Search code examples
pulumi

How to set container port and load balancer for aws fargate using pulumi?


I am trying to deploy simple flask python app on aws fargate using Pulumi. The dockerfile of python app exposes port 8000 from container. How could I set it up with load balancer using pulumi? I have tried the following so far, with index.ts (pulumi):

import * as awsx from "@pulumi/awsx";

// Step 1: Create an ECS Fargate cluster.
const cluster = new awsx.ecs.Cluster("first_cluster");

// Step 2: Define the Networking for our service.
const alb = new awsx.elasticloadbalancingv2.ApplicationLoadBalancer(
    "net-lb", { external: true, securityGroups: cluster.securityGroups });
const web = alb.createListener("web", { port: 80, external: true });

// Step 3: Build and publish a Docker image to a private ECR registry.
const img = awsx.ecs.Image.fromPath("app-img", "./app");

// Step 4: Create a Fargate service task that can scale out.
const appService = new awsx.ecs.FargateService("app-svc", {
    cluster,
    taskDefinitionArgs: {
        container: {
            image: img,
            cpu: 102 /*10% of 1024*/,
            memory: 50 /*MB*/,
            portMappings: [{ containerPort: 8000, }],
        },
    },
    desiredCount: 5,
});

// Step 5: Export the Internet address for the service.
export const url = web.endpoint.hostname;

And when I curl the url curl http://$(pulumi stack output url), I get:

<html>
<head><title>503 Service Temporarily Unavailable</title></head>
<body bgcolor="white">
<center><h1>503 Service Temporarily Unavailable</h1></center>
</body>
</html>

How could I map load balancer port to container port which is 8000?


Solution

  • You can specify the target port on the application load balancer:

    const atg = alb.createTargetGroup(
        "app-tg", { port: 8000, deregistrationDelay: 0 });
    

    Then you can simply pass the listener to the service port mappings:

    const appService = new awsx.ecs.FargateService("app-svc", {
        // ...
        taskDefinitionArgs: {
            container: {
                // ...
                portMappings: [web],
            },
        },
    });
    

    Here is a full repro with a public docker container, so that anybody could start with a working sample:

    import * as awsx from "@pulumi/awsx";
    
    const cluster = new awsx.ecs.Cluster("first_cluster");
    
    const alb = new awsx.elasticloadbalancingv2.ApplicationLoadBalancer(
        "app-lb", { external: true, securityGroups: cluster.securityGroups });
    const atg = alb.createTargetGroup(
        "app-tg", { port: 8080, deregistrationDelay: 0 });
    const web = atg.createListener("web", { port: 80 });
    
    const appService = new awsx.ecs.FargateService("app-svc", {
        cluster,
        taskDefinitionArgs: {
            container: {
                image: "gcr.io/google-samples/kubernetes-bootcamp:v1",
                portMappings: [web],
            },
        },
        desiredCount: 1,
    });
    
    export const url = web.endpoint.hostname;