interface CfnClusterProps
Language | Type name |
---|---|
.NET | Amazon.CDK.AWS.EKS.CfnClusterProps |
Java | software.amazon.awscdk.services.eks.CfnClusterProps |
Python | aws_cdk.aws_eks.CfnClusterProps |
TypeScript | @aws-cdk/aws-eks » CfnClusterProps |
Properties for defining a CfnCluster
.
Example
// The code below shows an example of how to instantiate this type.
// The values are placeholders you should change.
import * as eks from '@aws-cdk/aws-eks';
const cfnClusterProps: eks.CfnClusterProps = {
resourcesVpcConfig: {
subnetIds: ['subnetIds'],
// the properties below are optional
endpointPrivateAccess: false,
endpointPublicAccess: false,
publicAccessCidrs: ['publicAccessCidrs'],
securityGroupIds: ['securityGroupIds'],
},
roleArn: 'roleArn',
// the properties below are optional
encryptionConfig: [{
provider: {
keyArn: 'keyArn',
},
resources: ['resources'],
}],
kubernetesNetworkConfig: {
ipFamily: 'ipFamily',
serviceIpv4Cidr: 'serviceIpv4Cidr',
serviceIpv6Cidr: 'serviceIpv6Cidr',
},
logging: {
clusterLogging: {
enabledTypes: [{
type: 'type',
}],
},
},
name: 'name',
outpostConfig: {
controlPlaneInstanceType: 'controlPlaneInstanceType',
outpostArns: ['outpostArns'],
// the properties below are optional
controlPlanePlacement: {
groupName: 'groupName',
},
},
tags: [{
key: 'key',
value: 'value',
}],
version: 'version',
};
Properties
Name | Type | Description |
---|---|---|
resources | IResolvable | Resources | The VPC configuration that's used by the cluster control plane. |
role | string | The Amazon Resource Name (ARN) of the IAM role that provides permissions for the Kubernetes control plane to make calls to AWS API operations on your behalf. |
encryption | IResolvable | IResolvable | Encryption [] | The encryption configuration for the cluster. |
kubernetes | IResolvable | Kubernetes | The Kubernetes network configuration for the cluster. |
logging? | IResolvable | Logging | The logging configuration for your cluster. |
name? | string | The unique name to give to your cluster. |
outpost | IResolvable | Outpost | An object representing the configuration of your local Amazon EKS cluster on an AWS Outpost. |
tags? | Cfn [] | The metadata that you apply to the cluster to assist with categorization and organization. |
version? | string | The desired Kubernetes version for your cluster. |
resourcesVpcConfig
Type:
IResolvable
|
Resources
The VPC configuration that's used by the cluster control plane.
Amazon EKS VPC resources have specific requirements to work properly with Kubernetes. For more information, see Cluster VPC Considerations and Cluster Security Group Considerations in the Amazon EKS User Guide . You must specify at least two subnets. You can specify up to five security groups, but we recommend that you use a dedicated security group for your cluster control plane.
Updates require replacement of the
SecurityGroupIds
andSubnetIds
sub-properties.
roleArn
Type:
string
The Amazon Resource Name (ARN) of the IAM role that provides permissions for the Kubernetes control plane to make calls to AWS API operations on your behalf.
For more information, see Amazon EKS Service IAM Role in the Amazon EKS User Guide .
encryptionConfig?
Type:
IResolvable
|
IResolvable
|
Encryption
[]
(optional)
The encryption configuration for the cluster.
kubernetesNetworkConfig?
Type:
IResolvable
|
Kubernetes
(optional)
The Kubernetes network configuration for the cluster.
logging?
Type:
IResolvable
|
Logging
(optional)
The logging configuration for your cluster.
name?
Type:
string
(optional)
The unique name to give to your cluster.
outpostConfig?
Type:
IResolvable
|
Outpost
(optional)
An object representing the configuration of your local Amazon EKS cluster on an AWS Outpost.
This object isn't available for clusters on the AWS cloud.
tags?
Type:
Cfn
[]
(optional)
The metadata that you apply to the cluster to assist with categorization and organization.
Each tag consists of a key and an optional value, both of which you define. Cluster tags don't propagate to any other resources associated with the cluster.
You must have the
eks:TagResource
andeks:UntagResource
permissions for your IAM principal to manage the AWS CloudFormation stack. If you don't have these permissions, there might be unexpected behavior with stack-level tags propagating to the resource during resource creation and update.
version?
Type:
string
(optional)
The desired Kubernetes version for your cluster.
If you don't specify a value here, the default version available in Amazon EKS is used.
The default version might not be the latest version available.