Protected
Optional
albReadonly
amiReadonly
appReadonly
autoArn of the AutoScalingGroup
Readonly
autoName of the AutoScalingGroup
Readonly
envThe environment this resource belongs to. For resources that are created and managed by the CDK (generally, those created by creating new class instances like Role, Bucket, etc.), this is always the same as the environment of the stack they belong to; however, for imported resources (those obtained from static methods like fromRoleArn, fromBucketName, etc.), that might be different than the stack they were imported into.
Readonly
grantThe principal to grant permissions to
Protected
hasReadonly
idThe ID of the construct with the App suffix.
This should be used in place of id
when trying to reference the construct.
Optional
Readonly
imageReadonly
instanceOptional
Readonly
maxThe maximum amount of time that an instance can be in service.
Protected
Optional
newReadonly
nodeThe tree node.
Readonly
osThe type of OS instances of this fleet are running.
Protected
Readonly
physicalReturns a string-encoded token that resolves to the physical name that should be passed to the CloudFormation resource.
This value will resolve to one of the following:
"my-awesome-bucket"
)undefined
, when a name should be generated by CloudFormationOptional
Readonly
spotThe maximum spot price configured for the autoscaling group. undefined
indicates that this group uses on-demand capacity.
Readonly
stackThe stack in which this resource is defined.
The network connections associated with this resource.
The IAM Role in the instance profile
The Base64-encoded user data to make available to the launched EC2 instances.
Use a CloudFormation Init configuration at instance startup
This does the following:
cfn-init
and cfn-signal
.cfn-init
to finish
before reporting success.Optional
options: ApplyCloudFormationInitOptionsApply the given removal policy to this resource
The Removal Policy controls what happens to this resource when it stops being managed by CloudFormation, either because you've removed it from the CDK application or because you've made a change that requires the resource to be replaced.
The resource can be deleted (RemovalPolicy.DESTROY
), or left in your AWS
account for data recovery and cleanup later (RemovalPolicy.RETAIN
).
Protected
generateProtected
getReturns an environment-sensitive token that should be used for the
resource's "ARN" attribute (e.g. bucket.bucketArn
).
Normally, this token will resolve to arnAttr
, but if the resource is
referenced across environments, arnComponents
will be used to synthesize
a concrete ARN with the resource's physical name. Make sure to reference
this.physicalName
in arnComponents
.
The CFN attribute which resolves to the ARN of the resource.
Commonly it will be called "Arn" (e.g. resource.attrArn
), but sometimes
it's the CFN resource's ref
.
The format of the ARN of this resource. You must
reference this.physicalName
somewhere within the ARN in order for
cross-environment references to work.
Protected
getReturns an environment-sensitive token that should be used for the
resource's "name" attribute (e.g. bucket.bucketName
).
Normally, this token will resolve to nameAttr
, but if the resource is
referenced across environments, it will be resolved to this.physicalName
,
which will be a concrete name.
The CFN attribute which resolves to the resource's name.
Commonly this is the resource's ref
.
Scale out or in to achieve a target request handling rate
The AutoScalingGroup must have been attached to an Application Load Balancer in order to be able to call this.
Static
fromStatic
isChecks if x
is a construct.
Use this method instead of instanceof
to properly detect Construct
instances, even when the construct library is symlinked.
Explanation: in JavaScript, multiple copies of the constructs
library on
disk are seen as independent, completely different libraries. As a
consequence, the class Construct
in each copy of the constructs
library
is seen as a different class, and an instance of one class will not test as
instanceof
the other class. npm install
will not create installations
like this, but users may manually symlink construct libraries together or
use a monorepo tool: in those cases, multiple copies of the constructs
library can be accidentally installed, and instanceof
will behave
unpredictably. It is safest to avoid using instanceof
, and using
this type-testing method instead.
Any object
true if x
is an object created from a class which extends Construct
.
Static
isStatic
is
Construct which creates an Auto Scaling group.
By default, all EC2 instances in this group will use [[
GuInstanceRole
]], which provides common permissions (e.g. the ability to download an artifact and write logs to the account's logging Kinesis stream).If additional IAM permissions are required, a custom role can be provided via the
role
prop. You may wish to instantiate [[GuInstanceRole
]] yourself as a basis for this custom role, as it allows custom permissions to be passed in.All EC2 instances in this group will be automatically associated with two security groups:
GuHttpsEgressSecurityGroup
]], which allows outbound traffic over HTTPS.GuWazuhAccess
]], which allows instances to communicate with Wazuh (for security monitoring).If additional ingress or egress rules are required, define custom security groups and pass them in via the
additionalSecurityGroups
prop.All EC2 instances provisioned via this construct will use IMDSv2.