Ignoring unwanted Terraform attribute changes
blog.mattsbit.co.uk
Ignoring unwanted Terraform attribute changes
1–10 of 12 posts
Re: Ignoring unwanted Terraform attribute changes
#2Re: Ignoring unwanted Terraform attribute changes
#3This is a useful trick in situations where the image changing under your feet isn't very important.
Re: Ignoring unwanted Terraform attribute changes
#4https://developer.hashicorp.com/terraform/language/resources...
~8 years in or so with terraform and I've found null_resource to be a useful crutch in doing things like, "take this source and compile it with this script that'll basically never change, then put it somewhere that's defined in terraform." Overly relying on this mechanism feels like terraform code smell to me, just from my personal experience, if that's even a thing.
Re: Ignoring unwanted Terraform attribute changes
#5As tags aren't necessarily immutable, it's probably advisable to use the full hash in most situations anyway. This is a useful trick in situations where the image changing under your feet isn't very important.
So the data element would lookup the tag, and the specific hash is used in the deployment. No funky replace triggers needed.
Re: Ignoring unwanted Terraform attribute changes
#6This should give you a location to stick in the friendly name of a container that won't get clobbered by the provider.
I do like the explanation you provided though, because this is the kind of puzzle you can't really solve with Terraform until you've run into it. I've never used the `replace_triggered_by` feature.
[1]: https://registry.terraform.io/providers/kreuzwerker/docker/l...
[2]: I was originally expecting `docker_image` to be a data source, but the resource seems to be the recommended method for this, and I didn't wrap my brain around the differences between the data source and the resource before writing.
Re: Ignoring unwanted Terraform attribute changes
#7I've never used this provider, and while I do think you're right that the provider probably shouldn't change the attribute on you, the docs for the `docker_container` resource[1] suggest populating the `image` argument with the `image_id` attribute of a `docker_image` resource[2]. This should give you a location to stick in the friendly name of a container that won't get clobbered by the provider. I do like the expla…
I guess, assuming you're not building the image, whether you use the data source of image probably isn't too important (assuming the data source is able to lookup images that aren't present on the local machine :thinking:).
Edit: and now I've seen that in the docker image resource, they reference using the data source to be able to track remote image SHA changes, in order to trigger an image re-pull :doh:
Feels like we've gone full-circle with this :D
Re: Ignoring unwanted Terraform attribute changes
#8I've never used this provider, and while I do think you're right that the provider probably shouldn't change the attribute on you, the docs for the `docker_container` resource[1] suggest populating the `image` argument with the `image_id` attribute of a `docker_image` resource[2]. This should give you a location to stick in the friendly name of a container that won't get clobbered by the provider. I do like the expla…
Re: Ignoring unwanted Terraform attribute changes
#9null_resource is being deprecated in favor of terraform_data: https://developer.hashicorp.com/terraform/language/resources... ~8 years in or so with terraform and I've found null_resource to be a useful crutch in doing things like, "take this source and compile it with this script that'll basically never change, then put it somewhere that's defined in terraform." Overly relying on this mechanism feels like terraform…
Re: Ignoring unwanted Terraform attribute changes
#10As tags aren't necessarily immutable, it's probably advisable to use the full hash in most situations anyway. This is a useful trick in situations where the image changing under your feet isn't very important.
The point was more about using null_triggers (or `terraform_data` I see) and using the trigger replacement, with the docker resources as purely an illustration.