Skip to content

Commit

Permalink
revert first attempt - start fresh
Browse files Browse the repository at this point in the history
  • Loading branch information
BWMac committed Nov 11, 2024
1 parent 045c78f commit b24df34
Showing 1 changed file with 1 addition and 162 deletions.
163 changes: 1 addition & 162 deletions modules/signoz-fluxcd/main.tf
Original file line number Diff line number Diff line change
Expand Up @@ -35,98 +35,6 @@ resource "kubernetes_config_map" "signoz-values" {

}


resource "aws_iam_user" "backup" {
name = "clickhouse-backup-${var.namespace}"
}

resource "aws_iam_access_key" "backup" {
user = aws_iam_user.backup.name
}

// Create the S3 bucket
resource "aws_s3_bucket" "clickhouse_backup" {
bucket = "signoz-clickhouse-backup-${var.cluster_name}"
}

// Enable versioning
resource "aws_s3_bucket_versioning" "clickhouse_backup" {
bucket = aws_s3_bucket.clickhouse_backup.id
versioning_configuration {
status = "Enabled"
}
}

// Configure lifecycle rules for backup management
resource "aws_s3_bucket_lifecycle_configuration" "clickhouse_backup" {
bucket = aws_s3_bucket.clickhouse_backup.id

rule {
id = "cleanup_old_backups"
status = "Enabled"

expiration {
days = 30 // Adjust retention period as needed
}

noncurrent_version_expiration {
noncurrent_days = 7
}
}
}

resource "aws_iam_user_policy" "backup" {
name = "clickhouse-backup-policy"
user = aws_iam_user.backup.name

policy = jsonencode({
Version = "2012-10-17"
Statement = [
{
Effect = "Allow"
Action = [
"s3:PutObject",
"s3:GetObject",
"s3:DeleteObject",
"s3:ListBucket"
]
Resource = [
"${aws_s3_bucket.clickhouse_backup.arn}/*",
aws_s3_bucket.clickhouse_backup.arn
]
}
]
})
}

resource "kubernetes_config_map" "clickhouse-backup-config" {
metadata {
name = "clickhouse-backup-config"
namespace = var.namespace
}

data = {
"config.yml" = <<-EOT
general:
remote_storage: s3
upload_concurrency: 4
download_concurrency: 4
disable_progress_bar: false
clickhouse:
host: localhost
port: 9000
username: admin
password_from_env: CLICKHOUSE_PASSWORD
s3:
bucket: ${aws_s3_bucket.clickhouse_backup.id}
endpoint: s3.amazonaws.com
region: us-east-1
access_key: ${aws_iam_access_key.backup.id}
secret_key: ${aws_iam_access_key.backup.secret}
EOT
}
}

resource "kubectl_manifest" "signoz-helm-release" {
depends_on = [kubernetes_namespace.signoz]

Expand All @@ -135,7 +43,7 @@ apiVersion: helm.toolkit.fluxcd.io/v2
kind: HelmRelease
metadata:
name: signoz
namespace: ${var.namespace}
namespace: ${var.namespace}
spec:
interval: 10m
chart:
Expand All @@ -147,25 +55,6 @@ spec:
name: signoz
namespace: ${var.namespace}
interval: 10m
helm:
releaseName: signoz-fluxcd
# Extra parameters to set (same as setting through values.yaml, but these take precedence)
parameters:
- name: "clickhouse.password"
value: ${random_password.clickhouse-admin-password.result}
%{if local.alertmanager_enabled}
- name: "alertmanager.enabled"
value: "true"
- name: "alertmanager.additionalEnvs.ALERTMANAGER_SMTP_FROM"
value: ${var.smtp_from}
- name: "alertmanager.additionalEnvs.ALERTMANAGER_SMTP_AUTH_USERNAME"
value: ${var.smtp_user}
- name: "alertmanager.additionalEnvs.ALERTMANAGER_SMTP_AUTH_PASSWORD"
value: ${var.smtp_password}
%{else}
- name: "alertmanager.enabled"
value: "false"
%{endif}
values:
alertmanager:
enabled: false
Expand All @@ -177,56 +66,6 @@ spec:
name: clickhouse-admin-password
valuesKey: password
targetPath: clickhouse.password
postRenderers:
- kustomize:
patches:
- target:
kind: StatefulSet
name: signoz-clickhouse
patch: |
- op: add
path: /spec/template/spec/containers/-
value:
name: backup
image: altinity/clickhouse-backup:2.4.4
imagePullPolicy: IfNotPresent
securityContext:
runAsUser: 101
runAsGroup: 101
env:
- name: CLICKHOUSE_HOST
value: "localhost"
- name: CLICKHOUSE_PORT
value: "9000"
- name: CLICKHOUSE_USER
value: "admin"
- name: CLICKHOUSE_PASSWORD
valueFrom:
secretKeyRef:
name: clickhouse-admin-password
key: password
volumeMounts:
- name: data
mountPath: /var/lib/clickhouse
- name: backup
mountPath: /var/lib/clickhouse/backup
- name: config
mountPath: /etc/clickhouse-backup
- target:
kind: StatefulSet
name: signoz-clickhouse
patch: |
- op: add
path: /spec/template/spec/volumes/-
value:
name: backup
emptyDir: {}
- op: add
path: /spec/template/spec/volumes/-
value:
name: config
configMap:
name: clickhouse-backup-config
YAML
}

Expand Down

0 comments on commit b24df34

Please sign in to comment.