Skip to main content

azurerm_aks_clusters resource

[edit on GitHub]

Warning

This resource will be deprecated when version 2 of the inspec-azure resource pack is released. Please use the azure_aks_clusters resource instead.

Use the azurerm_aks_clusters InSpec audit resource to enumerate AKS Clusters.

Azure REST API version

This resource interacts with version 2018-03-31 of the Azure Management API. For more information see the official Azure documentation.

At the moment, there doesn’t appear to be a way to select the version of the Azure API docs. If you notice a newer version being referenced in the official documentation please open an issue or submit a pull request using the updated version.

Availability

Installation

This resource is available in the inspec-azure resourcepack. To use it, add the following to your inspec.yml in your top-level profile:

depends:
  - name: inspec-azure
    git: https://github.com/inspec/inspec-azure.git

You’ll also need to setup your Azure credentials; see the resource pack README.

Syntax

An azurerm_aks_clusters resource block identifies AKS Clusters by Resource Group.

describe azurerm_aks_clusters(resource_group: 'ExampleGroup') do
  ...
end

Examples

Test that an example Resource Group has the named AKS Cluster

describe azurerm_aks_clusters(resource_group: 'ExampleGroup') do
  its('names') { should include('ClusterName') }
end

Properties

  • names

names

The name of the AKS Cluster

its('names') { should include('ClusterName') }

Matchers

This InSpec audit resource has the following special matchers. For a full list of available matchers, please visit our Universal Matcherspage.

exists

The control will pass if the resource returns a result. Use should_not if you expect zero matches.

# If we expect 'ExampleGroup' Resource Group to have AKS Clusters
describe azurerm_aks_clusters(resource_group: 'ExampleGroup') do
  it { should exist }
end

# If we expect 'EmptyExampleGroup' Resource Group to not have AKS Clusters
describe azurerm_aks_clusters(resource_group: 'EmptyExampleGroup') do
  it { should_not exist }
end

Azure Permissions

Your ServicePrincipal must be setup with a contributor role on the subscription you wish to test.

Was this page helpful?

×









Search Results