Interface ClusterOptions
- All Superinterfaces:
CommonClusterOptions
,software.amazon.jsii.JsiiSerializable
- All Known Subinterfaces:
ClusterProps
,FargateClusterProps
- All Known Implementing Classes:
ClusterOptions.Jsii$Proxy
,ClusterProps.Jsii$Proxy
,FargateClusterProps.Jsii$Proxy
Example:
// The code below shows an example of how to instantiate this type. // The values are placeholders you should change. import software.amazon.awscdk.services.ec2.*; import software.amazon.awscdk.services.eks.*; import software.amazon.awscdk.services.iam.*; import software.amazon.awscdk.services.kms.*; import software.amazon.awscdk.services.lambda.*; import software.amazon.awscdk.core.*; AlbControllerVersion albControllerVersion; EndpointAccess endpointAccess; Key key; KubernetesVersion kubernetesVersion; LayerVersion layerVersion; Object policy; Role role; SecurityGroup securityGroup; Size size; Subnet subnet; SubnetFilter subnetFilter; Vpc vpc; ClusterOptions clusterOptions = ClusterOptions.builder() .version(kubernetesVersion) // the properties below are optional .albController(AlbControllerOptions.builder() .version(albControllerVersion) // the properties below are optional .policy(policy) .repository("repository") .build()) .clusterHandlerEnvironment(Map.of( "clusterHandlerEnvironmentKey", "clusterHandlerEnvironment")) .clusterHandlerSecurityGroup(securityGroup) .clusterName("clusterName") .coreDnsComputeType(CoreDnsComputeType.EC2) .endpointAccess(endpointAccess) .kubectlEnvironment(Map.of( "kubectlEnvironmentKey", "kubectlEnvironment")) .kubectlLayer(layerVersion) .kubectlMemory(size) .mastersRole(role) .onEventLayer(layerVersion) .outputClusterName(false) .outputConfigCommand(false) .outputMastersRoleArn(false) .placeClusterHandlerInVpc(false) .prune(false) .role(role) .secretsEncryptionKey(key) .securityGroup(securityGroup) .serviceIpv4Cidr("serviceIpv4Cidr") .vpc(vpc) .vpcSubnets(List.of(SubnetSelection.builder() .availabilityZones(List.of("availabilityZones")) .onePerAz(false) .subnetFilters(List.of(subnetFilter)) .subnetGroupName("subnetGroupName") .subnetName("subnetName") .subnets(List.of(subnet)) .subnetType(SubnetType.ISOLATED) .build())) .build();
-
Nested Class Summary
Modifier and TypeInterfaceDescriptionstatic final class
A builder forClusterOptions
static final class
An implementation forClusterOptions
-
Method Summary
Modifier and TypeMethodDescriptionstatic ClusterOptions.Builder
builder()
default AlbControllerOptions
Install the AWS Load Balancer Controller onto the cluster.Custom environment variables when interacting with the EKS endpoint to manage the cluster lifecycle.default ISecurityGroup
A security group to associate with the Cluster Handler's Lambdas.default CoreDnsComputeType
Controls the "eks.amazonaws.com/compute-type" annotation in the CoreDNS configuration on your cluster to determine which compute type to use for CoreDNS.default EndpointAccess
Configure access to the Kubernetes API server endpoint..Environment variables for the kubectl execution.default ILayerVersion
An AWS Lambda Layer which includeskubectl
, Helm and the AWS CLI.default Size
Amount of memory to allocate to the provider's lambda function.default IRole
An IAM role that will be added to thesystem:masters
Kubernetes RBAC group.default ILayerVersion
An AWS Lambda Layer which includes the NPM dependencyproxy-agent
.default Boolean
Determines whether a CloudFormation output with the ARN of the "masters" IAM role will be synthesized (ifmastersRole
is specified).default Boolean
If set to true, the cluster handler functions will be placed in the private subnets of the cluster vpc, subject to thevpcSubnets
selection strategy.default Boolean
getPrune()
Indicates whether Kubernetes resources added throughaddManifest()
can be automatically pruned.default IKey
KMS secret for envelope encryption for Kubernetes secrets.default String
The CIDR block to assign Kubernetes service IP addresses from.Methods inherited from interface software.amazon.awscdk.services.eks.CommonClusterOptions
getClusterName, getOutputClusterName, getOutputConfigCommand, getRole, getSecurityGroup, getVersion, getVpc, getVpcSubnets
Methods inherited from interface software.amazon.jsii.JsiiSerializable
$jsii$toJson
-
Method Details
-
getAlbController
Install the AWS Load Balancer Controller onto the cluster.Default: - The controller is not installed.
-
getClusterHandlerEnvironment
Custom environment variables when interacting with the EKS endpoint to manage the cluster lifecycle.Default: - No environment variables.
-
getClusterHandlerSecurityGroup
A security group to associate with the Cluster Handler's Lambdas.The Cluster Handler's Lambdas are responsible for calling AWS's EKS API.
Requires
placeClusterHandlerInVpc
to be set to true.Default: - No security group.
-
getCoreDnsComputeType
Controls the "eks.amazonaws.com/compute-type" annotation in the CoreDNS configuration on your cluster to determine which compute type to use for CoreDNS.Default: CoreDnsComputeType.EC2 (for `FargateCluster` the default is FARGATE)
-
getEndpointAccess
Configure access to the Kubernetes API server endpoint..Default: EndpointAccess.PUBLIC_AND_PRIVATE
-
getKubectlEnvironment
Environment variables for the kubectl execution.Only relevant for kubectl enabled clusters.
Default: - No environment variables.
-
getKubectlLayer
An AWS Lambda Layer which includeskubectl
, Helm and the AWS CLI.By default, the provider will use the layer included in the "aws-lambda-layer-kubectl" SAR application which is available in all commercial regions.
To deploy the layer locally, visit https://github.com/aws-samples/aws-lambda-layer-kubectl/blob/master/cdk/README.md for instructions on how to prepare the .zip file and then define it in your app as follows:
LayerVersion layer = LayerVersion.Builder.create(this, "kubectl-layer") .code(Code.fromAsset(String.format("%s/layer.zip", __dirname))) .compatibleRuntimes(List.of(Runtime.PROVIDED)) .build();
Default: - the layer provided by the `aws-lambda-layer-kubectl` SAR app.
-
getKubectlMemory
Amount of memory to allocate to the provider's lambda function.Default: Size.gibibytes(1)
-
getMastersRole
An IAM role that will be added to thesystem:masters
Kubernetes RBAC group.Default: - a role that assumable by anyone with permissions in the same account will automatically be defined
-
getOnEventLayer
An AWS Lambda Layer which includes the NPM dependencyproxy-agent
.This layer is used by the onEvent handler to route AWS SDK requests through a proxy.
By default, the provider will use the layer included in the "aws-lambda-layer-node-proxy-agent" SAR application which is available in all commercial regions.
To deploy the layer locally define it in your app as follows:
LayerVersion layer = LayerVersion.Builder.create(this, "proxy-agent-layer") .code(Code.fromAsset(String.format("%s/layer.zip", __dirname))) .compatibleRuntimes(List.of(Runtime.NODEJS_14_X)) .build();
Default: - a layer bundled with this module.
-
getOutputMastersRoleArn
Determines whether a CloudFormation output with the ARN of the "masters" IAM role will be synthesized (ifmastersRole
is specified).Default: false
-
getPlaceClusterHandlerInVpc
If set to true, the cluster handler functions will be placed in the private subnets of the cluster vpc, subject to thevpcSubnets
selection strategy.Default: false
-
getPrune
Indicates whether Kubernetes resources added throughaddManifest()
can be automatically pruned.When this is enabled (default), prune labels will be allocated and injected to each resource. These labels will then be used when issuing the
kubectl apply
operation with the--prune
switch.Default: true
-
getSecretsEncryptionKey
KMS secret for envelope encryption for Kubernetes secrets.Default: - By default, Kubernetes stores all secret object data within etcd and all etcd volumes used by Amazon EKS are encrypted at the disk-level using AWS-Managed encryption keys.
-
getServiceIpv4Cidr
The CIDR block to assign Kubernetes service IP addresses from.Default: - Kubernetes assigns addresses from either the 10.100.0.0/16 or 172.20.0.0/16 CIDR blocks
-
builder
- Returns:
- a
ClusterOptions.Builder
ofClusterOptions
-