Optional
Readonly
albInstall the AWS Load Balancer Controller onto the cluster.
Optional
Readonly
authenticationThe desired authentication mode for the cluster.
Optional
autoscalingArray of autoscaling node groups.
Optional
Readonly
awscliAn AWS Lambda layer that contains the aws
CLI.
The handler expects the layer to include the following executables:
/opt/awscli/aws
Optional
Readonly
clusterCustom environment variables when interacting with the EKS endpoint to manage the cluster lifecycle.
Optional
Readonly
clusterA security group to associate with the Cluster Handler's Lambdas. The Cluster Handler's Lambdas are responsible for calling AWS's EKS API.
Requires placeClusterHandlerInVpc
to be set to true.
Optional
Readonly
clusterThe cluster log types which you want to enable.
Optional
Readonly
clusterName for the cluster.
Optional
Readonly
coreControls the "eks.amazonaws.com/compute-type" annotation in the CoreDNS configuration on your cluster to determine which compute type to use for CoreDNS.
Optional
Readonly
endpointConfigure access to the Kubernetes API server endpoint..
Optional
fargateFargate profiles
Optional
Readonly
ipSpecify which IP family is used to assign Kubernetes pod and service IP addresses.
Optional
isolatedWhether cluster has internet access.
Optional
Readonly
kubectlEnvironment variables for the kubectl execution. Only relevant for kubectl enabled clusters.
Optional
Readonly
kubectlAn AWS Lambda Layer which includes kubectl
and Helm.
This layer is used by the kubectl handler to apply manifests and install
helm charts. You must pick an appropriate releases of one of the
@aws-cdk/layer-kubectl-vXX
packages, that works with the version of
Kubernetes you have chosen. If you don't supply this value kubectl
1.20 will be used, but that version is most likely too old.
The handler expects the layer to include the following executables:
/opt/helm/helm
/opt/kubectl/kubectl
Optional
Readonly
kubectlAmount of memory to allocate to the provider's lambda function.
Optional
managedArray of managed node groups.
Optional
Readonly
mastersAn IAM role that will be added to the system:masters
Kubernetes RBAC
group.
Optional
Readonly
onAn AWS Lambda Layer which includes the NPM dependency proxy-agent
. This layer
is used by the onEvent handler to route AWS SDK requests through a proxy.
By default, the provider will use the layer included in the "aws-lambda-layer-node-proxy-agent" SAR application which is available in all commercial regions.
To deploy the layer locally define it in your app as follows:
const layer = new lambda.LayerVersion(this, 'proxy-agent-layer', {
code: lambda.Code.fromAsset(`${__dirname}/layer.zip`),
compatibleRuntimes: [lambda.Runtime.NODEJS_LATEST],
});
Optional
Readonly
outputDetermines whether a CloudFormation output with the name of the cluster will be synthesized.
Optional
Readonly
outputDetermines whether a CloudFormation output with the aws eks update-kubeconfig
command will be synthesized. This command will include
the cluster name and, if applicable, the ARN of the masters IAM role.
Optional
Readonly
outputDetermines whether a CloudFormation output with the ARN of the "masters"
IAM role will be synthesized (if mastersRole
is specified).
Optional
Readonly
placeIf set to true, the cluster handler functions will be placed in the private subnets
of the cluster vpc, subject to the vpcSubnets
selection strategy.
Optional
privateWhether API server is private.
Optional
Readonly
pruneIndicates whether Kubernetes resources added through addManifest()
can be
automatically pruned. When this is enabled (default), prune labels will be
allocated and injected to each resource. These labels will then be used
when issuing the kubectl apply
operation with the --prune
switch.
Optional
Readonly
roleRole that provides permissions for the Kubernetes control plane to make calls to AWS API operations on your behalf.
Optional
Readonly
secretsKMS secret for envelope encryption for Kubernetes secrets.
Optional
Readonly
securitySecurity Group to use for Control Plane ENIs
Optional
Readonly
serviceThe CIDR block to assign Kubernetes service IP addresses from.
Optional
tagsTags for the cluster
Optional
Readonly
versionThe Kubernetes version to run in the cluster
Optional
Readonly
vpcThe VPC in which to create the Cluster.
Optional
Readonly
vpcWhere to place EKS Control Plane ENIs
For example, to only select private subnets, supply the following:
vpcSubnets: [{ subnetType: ec2.SubnetType.PRIVATE_WITH_EGRESS }]
Properties for the generic cluster provider, containing definitions of managed node groups, auto-scaling groups, fargate profiles.