type: AWS::ElasticLoadBalancingV2::LoadBalancer
    Properties:
      Name: !Sub ${EnvironmentName}-alb
      Scheme: 'internal'
      Type: 'application'
      IpAddressType: 'ipv4'
      LoadBalancerAttributes:
        - Key: access_logs.s3.enabled
          Value: false
      Subnets:
        - !Ref BlueSubnet
        - !Ref RedSubnet
      SecurityGroups:
        - !Ref InternalALBSecurityGroup
</syntaxhighlight>
===Create a Network Load Balancer===


==AWS::ElasticLoadBalancingV2::TargetGroup==
==AWS::ElasticLoadBalancingV2::TargetGroup==
Line 71: Line 96:
       [[AWS_Elastic_Load_Balancing_Concepts#Healthy_Threshold_Count|HealthyThresholdCount]]: 2
       [[AWS_Elastic_Load_Balancing_Concepts#Healthy_Threshold_Count|HealthyThresholdCount]]: 2
       [[AWS_Elastic_Load_Balancing_Concepts#Unhealthy_Threshold_Count|UnhealthyThresholdCount]]: 10
       [[AWS_Elastic_Load_Balancing_Concepts#Unhealthy_Threshold_Count|UnhealthyThresholdCount]]: 10
       [[AWS_Elastic_Load_Balancing_Concepts#Health_Check_Path|HealthCheckPath]]: '/myservice/actuator/health'
       [[AWS_Elastic_Load_Balancing_Concepts#Health_Check_Path|HealthCheckPath]]: '/actuator/health'


==AWS::ElasticLoadBalancingV2::Listener==
==AWS::ElasticLoadBalancingV2::Listener==
Line 89: Line 114:


===Application Load Balancer Listener===
===Application Load Balancer Listener===
<font color=darkgray>TODO</font>
 
  Resources:
  Resources:
  LoadBalancerListener:
  LoadBalancerListener:
    Type: AWS::ElasticLoadBalancingV2::Listener
    Type: AWS::ElasticLoadBalancingV2::Listener
    DependsOn:
    Properties:
      - TargetGroup
      LoadBalancerArn: !Ref ApplicationkLoadBalancerArn
    Properties:
      [[AWS_Elastic_Load_Balancing_Concepts#Listener_Port|Port]]: !Ref LoadBalancerPort
      DefaultActions:
      [[AWS_Elastic_Load_Balancing_Concepts#Listener_Protocol|Protocol]]: HTTP
        - TargetGroupArn: !Ref 'TargetGroup'
      [[AWS_Elastic_Load_Balancing_Concepts#Default_Listener_Rule|DefaultActions]]:
          Type: 'forward'
        - TargetGroupArn: !Ref TargetGroup
      LoadBalancerArn:
          [[AWS_Elastic_Load_Balancing_Concepts#Action_Type|Type]]: 'forward'
        Fn::ImportValue: !Join [':', [!Ref 'DeploymentStackName', 'ServiceALB']]
      Port: 10002
      Protocol: HTTP

Latest revision as of 16:41, 30 April 2019

External

Internal

Resource Types

AWS::ElasticLoadBalancingV2::LoadBalancer

AWS::ElasticLoadBalancingV2::LoadBalancer
Resources:
  ALoadBalancer:
    Type: AWS::ElasticLoadBalancingV2::LoadBalancer
    Properties:
      Name: blue
      Scheme: 'internet-facing'|'internal'
      Type: 'application'|'network'
      IpAddressType: 'ipv4'
      LoadBalancerAttributes:
        - Key: 'access_logs.s3.enabled'
          Value: true|false
        - Key: 'access_logs.s3.bucket'
          Value: ...
        - Key: 'access_logs.s3.prefix'
          Value: ...
      Subnets:
        - blue-subnet-id
        - red-subnet-id
      SubnetMappings:
        - ...
      SecurityGroups:
        - some-security-group-for-application-load-balancer

Create an Application Load Balancer

Resources:
  InternalALB:
    Type: AWS::ElasticLoadBalancingV2::LoadBalancer
    Properties:
      Name: !Sub ${EnvironmentName}-alb
      Scheme: 'internal'
      Type: 'application'
      IpAddressType: 'ipv4'
      LoadBalancerAttributes:
        - Key: access_logs.s3.enabled
          Value: false
      Subnets:
        - !Ref BlueSubnet
        - !Ref RedSubnet
      SecurityGroups:
        - !Ref InternalALBSecurityGroup

Create a Network Load Balancer

AWS::ElasticLoadBalancingV2::TargetGroup

Network Load Balancer TargetGroup

Resources:
  TargetGroup:
    Type: AWS::ElasticLoadBalancingV2::TargetGroup
    Properties:
      Name: !Ref ProjectID
      VpcId: !Ref VPCId
      Protocol: TCP
      Port: !Ref Port
      TargetType: ip
      HealthCheckProtocol: TCP
      HealthCheckIntervalSeconds: 10
      HealthCheckTimeoutSeconds: 10
      HealthyThresholdCount: 3
      UnhealthyThresholdCount: 3

Application Load Balancer TargetGroup

Resources:
 TargetGroup:
    Type: AWS::ElasticLoadBalancingV2::TargetGroup
    Properties:
      Name: !Ref ProjectID
      VpcId: !Ref VPCId
      Protocol: HTTP
      Port: !Ref Port
      TargetType: ip
      HealthCheckProtocol: HTTP
      HealthCheckIntervalSeconds: 60
      HealthCheckTimeoutSeconds: 5
      HealthyThresholdCount: 2
      UnhealthyThresholdCount: 10
      HealthCheckPath: '/actuator/health'

AWS::ElasticLoadBalancingV2::Listener

Network Load Balancer Listener

Resources:
  LoadBalancerListener:
    Type: AWS::ElasticLoadBalancingV2::Listener
    Properties:
      LoadBalancerArn: !Ref LoadBalancerArn
      Port: !Ref NetworkLoadBalancerPort
      Protocol: TCP
      DefaultActions:
        - TargetGroupArn: !Ref TargetGroup
          Type: 'forward'

Application Load Balancer Listener

Resources:
 LoadBalancerListener:
   Type: AWS::ElasticLoadBalancingV2::Listener
   Properties:
     LoadBalancerArn: !Ref ApplicationkLoadBalancerArn
     Port: !Ref LoadBalancerPort
     Protocol: HTTP
     DefaultActions:
       - TargetGroupArn: !Ref TargetGroup
         Type: 'forward'