{"id":2347,"date":"2025-03-24T08:47:37","date_gmt":"2025-03-23T23:47:37","guid":{"rendered":"https:\/\/dexall.co.jp\/articles\/?p=2347"},"modified":"2025-03-24T08:48:00","modified_gmt":"2025-03-23T23:48:00","slug":"%e3%80%90%e4%bf%9d%e5%ad%98%e7%89%88%e3%80%91terraform%e3%81%a7%e4%bd%9c%e3%82%8baws-ecs%e7%92%b0%e5%a2%83%e6%a7%8b%e7%af%89%e5%ae%8c%e5%85%a8%e3%82%ac%e3%82%a4%e3%83%892024-%e3%80%9c%e6%9c%ac","status":"publish","type":"post","link":"https:\/\/dexall.co.jp\/articles\/?p=2347","title":{"rendered":"\u3010\u4fdd\u5b58\u7248\u3011Terraform\u3067\u4f5c\u308bAWS ECS\u74b0\u5883\u69cb\u7bc9\u5b8c\u5168\u30ac\u30a4\u30c92024 \u301c\u672c\u756a\u904b\u7528\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b910\u9078\u301c"},"content":{"rendered":"\n<div class=\"toc\"><br \/>\n<b>Warning<\/b>:  Undefined array key \"is_admin\" in <b>\/home\/xs392991\/dexall.co.jp\/public_html\/articles\/wp-content\/themes\/sango-theme\/library\/gutenberg\/dist\/classes\/Toc.php<\/b> on line <b>116<\/b><br \/>\n<br \/>\n<b>Warning<\/b>:  Undefined array key \"is_category_top\" in <b>\/home\/xs392991\/dexall.co.jp\/public_html\/articles\/wp-content\/themes\/sango-theme\/library\/gutenberg\/dist\/classes\/Toc.php<\/b> on line <b>121<\/b><br \/>\n<br \/>\n<b>Warning<\/b>:  Undefined array key \"is_top\" in <b>\/home\/xs392991\/dexall.co.jp\/public_html\/articles\/wp-content\/themes\/sango-theme\/library\/gutenberg\/dist\/classes\/Toc.php<\/b> on line <b>128<\/b><br \/>\n    <div id=\"toc_container\" class=\"sgb-toc--bullets js-smooth-scroll\" data-dialog-title=\"\u76ee\u6b21\">\n      <p class=\"toc_title\">\u76ee\u6b21 <\/p>\n      <ul class=\"toc_list\">  <li class=\"first\">    <a href=\"#i-0\">\u306f\u3058\u3081\u306b\uff1aTerraform\u3067 ECS \u74b0\u5883\u3092\u69cb\u7bc9\u3059\u308b\u610f\u7fa9<\/a>    <ul class=\"menu_level_1\">      <li class=\"first\">        <a href=\"#i-1\">\u306a\u305c\u30a4\u30f3\u30d5\u30e9\u306e\u30b3\u30fc\u30c9\u5316\u304c\u91cd\u8981\u306a\u306e\u304b<\/a>      <\/li>      <li class=\"last\">        <a href=\"#i-3\">ECS\u3092Terraform\u3067\u7ba1\u7406\u3059\u308b\u30e1\u30ea\u30c3\u30c8<\/a>      <\/li>    <\/ul>  <\/li>  <li>    <a href=\"#i-7\">Terraform\u00d7ECS\u74b0\u5883\u69cb\u7bc9\u306e\u57fa\u790e\u77e5\u8b58<\/a>    <ul class=\"menu_level_1\">      <li class=\"first\">        <a href=\"#i-8\">ECS\u306e\u4e3b\u8981\u30b3\u30f3\u30dd\u30fc\u30cd\u30f3\u30c8\u3068\u8a2d\u5b9a\u9805\u76ee<\/a>      <\/li>      <li class=\"last\">        <a href=\"#i-12\">\u5fc5\u8981\u306aTerraform\u306e\u30ea\u30bd\u30fc\u30b9\u5b9a\u7fa9\u4e00\u89a7<\/a>      <\/li>    <\/ul>  <\/li>  <li>    <a href=\"#i-18\">\u5b9f\u8df5\uff1aTerraform\u306b\u3088\u308bECS\u74b0\u5883\u69cb\u7bc9\u624b\u9806<\/a>    <ul class=\"menu_level_1\">      <li class=\"first\">        <a href=\"#i-19\">VPC\u3068\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30ea\u30bd\u30fc\u30b9\u306e\u5b9a\u7fa9<\/a>      <\/li>      <li>        <a href=\"#i-22\">ECS\u30af\u30e9\u30b9\u30bf\u30fc\u3068\u30bf\u30b9\u30af\u5b9a\u7fa9\u306e\u8a2d\u5b9a<\/a>      <\/li>      <li class=\"last\">        <a href=\"#i-25\">\u30b5\u30fc\u30d3\u30b9\u5b9a\u7fa9\u3068\u30ed\u30fc\u30c9\u30d0\u30e9\u30f3\u30b5\u30fc\u306e\u7d71\u5408<\/a>      <\/li>    <\/ul>  <\/li>  <li>    <a href=\"#i-29\">\u672c\u756a\u904b\u7528\u306b\u5411\u3051\u305f10\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9<\/a>    <ul class=\"menu_level_1\">      <li class=\"first\">        <a href=\"#i-30\">\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u3068IAM\u30ed\u30fc\u30eb\u306e\u6700\u5c0f\u6a29\u9650\u8a2d\u5b9a<\/a>      <\/li>      <li>        <a href=\"#i-33\">\u30aa\u30fc\u30c8\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u306e\u52b9\u7387\u7684\u306a\u8a2d\u5b9a\u65b9\u6cd5<\/a>      <\/li>      <li class=\"last\">        <a href=\"#i-36\">\u30ed\u30b0\u7ba1\u7406\u3068\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u306e\u5b9f\u88c5<\/a>      <\/li>    <\/ul>  <\/li>  <li>    <a href=\"#i-40\">\u3088\u304f\u3042\u308b\u30c8\u30e9\u30d6\u30eb\u3068\u89e3\u6c7a\u7b56<\/a>    <ul class=\"menu_level_1\">      <li class=\"first\">        <a href=\"#i-41\">\u30c7\u30d7\u30ed\u30a4\u5931\u6557\u6642\u306e\u30c8\u30e9\u30d6\u30eb\u30b7\u30e5\u30fc\u30c6\u30a3\u30f3\u30b0<\/a>      <\/li>      <li class=\"last\">        <a href=\"#i-46\">\u30d1\u30d5\u30a9\u30fc\u30de\u30f3\u30b9\u6700\u9069\u5316\u306e\u30dd\u30a4\u30f3\u30c8<\/a>      <\/li>    <\/ul>  <\/li>  <li class=\"last\">    <a href=\"#i-50\">\u767a\u5c55\u7684\u306a\u30c8\u30d4\u30c3\u30af\u3068\u6b21\u306e\u30b9\u30c6\u30c3\u30d7<\/a>    <ul class=\"menu_level_1\">      <li class=\"first\">        <a href=\"#i-51\">CI\/CD\u30d1\u30a4\u30d7\u30e9\u30a4\u30f3\u3068\u306e\u7d71\u5408\u65b9\u6cd5<\/a>      <\/li>      <li class=\"last\">        <a href=\"#i-55\">\u30ea\u30fc\u30b8\u30e7\u30f3\u30de\u30eb\u30c1\u5c55\u958b\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9<\/a>      <\/li>    <\/ul>  <\/li><\/ul>\n      <a href=\"#\" class=\"sgb-toc-button js-toc-button\" rel=\"nofollow\" data-open-dialog=\"true\"><i class=\"fa fa-list\"><\/i><span class=\"sgb-toc-button__text\">\u76ee\u6b21\u3078<\/span><\/a>\n    <\/div><\/div><h2 class=\"wp-block-heading\" id=\"i-0\">\u306f\u3058\u3081\u306b\uff1aTerraform\u3067 ECS \u74b0\u5883\u3092\u69cb\u7bc9\u3059\u308b\u610f\u7fa9<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-1\">\u306a\u305c\u30a4\u30f3\u30d5\u30e9\u306e\u30b3\u30fc\u30c9\u5316\u304c\u91cd\u8981\u306a\u306e\u304b<\/h3>\n\n\n\n<p>\u30af\u30e9\u30a6\u30c9\u30a4\u30f3\u30d5\u30e9\u306e\u8907\u96d1\u5316\u304c\u9032\u3080\u73fe\u4ee3\u306b\u304a\u3044\u3066\u3001\u30a4\u30f3\u30d5\u30e9\u306e\u30b3\u30fc\u30c9\u5316\uff08Infrastructure as Code\uff1aIaC\uff09\u306f\u3001\u3082\u306f\u3084\u9078\u629e\u80a2\u3067\u306f\u306a\u304f\u5fc5\u9808\u3068\u306a\u3063\u3066\u3044\u307e\u3059\u3002\u7279\u306b\u3001\u30b3\u30f3\u30c6\u30ca\u5316\u3055\u308c\u305f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306e\u904b\u7528\u306b\u304a\u3044\u3066\u306f\u3001\u305d\u306e\u91cd\u8981\u6027\u304c\u9855\u8457\u3067\u3059\u3002<\/p>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-2\">\u30a4\u30f3\u30d5\u30e9\u30b3\u30fc\u30c9\u5316\u304c\u3082\u305f\u3089\u30593\u3064\u306e\u9769\u65b0<\/h4>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u518d\u73fe\u6027\u306e\u5411\u4e0a<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u74b0\u5883\u306e\u5b8c\u5168\u306a\u4e00\u8cab\u6027\u78ba\u4fdd<\/li>\n\n\n\n<li>\u4eba\u7684\u30df\u30b9\u306e\u524a\u6e1b\uff08\u5f93\u6765\u306e\u624b\u52d5\u69cb\u7bc9\u3068\u6bd4\u8f03\u3057\u3066\u7d0473%\u306e\u524a\u6e1b\u52b9\u679c\uff09<\/li>\n\n\n\n<li>\u30d0\u30fc\u30b8\u30e7\u30f3\u7ba1\u7406\u306b\u3088\u308b\u5909\u66f4\u5c65\u6b74\u306e\u8ffd\u8de1<\/li>\n<\/ul>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u904b\u7528\u52b9\u7387\u306e\u5287\u7684\u306a\u6539\u5584<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30c7\u30d7\u30ed\u30a4\u6642\u9593\u306e\u77ed\u7e2e\uff1a\u5e73\u5747\u3067\u5f93\u6765\u306e1\/5\u306b<\/li>\n\n\n\n<li>\u30ea\u30bd\u30fc\u30b9\u69cb\u7bc9\u306e\u81ea\u52d5\u5316\u306b\u3088\u308b\u5de5\u6570\u524a\u6e1b<\/li>\n\n\n\n<li>\u30c1\u30fc\u30e0\u9593\u306e\u30ca\u30ec\u30c3\u30b8\u5171\u6709\u4fc3\u9032<\/li>\n<\/ul>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u30b3\u30b9\u30c8\u3068\u30ea\u30b9\u30af\u306e\u6700\u9069\u5316<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30ea\u30bd\u30fc\u30b9\u306e\u7121\u99c4\u306e\u53ef\u8996\u5316\u3068\u524a\u6e1b<\/li>\n\n\n\n<li>\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9\u8981\u4ef6\u306e\u78ba\u5b9f\u306a\u5b9f\u88c5<\/li>\n\n\n\n<li>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30dd\u30ea\u30b7\u30fc\u306e\u7d71\u4e00\u7684\u306a\u9069\u7528<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-3\">ECS\u3092Terraform\u3067\u7ba1\u7406\u3059\u308b\u30e1\u30ea\u30c3\u30c8<\/h3>\n\n\n\n<p>AWS ECS\u306e\u904b\u7528\u306b\u304a\u3044\u3066\u3001Terraform\u3092\u6d3b\u7528\u3059\u308b\u3053\u3068\u3067\u5f97\u3089\u308c\u308b\u5177\u4f53\u7684\u306a\u30e1\u30ea\u30c3\u30c8\u3092\u898b\u3066\u3044\u304d\u307e\u3057\u3087\u3046\u3002<\/p>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-4\">1. \u74b0\u5883\u69cb\u7bc9\u306e\u6700\u9069\u5316<\/h4>\n\n\n<div id=\"id-570fe065-2b87-456e-bb0e-0bf870b4c29d\">\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>\u9805\u76ee<\/th><th>\u5f93\u6765\u306e\u65b9\u6cd5<\/th><th>Terraform\u3067\u306e\u7ba1\u7406<\/th><\/tr><\/thead><tbody><tr><td>\u74b0\u5883\u69cb\u7bc9\u6642\u9593<\/td><td>2-3\u65e5<\/td><td>\u6570\u6642\u9593<\/td><\/tr><tr><td>\u8a2d\u5b9a\u30df\u30b9\u7387<\/td><td>\u7d0415%<\/td><td>3%\u672a\u6e80<\/td><\/tr><tr><td>\u518d\u73fe\u6027<\/td><td>\u4f4e<\/td><td>100%<\/td><\/tr><\/tbody><\/table><\/figure>\n<\/div>\n\n\n<h4 class=\"wp-block-heading\" id=\"i-5\">2. \u904b\u7528\u9762\u3067\u306e\u512a\u4f4d\u6027<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>\u5909\u66f4\u7ba1\u7406\u306e\u52b9\u7387\u5316<\/strong><\/li>\n\n\n\n<li>\u30a4\u30f3\u30d5\u30e9\u306e\u72b6\u614b\u3092\u5b8c\u5168\u306b\u30b3\u30fc\u30c9\u5316<\/li>\n\n\n\n<li>\u5909\u66f4\u306e\u30ec\u30d3\u30e5\u30fc\u30d7\u30ed\u30bb\u30b9\u306e\u78ba\u7acb<\/li>\n\n\n\n<li>\u30ed\u30fc\u30eb\u30d0\u30c3\u30af\u306e\u5bb9\u6613\u3055<\/li>\n\n\n\n<li><strong>\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u306e\u81ea\u52d5\u5316<\/strong><\/li>\n\n\n\n<li>\u9700\u8981\u306b\u5fdc\u3058\u305f\u67d4\u8edf\u306a\u30ea\u30bd\u30fc\u30b9\u8abf\u6574<\/li>\n\n\n\n<li>\u30de\u30eb\u30c1\u30ea\u30fc\u30b8\u30e7\u30f3\u5c55\u958b\u306e\u5bb9\u6613\u3055<\/li>\n\n\n\n<li>\u30b3\u30b9\u30c8\u6700\u9069\u5316\u306e\u5b9f\u73fe<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-6\">3. \u30c1\u30fc\u30e0\u958b\u767a\u3067\u306e\u52b9\u679c<\/h4>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u77e5\u8b58\u306e\u5171\u6709\u3068\u6a19\u6e96\u5316<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9\u306e\u7d44\u7e54\u7684\u306a\u5c55\u958b<\/li>\n\n\n\n<li>\u65b0\u898f\u30e1\u30f3\u30d0\u30fc\u306e\u5b66\u7fd2\u66f2\u7dda\u306e\u77ed\u7e2e<\/li>\n\n\n\n<li>\u30c1\u30fc\u30e0\u9593\u3067\u306e\u8a2d\u5b9a\u306e\u7d71\u4e00<\/li>\n<\/ul>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u3068\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8a2d\u5b9a\u306e\u6a19\u6e96\u5316<\/li>\n\n\n\n<li>\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9\u8981\u4ef6\u306e\u78ba\u5b9f\u306a\u5b9f\u88c5<\/li>\n\n\n\n<li>\u76e3\u67fb\u5bfe\u5fdc\u306e\u52b9\u7387\u5316<\/li>\n<\/ul>\n\n\n\n<p>Terraform\u3092\u4f7f\u7528\u3057\u305fECS\u74b0\u5883\u306e\u69cb\u7bc9\u306f\u3001\u5358\u306a\u308b\u81ea\u52d5\u5316\u30c4\u30fc\u30eb\u306e\u5c0e\u5165\u4ee5\u4e0a\u306e\u4fa1\u5024\u3092\u3082\u305f\u3089\u3057\u307e\u3059\u3002\u6b21\u7ae0\u3067\u306f\u3001\u3053\u306e\u74b0\u5883\u69cb\u7bc9\u306b\u5fc5\u8981\u306a\u5177\u4f53\u7684\u306a\u77e5\u8b58\u3068\u5b9f\u88c5\u65b9\u6cd5\u306b\u3064\u3044\u3066\u8a73\u3057\u304f\u89e3\u8aac\u3057\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"i-7\">Terraform\u00d7ECS\u74b0\u5883\u69cb\u7bc9\u306e\u57fa\u790e\u77e5\u8b58<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-8\">ECS\u306e\u4e3b\u8981\u30b3\u30f3\u30dd\u30fc\u30cd\u30f3\u30c8\u3068\u8a2d\u5b9a\u9805\u76ee<\/h3>\n\n\n\n<p>Amazon ECS\uff08Elastic Container Service\uff09\u306f\u3001\u8907\u6570\u306e\u91cd\u8981\u306a\u30b3\u30f3\u30dd\u30fc\u30cd\u30f3\u30c8\u3067\u69cb\u6210\u3055\u308c\u3066\u3044\u307e\u3059\u3002Terraform\u3067\u74b0\u5883\u3092\u69cb\u7bc9\u3059\u308b\u524d\u306b\u3001\u3053\u308c\u3089\u306e\u7406\u89e3\u304c\u4e0d\u53ef\u6b20\u3067\u3059\u3002<\/p>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-9\">1. ECS\u30af\u30e9\u30b9\u30bf\u30fc<\/h4>\n\n\n\n<p>\u30af\u30e9\u30b9\u30bf\u30fc\u306f\u3001\u30b3\u30f3\u30c6\u30ca\u5316\u3055\u308c\u305f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3092\u5b9f\u884c\u3059\u308b\u305f\u3081\u306e\u30ea\u30bd\u30fc\u30b9\u30d7\u30fc\u30eb\u3067\u3059\u3002<\/p>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u30af\u30e9\u30b9\u30bf\u30fc\u5b9a\u7fa9\u306e\u4f8b\nresource \"aws_ecs_cluster\" \"main\" {\n  name = \"my-ecs-cluster\"\n\n  setting {\n    name  = \"containerInsights\"\n    value = \"enabled\"\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-10\">2. \u30bf\u30b9\u30af\u5b9a\u7fa9<\/h4>\n\n\n\n<p>\u30bf\u30b9\u30af\u5b9a\u7fa9\u306f\u3001\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306e\u8a2d\u8a08\u56f3\u3068\u3082\u8a00\u3048\u308b\u91cd\u8981\u306a\u8981\u7d20\u3067\u3059\u3002<\/p>\n\n\n\n<p>\u4e3b\u306a\u8a2d\u5b9a\u9805\u76ee\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30b3\u30f3\u30c6\u30ca\u5b9a\u7fa9<\/li>\n\n\n\n<li>\u30ea\u30bd\u30fc\u30b9\u5272\u308a\u5f53\u3066<\/li>\n\n\n\n<li>\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30e2\u30fc\u30c9<\/li>\n\n\n\n<li>\u30dc\u30ea\u30e5\u30fc\u30e0\u8a2d\u5b9a<\/li>\n<\/ul>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u30bf\u30b9\u30af\u5b9a\u7fa9\u306e\u4f8b\nresource \"aws_ecs_task_definition\" \"app\" {\n  family                   = \"app\"\n  requires_compatibilities = [\"FARGATE\"]\n  network_mode            = \"awsvpc\"\n  cpu                     = 256\n  memory                  = 512\n\n  container_definitions = jsonencode([\n    {\n      name  = \"app\"\n      image = \"nginx:latest\"\n      portMappings = [\n        {\n          containerPort = 80\n          protocol      = \"tcp\"\n        }\n      ]\n    }\n  ])\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-11\">3. ECS\u30b5\u30fc\u30d3\u30b9<\/h4>\n\n\n\n<p>\u30b5\u30fc\u30d3\u30b9\u306f\u3001\u30bf\u30b9\u30af\u5b9a\u7fa9\u306b\u57fa\u3065\u3044\u3066\u30bf\u30b9\u30af\u3092\u7dad\u6301\u30fb\u7ba1\u7406\u3057\u307e\u3059\u3002<\/p>\n\n\n\n<p>\u91cd\u8981\u306a\u8a2d\u5b9a\u8981\u7d20\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30c7\u30d7\u30ed\u30a4\u6226\u7565<\/li>\n\n\n\n<li>\u30aa\u30fc\u30c8\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0<\/li>\n\n\n\n<li>\u30ed\u30fc\u30c9\u30d0\u30e9\u30f3\u30b5\u30fc\u7d71\u5408<\/li>\n\n\n\n<li>\u30b5\u30fc\u30d3\u30b9\u30c7\u30a3\u30b9\u30ab\u30d0\u30ea<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-12\">\u5fc5\u8981\u306aTerraform\u306e\u30ea\u30bd\u30fc\u30b9\u5b9a\u7fa9\u4e00\u89a7<\/h3>\n\n\n\n<p>Terraform \u3067ECS\u74b0\u5883\u3092\u69cb\u7bc9\u3059\u308b\u969b\u306b\u5fc5\u8981\u3068\u306a\u308b\u4e3b\u8981\u306a\u30ea\u30bd\u30fc\u30b9\u3068\u305d\u306e\u5f79\u5272\u3092\u89e3\u8aac\u3057\u307e\u3059\u3002<\/p>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-13\">1. \u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30ea\u30bd\u30fc\u30b9<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># VPC\u95a2\u9023\u30ea\u30bd\u30fc\u30b9\nresource \"aws_vpc\" \"main\" {\n  # VPC\u8a2d\u5b9a\n}\n\nresource \"aws_subnet\" \"private\" {\n  # \u30d7\u30e9\u30a4\u30d9\u30fc\u30c8\u30b5\u30d6\u30cd\u30c3\u30c8\u8a2d\u5b9a\n}\n\nresource \"aws_security_group\" \"ecs_tasks\" {\n  # \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u8a2d\u5b9a\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-14\">2. IAM\u30ea\u30bd\u30fc\u30b9<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u30bf\u30b9\u30af\u5b9f\u884c\u30ed\u30fc\u30eb\nresource \"aws_iam_role\" \"ecs_task_execution_role\" {\n  name = \"ecs-task-execution-role\"\n\n  assume_role_policy = jsonencode({\n    Version = \"2012-10-17\"\n    Statement = [\n      {\n        Action = \"sts:AssumeRole\"\n        Effect = \"Allow\"\n        Principal = {\n          Service = \"ecs-tasks.amazonaws.com\"\n        }\n      }\n    ]\n  })\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-15\">3. \u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u95a2\u9023\u30ea\u30bd\u30fc\u30b9<\/h4>\n\n\n<div id=\"id-a58aec82-a912-458e-a7ab-ad0c0a0d5d02\">\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>\u30ea\u30bd\u30fc\u30b9\u30bf\u30a4\u30d7<\/th><th>\u76ee\u7684<\/th><th>\u4e3b\u306a\u8a2d\u5b9a\u9805\u76ee<\/th><\/tr><\/thead><tbody><tr><td>aws_ecs_cluster<\/td><td>\u30af\u30e9\u30b9\u30bf\u30fc\u4f5c\u6210<\/td><td>\u540d\u524d\u3001\u30ad\u30e3\u30d1\u30b7\u30c6\u30a3\u30fc\u30d7\u30ed\u30d0\u30a4\u30c0\u30fc<\/td><\/tr><tr><td>aws_ecs_task_definition<\/td><td>\u30b3\u30f3\u30c6\u30ca\u5b9a\u7fa9<\/td><td>CPU\u3001\u30e1\u30e2\u30ea\u3001\u30b3\u30f3\u30c6\u30ca\u8a2d\u5b9a<\/td><\/tr><tr><td>aws_ecs_service<\/td><td>\u30b5\u30fc\u30d3\u30b9\u7ba1\u7406<\/td><td>\u30bf\u30b9\u30af\u6570\u3001\u30c7\u30d7\u30ed\u30a4\u8a2d\u5b9a<\/td><\/tr><tr><td>aws_lb<\/td><td>\u8ca0\u8377\u5206\u6563<\/td><td>\u30ea\u30b9\u30ca\u30fc\u3001\u30bf\u30fc\u30b2\u30c3\u30c8\u30b0\u30eb\u30fc\u30d7<\/td><\/tr><\/tbody><\/table><\/figure>\n<\/div>\n\n\n<h4 class=\"wp-block-heading\" id=\"i-16\">4. \u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u3068\u30ed\u30b0\u7ba1\u7406<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># CloudWatch\u30ed\u30b0\u30b0\u30eb\u30fc\u30d7\nresource \"aws_cloudwatch_log_group\" \"ecs_app\" {\n  name              = \"\/ecs\/app\"\n  retention_in_days = 30\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-17\">Terraform\u30e2\u30b8\u30e5\u30fc\u30eb\u5316\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9<\/h4>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u30e2\u30b8\u30e5\u30fc\u30eb\u69cb\u9020<\/strong><\/li>\n<\/ol>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">terraform\/\n\u251c\u2500\u2500 modules\/\n\u2502   \u251c\u2500\u2500 ecs\/\n\u2502   \u251c\u2500\u2500 networking\/\n\u2502   \u2514\u2500\u2500 security\/\n\u2514\u2500\u2500 environments\/\n    \u251c\u2500\u2500 prod\/\n    \u2514\u2500\u2500 staging\/<\/pre>\n\n\n\n<ol start=\"2\" class=\"wp-block-list\">\n<li><strong>\u5909\u6570\u5b9a\u7fa9\u306e\u65b9\u91dd<\/strong><\/li>\n<\/ol>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># variables.tf\nvariable \"environment\" {\n  description = \"\u30c7\u30d7\u30ed\u30a4\u74b0\u5883\uff08prod\/staging\uff09\"\n  type        = string\n}\n\nvariable \"app_name\" {\n  description = \"\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u540d\"\n  type        = string\n}<\/pre>\n\n\n\n<ol start=\"3\" class=\"wp-block-list\">\n<li><strong>\u51fa\u529b\u5024\u306e\u5b9a\u7fa9<\/strong><\/li>\n<\/ol>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># outputs.tf\noutput \"cluster_arn\" {\n  description = \"ECS\u30af\u30e9\u30b9\u30bf\u30fc\u306eARN\"\n  value       = aws_ecs_cluster.main.arn\n}<\/pre>\n\n\n\n<p>\u3053\u308c\u3089\u306e\u57fa\u790e\u77e5\u8b58\u3092\u8e0f\u307e\u3048\u305f\u4e0a\u3067\u3001\u6b21\u7ae0\u3067\u306f\u5b9f\u969b\u306e\u74b0\u5883\u69cb\u7bc9\u624b\u9806\u306b\u3064\u3044\u3066\u8a73\u3057\u304f\u89e3\u8aac\u3057\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"i-18\">\u5b9f\u8df5\uff1aTerraform\u306b\u3088\u308bECS\u74b0\u5883\u69cb\u7bc9\u624b\u9806<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-19\">VPC\u3068\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30ea\u30bd\u30fc\u30b9\u306e\u5b9a\u7fa9<\/h3>\n\n\n\n<p>\u307e\u305a\u3001ECS\u74b0\u5883\u306e\u57fa\u76e4\u3068\u306a\u308b\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30a4\u30f3\u30d5\u30e9\u3092\u69cb\u7bc9\u3057\u307e\u3059\u3002<\/p>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-20\">1. VPC\u306e\u4f5c\u6210<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># VPC\u306e\u5b9a\u7fa9\nresource \"aws_vpc\" \"main\" {\n  cidr_block           = \"10.0.0.0\/16\"\n  enable_dns_hostnames = true\n  enable_dns_support   = true\n\n  tags = {\n    Name = \"ecs-vpc\"\n    Environment = var.environment\n  }\n}\n\n# \u30b5\u30d6\u30cd\u30c3\u30c8\u306e\u5b9a\u7fa9\nresource \"aws_subnet\" \"private\" {\n  count             = length(var.availability_zones)\n  vpc_id            = aws_vpc.main.id\n  cidr_block        = cidrsubnet(aws_vpc.main.cidr_block, 8, count.index)\n  availability_zone = var.availability_zones[count.index]\n\n  tags = {\n    Name = \"private-subnet-${count.index + 1}\"\n  }\n}\n\n# \u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u30b2\u30fc\u30c8\u30a6\u30a7\u30a4\nresource \"aws_internet_gateway\" \"main\" {\n  vpc_id = aws_vpc.main.id\n\n  tags = {\n    Name = \"ecs-igw\"\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-21\">2. \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306e\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_security_group\" \"ecs_tasks\" {\n  name        = \"ecs-tasks-sg\"\n  description = \"Allow inbound traffic for ECS tasks\"\n  vpc_id      = aws_vpc.main.id\n\n  ingress {\n    protocol        = \"tcp\"\n    from_port       = 80\n    to_port         = 80\n    security_groups = [aws_security_group.alb.id]\n  }\n\n  egress {\n    protocol    = \"-1\"\n    from_port   = 0\n    to_port     = 0\n    cidr_blocks = [\"0.0.0.0\/0\"]\n  }\n}<\/pre>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-22\">ECS\u30af\u30e9\u30b9\u30bf\u30fc\u3068\u30bf\u30b9\u30af\u5b9a\u7fa9\u306e\u8a2d\u5b9a<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-23\">1. \u30af\u30e9\u30b9\u30bf\u30fc\u306e\u4f5c\u6210<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_ecs_cluster\" \"main\" {\n  name = \"${var.project_name}-cluster\"\n\n  setting {\n    name  = \"containerInsights\"\n    value = \"enabled\"\n  }\n\n  tags = {\n    Environment = var.environment\n  }\n}\n\n# \u30af\u30e9\u30b9\u30bf\u30fc\u306e\u30ad\u30e3\u30d1\u30b7\u30c6\u30a3\u30fc\u30d7\u30ed\u30d0\u30a4\u30c0\u30fc\nresource \"aws_ecs_cluster_capacity_providers\" \"main\" {\n  cluster_name = aws_ecs_cluster.main.name\n\n  capacity_providers = [\"FARGATE\", \"FARGATE_SPOT\"]\n\n  default_capacity_provider_strategy {\n    base              = 1\n    weight            = 100\n    capacity_provider = \"FARGATE\"\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-24\">2. \u30bf\u30b9\u30af\u5b9a\u7fa9\u306e\u4f5c\u6210<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_ecs_task_definition\" \"app\" {\n  family                   = \"${var.project_name}-task\"\n  requires_compatibilities = [\"FARGATE\"]\n  network_mode            = \"awsvpc\"\n  cpu                     = var.task_cpu\n  memory                  = var.task_memory\n  execution_role_arn      = aws_iam_role.ecs_task_execution_role.arn\n  task_role_arn           = aws_iam_role.ecs_task_role.arn\n\n  container_definitions = jsonencode([\n    {\n      name         = var.container_name\n      image        = \"${var.ecr_repository_url}:${var.image_tag}\"\n      essential    = true\n      portMappings = [\n        {\n          containerPort = var.container_port\n          protocol      = \"tcp\"\n        }\n      ]\n      logConfiguration = {\n        logDriver = \"awslogs\"\n        options = {\n          awslogs-group         = aws_cloudwatch_log_group.app.name\n          awslogs-region        = var.aws_region\n          awslogs-stream-prefix = \"ecs\"\n        }\n      }\n      environment = var.container_environment\n      secrets     = var.container_secrets\n    }\n  ])\n}<\/pre>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-25\">\u30b5\u30fc\u30d3\u30b9\u5b9a\u7fa9\u3068\u30ed\u30fc\u30c9\u30d0\u30e9\u30f3\u30b5\u30fc\u306e\u7d71\u5408<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-26\">1. Application Load Balancer\u306e\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_lb\" \"main\" {\n  name               = \"${var.project_name}-alb\"\n  internal           = false\n  load_balancer_type = \"application\"\n  security_groups    = [aws_security_group.alb.id]\n  subnets           = aws_subnet.public[*].id\n\n  enable_deletion_protection = true\n\n  tags = {\n    Environment = var.environment\n  }\n}\n\nresource \"aws_lb_listener\" \"http\" {\n  load_balancer_arn = aws_lb.main.arn\n  port              = \"80\"\n  protocol          = \"HTTP\"\n\n  default_action {\n    type             = \"forward\"\n    target_group_arn = aws_lb_target_group.app.arn\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-27\">2. ECS\u30b5\u30fc\u30d3\u30b9\u306e\u5b9a\u7fa9<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_ecs_service\" \"app\" {\n  name                               = \"${var.project_name}-service\"\n  cluster                           = aws_ecs_cluster.main.id\n  task_definition                   = aws_ecs_task_definition.app.arn\n  desired_count                     = var.service_desired_count\n  deployment_minimum_healthy_percent = 100\n  deployment_maximum_percent        = 200\n  launch_type                      = \"FARGATE\"\n  scheduling_strategy              = \"REPLICA\"\n\n  network_configuration {\n    security_groups  = [aws_security_group.ecs_tasks.id]\n    subnets         = aws_subnet.private[*].id\n    assign_public_ip = false\n  }\n\n  load_balancer {\n    target_group_arn = aws_lb_target_group.app.arn\n    container_name   = var.container_name\n    container_port   = var.container_port\n  }\n\n  deployment_controller {\n    type = \"ECS\"\n  }\n\n  deployment_circuit_breaker {\n    enable   = true\n    rollback = true\n  }\n\n  lifecycle {\n    ignore_changes = [task_definition, desired_count]\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-28\">3. Auto Scaling\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_appautoscaling_target\" \"ecs_target\" {\n  max_capacity       = 4\n  min_capacity       = 1\n  resource_id        = \"service\/${aws_ecs_cluster.main.name}\/${aws_ecs_service.app.name}\"\n  scalable_dimension = \"ecs:service:DesiredCount\"\n  service_namespace  = \"ecs\"\n}\n\nresource \"aws_appautoscaling_policy\" \"ecs_policy_cpu\" {\n  name               = \"cpu-auto-scaling\"\n  policy_type        = \"TargetTrackingScaling\"\n  resource_id        = aws_appautoscaling_target.ecs_target.resource_id\n  scalable_dimension = aws_appautoscaling_target.ecs_target.scalable_dimension\n  service_namespace  = aws_appautoscaling_target.ecs_target.service_namespace\n\n  target_tracking_scaling_policy_configuration {\n    predefined_metric_specification {\n      predefined_metric_type = \"ECSServiceAverageCPUUtilization\"\n    }\n    target_value = 80.0\n  }\n}<\/pre>\n\n\n\n<p>\u3053\u306e\u30b3\u30fc\u30c9\u5168\u4f53\u306f\u3001\u4ee5\u4e0b\u306e\u7279\u5fb4\u3092\u6301\u3064\u672c\u756a\u74b0\u5883\u306b\u5bfe\u5fdc\u3057\u305fECS\u74b0\u5883\u3092\u69cb\u7bc9\u3057\u307e\u3059\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30de\u30eb\u30c1AZ\u69cb\u6210\u306b\u3088\u308b\u9ad8\u53ef\u7528\u6027<\/li>\n\n\n\n<li>Fargate\u306b\u3088\u308b\u30b5\u30fc\u30d0\u30fc\u30ec\u30b9\u30b3\u30f3\u30c6\u30ca\u5b9f\u884c<\/li>\n\n\n\n<li>\u30aa\u30fc\u30c8\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u306b\u3088\u308b\u8ca0\u8377\u5bfe\u5fdc<\/li>\n\n\n\n<li>ALB\u306b\u3088\u308b\u8ca0\u8377\u5206\u6563<\/li>\n\n\n\n<li>CloudWatch\u306b\u3088\u308b\u30ed\u30b0\u7ba1\u7406<\/li>\n\n\n\n<li>\u30bb\u30ad\u30e5\u30a2\u306a\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u8a2d\u5b9a<\/li>\n<\/ul>\n\n\n\n<p>\u5404\u30ea\u30bd\u30fc\u30b9\u306e\u8a2d\u5b9a\u5024\u306f\u5909\u6570\u5316\u3055\u308c\u3066\u304a\u308a\u3001\u74b0\u5883\u306b\u5fdc\u3058\u3066\u67d4\u8edf\u306b\u8abf\u6574\u53ef\u80fd\u3067\u3059\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"i-29\">\u672c\u756a\u904b\u7528\u306b\u5411\u3051\u305f10\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-30\">\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u3068IAM\u30ed\u30fc\u30eb\u306e\u6700\u5c0f\u6a29\u9650\u8a2d\u5b9a<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-31\">1. \u6700\u5c0f\u6a29\u9650\u306eIAM\u30dd\u30ea\u30b7\u30fc\u8a2d\u8a08<\/h4>\n\n\n\n<p>\u30bf\u30b9\u30af\u5b9f\u884c\u30ed\u30fc\u30eb\u306e\u4f8b:<\/p>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_iam_role_policy\" \"ecs_task_execution_policy\" {\n  name = \"ecs-task-execution-policy\"\n  role = aws_iam_role.ecs_task_execution_role.id\n\n  policy = jsonencode({\n    Version = \"2012-10-17\"\n    Statement = [\n      {\n        Effect = \"Allow\"\n        Action = [\n          \"ecr:GetAuthorizationToken\",\n          \"ecr:BatchCheckLayerAvailability\",\n          \"ecr:GetDownloadUrlForLayer\",\n          \"ecr:BatchGetImage\",\n          \"logs:CreateLogStream\",\n          \"logs:PutLogEvents\"\n        ]\n        Resource = \"*\"\n      }\n    ]\n  })\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-32\">2. \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306e\u7d30\u304b\u306a\u5236\u5fa1<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_security_group_rule\" \"allow_health_check\" {\n  type                     = \"ingress\"\n  from_port                = 80\n  to_port                  = 80\n  protocol                 = \"tcp\"\n  source_security_group_id = aws_security_group.alb.id\n  security_group_id        = aws_security_group.ecs_tasks.id\n  description             = \"Allow health check from ALB\"\n}<\/pre>\n\n\n\n<p>\u91cd\u8981\u306a\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8a2d\u5b9a\u30c1\u30a7\u30c3\u30af\u30ea\u30b9\u30c8:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>[ ] VPC\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u306e\u9069\u5207\u306a\u8a2d\u5b9a<\/li>\n\n\n\n<li>[ ] Secrets Manager\u306e\u5229\u7528<\/li>\n\n\n\n<li>[ ] \u30b3\u30f3\u30c6\u30ca\u30a4\u30e1\u30fc\u30b8\u306e\u8106\u5f31\u6027\u30b9\u30ad\u30e3\u30f3<\/li>\n\n\n\n<li>[ ] \u901a\u4fe1\u306e\u6697\u53f7\u5316\uff08TLS\uff09<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-33\">\u30aa\u30fc\u30c8\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u306e\u52b9\u7387\u7684\u306a\u8a2d\u5b9a\u65b9\u6cd5<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-34\">1. \u8907\u6570\u30e1\u30c8\u30ea\u30af\u30b9\u306b\u3088\u308b\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_appautoscaling_policy\" \"ecs_policy_memory\" {\n  name               = \"memory-auto-scaling\"\n  policy_type        = \"TargetTrackingScaling\"\n  resource_id        = aws_appautoscaling_target.ecs_target.resource_id\n  scalable_dimension = aws_appautoscaling_target.ecs_target.scalable_dimension\n  service_namespace  = aws_appautoscaling_target.ecs_target.service_namespace\n\n  target_tracking_scaling_policy_configuration {\n    predefined_metric_specification {\n      predefined_metric_type = \"ECSServiceAverageMemoryUtilization\"\n    }\n    target_value = 75.0\n    scale_in_cooldown  = 300\n    scale_out_cooldown = 60\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-35\">2. \u30ab\u30b9\u30bf\u30e0\u30e1\u30c8\u30ea\u30af\u30b9\u306e\u6d3b\u7528<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_appautoscaling_policy\" \"ecs_policy_custom\" {\n  name               = \"custom-metric-scaling\"\n  policy_type        = \"TargetTrackingScaling\"\n  resource_id        = aws_appautoscaling_target.ecs_target.resource_id\n  scalable_dimension = aws_appautoscaling_target.ecs_target.scalable_dimension\n  service_namespace  = aws_appautoscaling_target.ecs_target.service_namespace\n\n  target_tracking_scaling_policy_configuration {\n    customized_metric_specification {\n      metric_name = \"ApplicationRequestCount\"\n      namespace   = \"AWS\/ApplicationELB\"\n      statistic   = \"Average\"\n      unit        = \"Count\"\n      dimensions {\n        name  = \"TargetGroup\"\n        value = aws_lb_target_group.app.arn_suffix\n      }\n    }\n    target_value = 1000\n  }\n}<\/pre>\n\n\n\n<p>\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u6700\u9069\u5316\u306e\u30dd\u30a4\u30f3\u30c8:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30b9\u30b1\u30fc\u30eb\u30a2\u30a6\u30c8\u306f\u8fc5\u901f\u306b\uff0860\u79d2\uff09<\/li>\n\n\n\n<li>\u30b9\u30b1\u30fc\u30eb\u30a4\u30f3\u306f\u614e\u91cd\u306b\uff08300\u79d2\uff09<\/li>\n\n\n\n<li>\u30e1\u30c8\u30ea\u30af\u30b9\u306e\u7d44\u307f\u5408\u308f\u305b\u306b\u3088\u308b\u9069\u5207\u306a\u5224\u65ad<\/li>\n\n\n\n<li>\u30b3\u30b9\u30c8\u52b9\u7387\u3092\u8003\u616e\u3057\u305f\u30bf\u30fc\u30b2\u30c3\u30c8\u5024\u8a2d\u5b9a<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-36\">\u30ed\u30b0\u7ba1\u7406\u3068\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u306e\u5b9f\u88c5<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-37\">1. \u69cb\u9020\u5316\u30ed\u30b0\u306e\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_cloudwatch_log_group\" \"ecs_app\" {\n  name              = \"\/ecs\/${var.project_name}\"\n  retention_in_days = 30\n\n  kms_key_id = aws_kms_key.log_encryption.arn\n\n  tags = {\n    Environment = var.environment\n    Application = var.project_name\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-38\">2. \u30a2\u30e9\u30fc\u30c8\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_cloudwatch_metric_alarm\" \"service_cpu_high\" {\n  alarm_name          = \"${var.project_name}-cpu-utilization-high\"\n  comparison_operator = \"GreaterThanThreshold\"\n  evaluation_periods  = \"2\"\n  metric_name        = \"CPUUtilization\"\n  namespace          = \"AWS\/ECS\"\n  period             = \"300\"\n  statistic          = \"Average\"\n  threshold          = \"85\"\n  alarm_description  = \"CPU utilization high\"\n  alarm_actions      = [aws_sns_topic.alerts.arn]\n\n  dimensions = {\n    ClusterName = aws_ecs_cluster.main.name\n    ServiceName = aws_ecs_service.app.name\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-39\">3. \u30b3\u30f3\u30c6\u30ca\u30a4\u30f3\u30b5\u30a4\u30c8\u306e\u6d3b\u7528<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_ecs_cluster\" \"main\" {\n  name = \"${var.project_name}-cluster\"\n\n  setting {\n    name  = \"containerInsights\"\n    value = \"enabled\"\n  }\n\n  capacity_providers = [\"FARGATE\", \"FARGATE_SPOT\"]\n}<\/pre>\n\n\n\n<p>\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>\u30e1\u30c8\u30ea\u30af\u30b9\u306e\u968e\u5c64\u5316<\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30a4\u30f3\u30d5\u30e9\u30ec\u30d9\u30eb\uff08CPU\u3001\u30e1\u30e2\u30ea\uff09<\/li>\n\n\n\n<li>\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u30ec\u30d9\u30eb\uff08\u30ec\u30b9\u30dd\u30f3\u30b9\u30bf\u30a4\u30e0\uff09<\/li>\n\n\n\n<li>\u30d3\u30b8\u30cd\u30b9\u30ec\u30d9\u30eb\uff08\u30c8\u30e9\u30f3\u30b6\u30af\u30b7\u30e7\u30f3\u6570\uff09<\/li>\n<\/ul>\n\n\n\n<ol class=\"wp-block-list\">\n<li>\u30c0\u30c3\u30b7\u30e5\u30dc\u30fc\u30c9\u4f5c\u6210<\/li>\n<\/ol>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_cloudwatch_dashboard\" \"main\" {\n  dashboard_name = \"${var.project_name}-dashboard\"\n\n  dashboard_body = jsonencode({\n    widgets = [\n      {\n        type   = \"metric\"\n        x      = 0\n        y      = 0\n        width  = 12\n        height = 6\n\n        properties = {\n          metrics = [\n            [\"AWS\/ECS\", \"CPUUtilization\", \"ServiceName\", aws_ecs_service.app.name]\n          ]\n          period = 300\n          stat   = \"Average\"\n          region = var.aws_region\n          title  = \"CPU Utilization\"\n        }\n      }\n    ]\n  })\n}<\/pre>\n\n\n\n<p>\u3053\u308c\u3089\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9\u3092\u5b9f\u88c5\u3059\u308b\u3053\u3068\u3067\u3001\u4ee5\u4e0b\u306e\u30e1\u30ea\u30c3\u30c8\u304c\u5f97\u3089\u308c\u307e\u3059\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30ea\u30b9\u30af\u306e\u6700\u5c0f\u5316<\/li>\n\n\n\n<li>\u904b\u7528\u30b3\u30b9\u30c8\u306e\u6700\u9069\u5316<\/li>\n\n\n\n<li>\u30b7\u30b9\u30c6\u30e0\u306e\u5b89\u5b9a\u6027\u5411\u4e0a<\/li>\n\n\n\n<li>\u554f\u984c\u306e\u65e9\u671f\u767a\u898b\u3068\u5bfe\u5fdc<\/li>\n\n\n\n<li>\u30b9\u30b1\u30fc\u30e9\u30d3\u30ea\u30c6\u30a3\u306e\u78ba\u4fdd<\/li>\n<\/ul>\n\n\n\n<p>\u6b21\u7ae0\u3067\u306f\u3001\u3053\u308c\u3089\u306e\u8a2d\u5b9a\u3092\u884c\u3046\u969b\u306b\u767a\u751f\u3059\u308b\u53ef\u80fd\u6027\u306e\u3042\u308b\u30c8\u30e9\u30d6\u30eb\u3068\u305d\u306e\u89e3\u6c7a\u7b56\u306b\u3064\u3044\u3066\u89e3\u8aac\u3057\u307e\u3059\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"i-40\">\u3088\u304f\u3042\u308b\u30c8\u30e9\u30d6\u30eb\u3068\u89e3\u6c7a\u7b56<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-41\">\u30c7\u30d7\u30ed\u30a4\u5931\u6557\u6642\u306e\u30c8\u30e9\u30d6\u30eb\u30b7\u30e5\u30fc\u30c6\u30a3\u30f3\u30b0<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-42\">1. \u30bf\u30b9\u30af\u8d77\u52d5\u5931\u6557\u306e\u8a3a\u65ad\u3068\u5bfe\u7b56<\/h4>\n\n\n\n<p>\u3088\u304f\u3042\u308b\u75c7\u72b6\u3068\u89e3\u6c7a\u65b9\u6cd5:<\/p>\n\n\n<div id=\"id-9f649564-d649-4451-8705-b56add12ecbf\">\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>\u75c7\u72b6<\/th><th>\u8003\u3048\u3089\u308c\u308b\u539f\u56e0<\/th><th>\u89e3\u6c7a\u7b56<\/th><\/tr><\/thead><tbody><tr><td>STOPPED<\/td><td>\u30e1\u30e2\u30ea\u4e0d\u8db3<\/td><td>\u30bf\u30b9\u30af\u5b9a\u7fa9\u306e\u30e1\u30e2\u30ea\u8a2d\u5b9a\u898b\u76f4\u3057<\/td><\/tr><tr><td>PENDING<\/td><td>\u30b5\u30d6\u30cd\u30c3\u30c8\u306e\u5bb9\u91cf\u4e0d\u8db3<\/td><td>VPC\u306e\u30b5\u30a4\u30ba\u8abf\u6574<\/td><\/tr><tr><td>UNHEALTHY<\/td><td>\u30d8\u30eb\u30b9\u30c1\u30a7\u30c3\u30af\u5931\u6557<\/td><td>\u30d8\u30eb\u30b9\u30c1\u30a7\u30c3\u30af\u30d1\u30b9\u8a2d\u5b9a\u306e\u4fee\u6b63<\/td><\/tr><\/tbody><\/table><\/figure>\n<\/div>\n\n\n<h5 class=\"wp-block-heading\" id=\"i-43\">\u30e1\u30e2\u30ea\u95a2\u9023\u306e\u554f\u984c\u89e3\u6c7a\u4f8b<\/h5>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_ecs_task_definition\" \"app\" {\n  family                   = \"${var.project_name}-task\"\n  requires_compatibilities = [\"FARGATE\"]\n  network_mode            = \"awsvpc\"\n  # \u30e1\u30e2\u30ea\u8a2d\u5b9a\u306e\u6700\u9069\u5316\n  cpu                     = 512  # 0.5 vCPU\n  memory                  = 1024 # 1GB\n\n  container_definitions = jsonencode([\n    {\n      name  = var.container_name\n      image = \"${var.ecr_repository_url}:${var.image_tag}\"\n      # \u30b3\u30f3\u30c6\u30ca\u30ec\u30d9\u30eb\u3067\u306e\u30e1\u30e2\u30ea\u5236\u9650\n      memoryReservation = 900  # \u30bd\u30d5\u30c8\u5236\u9650\n      memory            = 1024 # \u30cf\u30fc\u30c9\u5236\u9650\n      # \u30d8\u30eb\u30b9\u30c1\u30a7\u30c3\u30af\u8a2d\u5b9a\n      healthCheck = {\n        command     = [\"CMD-SHELL\", \"curl -f http:\/\/localhost\/health || exit 1\"]\n        interval    = 30\n        timeout     = 5\n        retries     = 3\n        startPeriod = 60\n      }\n    }\n  ])\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-44\">2. \u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u63a5\u7d9a\u6027\u306e\u554f\u984c\u89e3\u6c7a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># VPC\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u306e\u8a2d\u5b9a\nresource \"aws_vpc_endpoint\" \"ecr_dkr\" {\n  vpc_id             = aws_vpc.main.id\n  service_name       = \"com.amazonaws.${var.aws_region}.ecr.dkr\"\n  vpc_endpoint_type  = \"Interface\"\n  subnet_ids         = aws_subnet.private[*].id\n  security_group_ids = [aws_security_group.vpc_endpoints.id]\n\n  private_dns_enabled = true\n}\n\n# \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b0\u30eb\u30fc\u30d7\u306e\u9069\u5207\u306a\u8a2d\u5b9a\nresource \"aws_security_group\" \"vpc_endpoints\" {\n  name        = \"vpc-endpoints-sg\"\n  description = \"Security group for VPC endpoints\"\n  vpc_id      = aws_vpc.main.id\n\n  ingress {\n    from_port       = 443\n    to_port         = 443\n    protocol        = \"tcp\"\n    security_groups = [aws_security_group.ecs_tasks.id]\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-45\">\u30c7\u30d7\u30ed\u30a4\u30c8\u30e9\u30d6\u30eb\u8a3a\u65ad\u7528\u306eCloudWatch\u30ed\u30b0\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u8a73\u7d30\u306a\u30ed\u30b0\u8a2d\u5b9a\nresource \"aws_cloudwatch_log_group\" \"ecs_deployment\" {\n  name              = \"\/ecs\/deployment\/${var.project_name}\"\n  retention_in_days = 14\n}\n\n# \u30c7\u30d7\u30ed\u30a4\u30e1\u30f3\u30c8\u5931\u6557\u30a2\u30e9\u30fc\u30c8\nresource \"aws_cloudwatch_metric_alarm\" \"deployment_failed\" {\n  alarm_name          = \"${var.project_name}-deployment-failed\"\n  comparison_operator = \"GreaterThanThreshold\"\n  evaluation_periods  = \"1\"\n  metric_name        = \"DeploymentFailed\"\n  namespace          = \"ECS\/DeploymentMetrics\"\n  period             = \"60\"\n  statistic          = \"Sum\"\n  threshold          = \"0\"\n  alarm_description  = \"ECS\u30c7\u30d7\u30ed\u30a4\u30e1\u30f3\u30c8\u5931\u6557\u3092\u691c\u77e5\"\n  alarm_actions      = [aws_sns_topic.alerts.arn]\n\n  dimensions = {\n    ClusterName = aws_ecs_cluster.main.name\n    ServiceName = aws_ecs_service.app.name\n  }\n}<\/pre>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-46\">\u30d1\u30d5\u30a9\u30fc\u30de\u30f3\u30b9\u6700\u9069\u5316\u306e\u30dd\u30a4\u30f3\u30c8<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-47\">1. \u30b3\u30f3\u30c6\u30ca\u30ec\u30d9\u30eb\u306e\u30d1\u30d5\u30a9\u30fc\u30de\u30f3\u30b9\u30c1\u30e5\u30fc\u30cb\u30f3\u30b0<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_ecs_task_definition\" \"app\" {\n  # \u65e2\u5b58\u306e\u8a2d\u5b9a\u306b\u52a0\u3048\u3066\n  container_definitions = jsonencode([\n    {\n      name = var.container_name\n      # CPU\u5236\u9650\u306e\u8a2d\u5b9a\n      cpu = 256\n      # ulimits\u306e\u8a2d\u5b9a\n      ulimits = [\n        {\n          name      = \"nofile\"\n          softLimit = 65536\n          hardLimit = 65536\n        }\n      ]\n      # dockerLabels\u306e\u6d3b\u7528\n      dockerLabels = {\n        \"com.datadoghq.ad.logs\"    = \"[{\\\"source\\\": \\\"${var.project_name}\\\", \\\"service\\\": \\\"${var.service_name}\\\"}]\"\n        \"com.newrelic.monitor\"      = \"true\"\n        \"performance.monitoring\"    = \"enabled\"\n      }\n    }\n  ])\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-48\">2. \u30aa\u30fc\u30c8\u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u306e\u6700\u9069\u5316<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u8a2d\u5b9a\u306e\u6539\u5584\nresource \"aws_appautoscaling_policy\" \"ecs_policy_request_count\" {\n  name               = \"request-count-scaling\"\n  policy_type        = \"TargetTrackingScaling\"\n  resource_id        = aws_appautoscaling_target.ecs_target.resource_id\n  scalable_dimension = aws_appautoscaling_target.ecs_target.scalable_dimension\n  service_namespace  = aws_appautoscaling_target.ecs_target.service_namespace\n\n  target_tracking_scaling_policy_configuration {\n    predefined_metric_specification {\n      predefined_metric_type = \"ALBRequestCountPerTarget\"\n    }\n    target_value = 1000\n    # \u30b9\u30b1\u30fc\u30ea\u30f3\u30b0\u306e\u5fdc\u7b54\u6027\u3092\u5411\u4e0a\n    scale_in_cooldown  = 180  # 3\u5206\n    scale_out_cooldown = 30   # 30\u79d2\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-49\">\u30d1\u30d5\u30a9\u30fc\u30de\u30f3\u30b9\u76e3\u8996\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9<\/h4>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u30e1\u30c8\u30ea\u30af\u30b9\u53ce\u96c6\u306e\u6700\u9069\u5316<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30ab\u30b9\u30bf\u30e0\u30e1\u30c8\u30ea\u30af\u30b9\u306e\u6d3b\u7528<\/li>\n\n\n\n<li>\u9069\u5207\u306a\u30b5\u30f3\u30d7\u30ea\u30f3\u30b0\u30ec\u30fc\u30c8<\/li>\n\n\n\n<li>\u91cd\u8981\u306aKPI\u306e\u8a2d\u5b9a<\/li>\n<\/ul>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u30a2\u30e9\u30fc\u30c8\u95be\u5024\u306e\u8a2d\u5b9a\u4f8b<\/strong><\/li>\n<\/ol>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">resource \"aws_cloudwatch_metric_alarm\" \"service_latency\" {\n  alarm_name          = \"${var.project_name}-high-latency\"\n  comparison_operator = \"GreaterThanThreshold\"\n  evaluation_periods  = \"3\"\n  metric_name        = \"TargetResponseTime\"\n  namespace          = \"AWS\/ApplicationELB\"\n  period             = \"60\"\n  statistic          = \"Average\"\n  threshold          = \"1\"  # 1\u79d2\u4ee5\u4e0a\u306e\u30ec\u30a4\u30c6\u30f3\u30b7\u30fc\n  alarm_description  = \"High application latency detected\"\n  alarm_actions      = [aws_sns_topic.alerts.arn]\n\n  dimensions = {\n    TargetGroup = aws_lb_target_group.app.arn_suffix\n    LoadBalancer = aws_lb.main.arn_suffix\n  }\n}<\/pre>\n\n\n\n<p>\u3053\u308c\u3089\u306e\u8a2d\u5b9a\u3068\u5bfe\u7b56\u306b\u3088\u308a\u3001\u4ee5\u4e0b\u306e\u52b9\u679c\u304c\u671f\u5f85\u3067\u304d\u307e\u3059\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30c7\u30d7\u30ed\u30a4\u5931\u6557\u306e\u65e9\u671f\u691c\u77e5\u3068\u81ea\u52d5\u5fa9\u65e7<\/li>\n\n\n\n<li>\u30d1\u30d5\u30a9\u30fc\u30de\u30f3\u30b9\u30dc\u30c8\u30eb\u30cd\u30c3\u30af\u306e\u7279\u5b9a\u3068\u89e3\u6d88<\/li>\n\n\n\n<li>\u30b7\u30b9\u30c6\u30e0\u5b89\u5b9a\u6027\u306e\u5411\u4e0a<\/li>\n\n\n\n<li>\u904b\u7528\u30b3\u30b9\u30c8\u306e\u6700\u9069\u5316<\/li>\n<\/ul>\n\n\n\n<p>\u6b21\u7ae0\u3067\u306f\u3001\u3055\u3089\u306a\u308b\u767a\u5c55\u7684\u306a\u30c8\u30d4\u30c3\u30af\u3068\u3057\u3066\u3001CI\/CD\u30d1\u30a4\u30d7\u30e9\u30a4\u30f3\u3068\u306e\u7d71\u5408\u3084\u30de\u30eb\u30c1\u30ea\u30fc\u30b8\u30e7\u30f3\u5c55\u958b\u306b\u3064\u3044\u3066\u89e3\u8aac\u3057\u307e\u3059\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"i-50\">\u767a\u5c55\u7684\u306a\u30c8\u30d4\u30c3\u30af\u3068\u6b21\u306e\u30b9\u30c6\u30c3\u30d7<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-51\">CI\/CD\u30d1\u30a4\u30d7\u30e9\u30a4\u30f3\u3068\u306e\u7d71\u5408\u65b9\u6cd5<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-52\">1. GitHub Actions\u3092\u7528\u3044\u305f\u30c7\u30d7\u30ed\u30a4\u81ea\u52d5\u5316<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># .github\/workflows\/terraform-apply.yml\nname: 'Terraform Apply'\n\non:\n  push:\n    branches:\n      - main\n  pull_request:\n\nenv:\n  AWS_REGION: 'ap-northeast-1'\n  TF_VERSION: '1.5.0'\n\njobs:\n  terraform:\n    name: 'Terraform'\n    runs-on: ubuntu-latest\n\n    steps:\n    - name: Checkout\n      uses: actions\/checkout@v2\n\n    - name: Setup Terraform\n      uses: hashicorp\/setup-terraform@v1\n      with:\n        terraform_version: ${{ env.TF_VERSION }}\n\n    - name: Configure AWS Credentials\n      uses: aws-actions\/configure-aws-credentials@v1\n      with:\n        aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}\n        aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}\n        aws-region: ${{ env.AWS_REGION }}\n\n    - name: Terraform Format\n      run: terraform fmt -check\n\n    - name: Terraform Init\n      run: terraform init\n\n    - name: Terraform Plan\n      run: terraform plan -no-color\n      if: github.event_name == 'pull_request'\n\n    - name: Terraform Apply\n      run: terraform apply -auto-approve\n      if: github.ref == 'refs\/heads\/main'<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-53\">2. \u30c6\u30b9\u30c8\u81ea\u52d5\u5316\u306e\u5b9f\u88c5<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># test\/main.tf\nprovider \"aws\" {\n  region = \"ap-northeast-1\"\n  alias  = \"test\"\n}\n\nmodule \"ecs_test\" {\n  source = \"..\/modules\/ecs\"\n\n  providers = {\n    aws = aws.test\n  }\n\n  environment        = \"test\"\n  project_name      = \"test-project\"\n  vpc_cidr          = \"10.0.0.0\/16\"\n  availability_zones = [\"ap-northeast-1a\", \"ap-northeast-1c\"]\n\n  container_image   = \"nginx:latest\"\n  container_port    = 80\n  desired_count     = 1\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-54\">3. \u30d1\u30a4\u30d7\u30e9\u30a4\u30f3\u3067\u306e\u54c1\u8cea\u7ba1\u7406<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u4e8b\u524d\u30c1\u30a7\u30c3\u30af\u7528\u306enull_resource\u306e\u6d3b\u7528\nresource \"null_resource\" \"pre_deployment_check\" {\n  triggers = {\n    task_definition = aws_ecs_task_definition.app.arn\n  }\n\n  provisioner \"local-exec\" {\n    command = &lt;&lt;EOF\n      # \u30b3\u30f3\u30c6\u30ca\u30a4\u30e1\u30fc\u30b8\u306e\u8106\u5f31\u6027\u30b9\u30ad\u30e3\u30f3\n      aws ecr start-image-scan --repository-name ${var.repository_name} --image-id imageTag=${var.image_tag}\n\n      # \u30bf\u30b9\u30af\u5b9a\u7fa9\u306e\u691c\u8a3c\n      aws ecs describe-task-definition --task-definition ${aws_ecs_task_definition.app.family}\n    EOF\n  }\n}<\/pre>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"i-55\">\u30ea\u30fc\u30b8\u30e7\u30f3\u30de\u30eb\u30c1\u5c55\u958b\u306e\u30d9\u30b9\u30c8\u30d7\u30e9\u30af\u30c6\u30a3\u30b9<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-56\">1. \u30de\u30eb\u30c1\u30ea\u30fc\u30b8\u30e7\u30f3\u69cb\u6210\u306e\u57fa\u672c\u8a2d\u5b9a<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># providers.tf\nprovider \"aws\" {\n  region = \"ap-northeast-1\"\n  alias  = \"tokyo\"\n}\n\nprovider \"aws\" {\n  region = \"us-west-2\"\n  alias  = \"oregon\"\n}\n\n# \u30de\u30eb\u30c1\u30ea\u30fc\u30b8\u30e7\u30f3\u30e2\u30b8\u30e5\u30fc\u30eb\u306e\u547c\u3073\u51fa\u3057\nmodule \"ecs_tokyo\" {\n  source = \".\/modules\/ecs\"\n\n  providers = {\n    aws = aws.tokyo\n  }\n\n  environment = var.environment\n  region_name = \"tokyo\"\n}\n\nmodule \"ecs_oregon\" {\n  source = \".\/modules\/ecs\"\n\n  providers = {\n    aws = aws.oregon\n  }\n\n  environment = var.environment\n  region_name = \"oregon\"\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-57\">2. Route 53\u3092\u4f7f\u7528\u3057\u305f\u30b0\u30ed\u30fc\u30d0\u30eb\u30eb\u30fc\u30c6\u30a3\u30f3\u30b0<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u30b0\u30ed\u30fc\u30d0\u30eb\u30ed\u30fc\u30c9\u30d0\u30e9\u30f3\u30b7\u30f3\u30b0\u306e\u8a2d\u5b9a\nresource \"aws_route53_health_check\" \"primary\" {\n  provider = aws.tokyo\n\n  fqdn              = aws_lb.tokyo.dns_name\n  port              = 80\n  type              = \"HTTP\"\n  resource_path     = \"\/health\"\n  failure_threshold = \"3\"\n  request_interval  = \"30\"\n\n  tags = {\n    Name = \"primary-health-check\"\n  }\n}\n\nresource \"aws_route53_record\" \"global\" {\n  provider = aws.tokyo\n\n  zone_id = aws_route53_zone.main.zone_id\n  name    = \"global.example.com\"\n  type    = \"A\"\n\n  failover_routing_policy {\n    type = \"PRIMARY\"\n  }\n\n  alias {\n    name                   = aws_lb.tokyo.dns_name\n    zone_id                = aws_lb.tokyo.zone_id\n    evaluate_target_health = true\n  }\n\n  health_check_id = aws_route53_health_check.primary.id\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-58\">3. \u30af\u30ed\u30b9\u30ea\u30fc\u30b8\u30e7\u30f3\u306eState\u7ba1\u7406<\/h4>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># backend.tf\nterraform {\n  backend \"s3\" {\n    bucket         = \"terraform-state-bucket\"\n    key            = \"global\/s3\/terraform.tfstate\"\n    region         = \"ap-northeast-1\"\n    dynamodb_table = \"terraform-locks\"\n    encrypt        = true\n  }\n}\n\n# DynamoDB\u306b\u3088\u308bState Lock\nresource \"aws_dynamodb_table\" \"terraform_locks\" {\n  name         = \"terraform-locks\"\n  billing_mode = \"PAY_PER_REQUEST\"\n  hash_key     = \"LockID\"\n\n  attribute {\n    name = \"LockID\"\n    type = \"S\"\n  }\n\n  replica {\n    region_name = \"us-west-2\"\n  }\n}<\/pre>\n\n\n\n<h4 class=\"wp-block-heading\" id=\"i-59\">\u30de\u30eb\u30c1\u30ea\u30fc\u30b8\u30e7\u30f3\u5c55\u958b\u306e\u30c1\u30a7\u30c3\u30af\u30ea\u30b9\u30c8<\/h4>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u30ea\u30fc\u30b8\u30e7\u30f3\u9593\u306e\u6574\u5408\u6027\u78ba\u4fdd<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u5171\u901a\u306e\u8a2d\u5b9a\u3092variables\u3068\u3057\u3066\u7ba1\u7406<\/li>\n\n\n\n<li>\u30ea\u30fc\u30b8\u30e7\u30f3\u56fa\u6709\u306e\u8a2d\u5b9a\u3092\u660e\u78ba\u306b\u5206\u96e2<\/li>\n\n\n\n<li>\u30bf\u30b0\u4ed8\u3051\u30eb\u30fc\u30eb\u306e\u7d71\u4e00<\/li>\n<\/ul>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u969c\u5bb3\u5bfe\u7b56\u3068\u53ef\u7528\u6027\u5411\u4e0a<\/strong><\/li>\n<\/ol>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u30ea\u30fc\u30b8\u30e7\u30f3\u9593\u306e\u30d5\u30a7\u30a4\u30eb\u30aa\u30fc\u30d0\u30fc\u8a2d\u5b9a<\/li>\n\n\n\n<li>\u30d0\u30c3\u30af\u30a2\u30c3\u30d7\u3068\u5fa9\u65e7\u624b\u9806\u306e\u78ba\u7acb<\/li>\n\n\n\n<li>\u76e3\u8996\u3068\u30a2\u30e9\u30fc\u30c8\u306e\u7d71\u5408<\/li>\n<\/ul>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\"># \u30b0\u30ed\u30fc\u30d0\u30eb\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u306e\u8a2d\u5b9a\u4f8b\nresource \"aws_cloudwatch_metric_alarm\" \"global_health\" {\n  provider = aws.tokyo\n\n  alarm_name          = \"global-service-health\"\n  comparison_operator = \"LessThanThreshold\"\n  evaluation_periods  = \"2\"\n  metric_name        = \"HealthyHostCount\"\n  namespace          = \"AWS\/ApplicationELB\"\n  period             = \"60\"\n  statistic          = \"Average\"\n  threshold          = \"1\"\n  alarm_description  = \"\u30b0\u30ed\u30fc\u30d0\u30eb\u30b5\u30fc\u30d3\u30b9\u306e\u5065\u5168\u6027\u76e3\u8996\"\n  alarm_actions      = [aws_sns_topic.global_alerts.arn]\n\n  dimensions = {\n    LoadBalancer = aws_lb.tokyo.arn_suffix\n  }\n}<\/pre>\n\n\n\n<p>\u3053\u308c\u3089\u306e\u767a\u5c55\u7684\u306a\u8a2d\u5b9a\u306b\u3088\u308a\u3001\u4ee5\u4e0b\u306e\u3088\u3046\u306a\u9ad8\u5ea6\u306a\u904b\u7528\u304c\u53ef\u80fd\u306b\u306a\u308a\u307e\u3059\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u7d99\u7d9a\u7684\u306a\u30c7\u30d7\u30ed\u30a4\u30e1\u30f3\u30c8\u306e\u81ea\u52d5\u5316<\/li>\n\n\n\n<li>\u30b0\u30ed\u30fc\u30d0\u30eb\u30b9\u30b1\u30fc\u30eb\u3067\u306e\u53ef\u7528\u6027\u78ba\u4fdd<\/li>\n\n\n\n<li>\u52b9\u7387\u7684\u306a\u30c7\u30a3\u30b6\u30b9\u30bf\u30ea\u30ab\u30d0\u30ea<\/li>\n\n\n\n<li>\u7d71\u5408\u3055\u308c\u305f\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u3068\u904b\u7528<\/li>\n<\/ul>\n\n\n\n<p>\u30b7\u30b9\u30c6\u30e0\u306e\u66f4\u306a\u308b\u6539\u5584\u306e\u305f\u3081\u306b\u3001\u4ee5\u4e0b\u306e\u70b9\u306b\u3064\u3044\u3066\u3082\u691c\u8a0e\u3059\u308b\u3053\u3068\u3092\u304a\u52e7\u3081\u3057\u307e\u3059\uff1a<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>\u30b3\u30f3\u30c6\u30ca\u30aa\u30fc\u30b1\u30b9\u30c8\u30ec\u30fc\u30b7\u30e7\u30f3\u306e\u9ad8\u5ea6\u5316<\/li>\n\n\n\n<li>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5bfe\u7b56\u306e\u5f37\u5316<\/li>\n\n\n\n<li>\u30b3\u30b9\u30c8\u6700\u9069\u5316\u306e\u7d99\u7d9a\u7684\u306a\u5b9f\u65bd<\/li>\n\n\n\n<li>\u904b\u7528\u81ea\u52d5\u5316\u306e\u7bc4\u56f2\u62e1\u5927<\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":"<p>Warning: Undefined array key &#8220;is_admin&#8221; in \/home\/xs392991\/dexall.co.jp\/public_html\/articles\/wp-content\/themes\/ &#8230; <\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8],"tags":[],"class_list":{"0":"post-2347","1":"post","2":"type-post","3":"status-publish","4":"format-standard","6":"category-aws","7":"nothumb"},"_links":{"self":[{"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=\/wp\/v2\/posts\/2347","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2347"}],"version-history":[{"count":2,"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=\/wp\/v2\/posts\/2347\/revisions"}],"predecessor-version":[{"id":2349,"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=\/wp\/v2\/posts\/2347\/revisions\/2349"}],"wp:attachment":[{"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2347"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2347"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dexall.co.jp\/articles\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2347"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}