yandex_mdb_kafka_user (Resource)
Статья создана
Обновлена 7 августа 2025 г.
Manages a user of a Kafka User within the Yandex Cloud. For more information, see the official documentation.
Example usage
//
// Create a new MDB Kafka User.
//
resource "yandex_mdb_kafka_user" "user_events" {
cluster_id = yandex_mdb_kafka_cluster.foo.id
name = "user-events"
password = "pass1231232332"
permission {
topic_name = "events"
role = "ACCESS_ROLE_CONSUMER"
allow_hosts = ["host1.db.yandex.net", "host2.db.yandex.net"]
}
permission {
topic_name = "events"
role = "ACCESS_ROLE_PRODUCER"
}
}
// Auxiliary resources
resource "yandex_mdb_kafka_topic" "events" {
cluster_id = yandex_mdb_kafka_cluster.my_cluster.id
name = "events"
partitions = 4
replication_factor = 1
}
resource "yandex_mdb_kafka_cluster" "my_cluster" {
name = "foo"
network_id = "c64vs98keiqc7f24pvkd"
config {
version = "2.8"
zones = ["ru-central1-a"]
kafka {
resources {
resource_preset_id = "s2.micro"
disk_type_id = "network-hdd"
disk_size = 16
}
}
}
}
Schema
Required
cluster_id(String) The ID of the Kafka cluster.name(String) The resource name.password(String, Sensitive) The password of the user.
Optional
permission(Block Set) Set of permissions granted to the user. (see below for nested schema)timeouts(Block, Optional) (see below for nested schema)
Read-Only
id(String) The ID of this resource.
Nested Schema for permission
Required:
role(String) The role type to grant to the topic.topic_name(String) The name of the topic that the permission grants access to.
Optional:
allow_hosts(Set of String) Set of hosts, to which this permission grants access to. Only ip-addresses allowed as value of single host.
Nested Schema for timeouts
Optional:
create(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours).delete(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours). Setting a timeout for a Delete operation is only applicable if changes are saved into state before the destroy operation occurs.read(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours). Read operations occur during any refresh or planning operation when refresh is enabled.update(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours).
Import
The resource can be imported by using their resource ID. For getting the resource ID you can use Yandex Cloud Web Console
# terraform import yandex_mdb_kafka_user.<resource Name> <resource Id>
terraform import yandex_mdb_kafka_user.user_events ...