Skip to main content

okustera_vpc (Resource)

The okustera_vpc resource provisions and manages an enterprise, AWS-parity multi-tier Tenant Virtual Private Cloud (VPC) with automated IPAM tier partitioning (public DMZ with Internet Gateway, private App Tier with managed SNAT, and air-gapped isolated Database Tier) and OVN routing.

Example Usage​

3-Tier Production VPC with Platform Endpoints​

resource "okustera_vpc" "prod_vpc" {
name = "production-vpc"
cidr_block = "192.168.0.0/16"
topology_preset = "three_tier_standard"
enable_dns_hostnames = true
enable_dns_support = true
enable_s3_endpoint = true
enable_ai_endpoint = true

tags = {
Environment = "production"
ManagedBy = "terraform"
}
}

output "vpc_id" {
value = okustera_vpc.prod_vpc.id
}

output "network_id" {
value = okustera_vpc.prod_vpc.network_id
}

Schema​

Required​

  • name (String) Human-readable name of the VPC.

Optional​

  • cidr_block (String) Primary IPv4 CIDR block for the VPC (e.g. 192.168.0.0/16 or 10.0.0.0/16). Defaults to 192.168.0.0/16.
  • topology_preset (String) IPAM layout preset: three_tier_standard, two_tier_minimal, or custom. Defaults to three_tier_standard.
  • enable_dns_hostnames (Boolean) Indicates whether instances launched in the VPC get public/private DNS hostnames. Defaults to true.
  • enable_dns_support (Boolean) Indicates whether DNS resolution is supported for the VPC. Defaults to true.
  • enable_s3_endpoint (Boolean) Automatically provisions internal PrivateLink gateway endpoint for Object Storage (com.okustera.s3).
  • enable_ai_endpoint (Boolean) Automatically provisions internal PrivateLink endpoint for AI Model Foundry (com.okustera.ai).
  • tags (Map of String) Key-value tags associated with the VPC.

Read-Only​

  • id (String) Unique identifier UUID of the VPC.
  • status (String) Current status of the VPC overlay network (e.g. ACTIVE).
  • network_id (String) Underlying Neutron network UUID.
  • router_id (String) Underlying Neutron router UUID.
  • created_at (String) Timestamp when the VPC was created.
  • updated_at (String) Timestamp when the VPC was last modified.

Import​

Existing VPCs can be imported using their UUID:

terraform import okustera_vpc.prod_vpc <vpc_uuid>