This repository builds a container image with a minimal set of tools required to apply Terraform automation.
The container includes the following:
- bash
- terraform cli
- terragrunt cli
- git cli
- jq cli
- yq v4 cli
Warning: The material contained in this repository has not been thoroughly tested. Proceed with caution.
To run this image, the following tools are required:
dockerclidockerbackend - Docker Desktop, colima, etc
Start the client to use it.
-
To run the
terraformcontainer:docker run -itd --name terraform quay.io/cloudnativetoolkit/terraform
Once the client is running in the background, use it by opening a shell in it.
-
To use the
terraformcontainer, exec shell into it:docker exec -it terraform /bin/bashYour terminal is now in the container.
Use this shell to run commands using the installed tools and scripts.
When you're finished running commands, to exit the client.
-
To leave the
terraformcontainer shell, as with any shell:exitThe container will keep running after you exit its shell.
If the client stops:
-
To run the
terraformcontainer again:docker start terraform
The terraform container is just a Docker container, so all Docker CLI commands work.
The build automation pushes the built container image to quay.io/cloudnativetoolkit/terraform
The floating image tags use the following convention:
latest- the latest alpine version of the image (currently terraform v1.2)alpine- the latest alpine version of the image (currently terraform v1.2)fedora- the latest fedora version of the image (currently terraform v1.2)v1.2- the latest alpine version of the image using terraform v1.2v1.1- the latest alpine version of the image using terraform v1.1v1.0- the latest alpine version of the image using terraform v1.0v1.2-alpine- the latest alpine version of the image using terraform v1.2v1.1-alpine- the latest alpine version of the image using terraform v1.1v1.0-alpine- the latest alpine version of the image using terraform v1.0v1.2-fedora- the latest fedora version of the image using terraform v1.2v1.1-fedora- the latest fedora version of the image using terraform v1.1v1.0-fedora- the latest fedora version of the image using terraform v1.0
Each release within the repository corresponds to a pinned image tag that will never be moved to another image. The pinned tags use the following naming convention:
{terraform version}-{release tag}-{base OS image}
where:
{terraform version}- is the major and minor version of the terraform cli (e.g. v1.1){release tag}- is the release tag for this repository (e.g. v1.0.0){base OS image}- is the base OS image (alpineorfedora)
For example:
v1.1-v1.0.0-alpine
The image can be used by referring to the image url. The following can be used to run the container image interactively:
docker run -it quay.io/cloudnativetoolkit/terraformTo build the default image using the latest version of terraform on alpine, run the following:
docker build -t terraform .The terraform version can be changed by passing the TERRAFORM_VERSION as a build arg. For example:
docker build --build-arg TERRAFORM_VERSION=1.1.9 -t terraform:v1.1 .The base OS can be changed by using the Dockerfile-fedora file. For example:
docker build -f Dockerfile-fedora -t terraform:fedora .The repository includes configuration files to test the built container images using the container-structure-test utility.
Several configuration files are defined:
config.yaml- provides validation for the majority of the container image structureconfig-v1.0.yaml- provides validation for the terraform cli version in v1.0 builds of the imageconfig-v1.1.yaml- provides validation for the terraform cli version in v1.1 builds of the imageconfig-v1.2.yaml- provides validation for the terraform cli version in v1.2 builds of the image
The config files can be used in combination by providing multiple --config arguments to the container-structure-test cli.
Install the container-structure-test cli by following the instructions found on container-structure-test.
Note: If you are using colima, the DOCKER_HOST environment variable will need to be set first.
- Run
colima statusto get the socket value (e.g.unix:///Users/myuser/.colima/default/docker.sock) - Export the socket value in the
DOCKER_HOSTenvironment variable -export DOCKER_HOST="unix:///Users/myuser/.colima/default/docker.sock")
Run the test by providing the uri to the image and the config file(s) that will be applied. The image can exist locally or on a remote container registry.
container-structure-test test --image {image name} --config config.yaml --config {version config}For example:
container-structure-test test --image quay.io/cloudnativetoolkit/terraform:v1.0-alpine --config config.yaml --config config-v1.0.yamlNote: If you want to test a image from a remote container registry, the --pull argument must be included.