无法通过terraform

时间:2017-09-01 23:45:13

标签: amazon-web-services terraform

我试图通过terraform旋转一个现场实例。当我尝试使用配置程序块(“remote-exec”或“file”)时,它会失败,我在DEBUG级别输出中看到SSH错误。当我从spot实例请求切换到标准aws实例资源声明时,配置工作正常。

代码无效:

    resource "aws_spot_instance_request" "worker01" {
      ami           = "ami-0cb95574"
      spot_price    = "0.02"
      instance_type = "m3.medium"
      vpc_security_group_ids = [ "${aws_security_group.ssh_access.id}", "${aws_security_group.tcp_internal_access.id}","${aws_security_group.splunk_access.id}","${aws_security_group.internet_access.id}" ]
      subnet_id     = "..."
      associate_public_ip_address = true

      connection {
        type = "ssh"
        user = "ec2-user"
        private_key = "${file("${var.private_key_path}")}"
      }

       provisioner "remote-exec" {
         inline = [
           "touch foo",
         ]
       }
    }

错误:

    aws_spot_instance_request.worker01 (remote-exec): Connecting to remote host via SSH...
    aws_spot_instance_request.worker01 (remote-exec):   Host:
    aws_spot_instance_request.worker01 (remote-exec):   User: ec2-user
    2017/09/01 16:17:52 [DEBUG] plugin: terraform: remote-exec-provisioner (internal) 2017/09/01 16:17:52 handshaking with SSH
    aws_spot_instance_request.worker01 (remote-exec):   Password: false
    aws_spot_instance_request.worker01 (remote-exec):   Private key: true
    aws_spot_instance_request.worker01 (remote-exec):   SSH Agent: true
    2017/09/01 16:17:52 [DEBUG] plugin: terraform: remote-exec-provisioner (internal) 2017/09/01 16:17:52 handshake error: ssh: handshake failed: ssh: unable to authenticate, attempted methods [none publickey], no supported methods remain
    2017/09/01 16:17:52 [DEBUG] plugin: terraform: remote-exec-provisioner (internal) 2017/09/01 16:17:52 Retryable error: ssh: handshake failed: ssh: unable to authenticate, attempted methods [none publickey], no supported methods remain

工作代码:

    resource "aws_instance" "worker01" {
      ami           = "ami-0cb95574"
      instance_type = "m3.medium"
      vpc_security_group_ids = [ "${aws_security_group.ssh_access.id}", "${aws_security_group.tcp_internal_access.id}","${aws_security_group.splunk_access.id}","${aws_security_group.internet_access.id}" ]
      subnet_id     = "..."
      associate_public_ip_address = true

      connection {
        type = "ssh"
        user = "ec2-user"
        private_key = "${file("${var.private_key_path}")}"
      }

       provisioner "remote-exec" {
         inline = [
           "touch foo",
         ]
       }
    }

我尝试了一些非工作代码的不同迭代(包括一个愚蠢的尝试,为一个现场实例硬编码一个公共IP,并试图自我引用现场实例公共IP - 这给了一个没有这样的属性错误)。不幸的是,我找不到任何通过谷歌有类似问题的人。根据我的阅读,我应该能够以这种方式提供一个现场实例。

感谢您提供的任何帮助。

1 个答案:

答案 0 :(得分:2)

您需要将wait_for_fulfillment = true添加到您的定点实例请求中,否则资源将在创建实例之前返回。