Prerequisites

If you don't have an GCP subscription, create a free account before you begin.

The deployment will be executed using terraform, and it is fully automated. It is triggered by YData’s team and the progress can be monitored on the client side.

As a pre-condition, the client must create a service account and share it with YData’s team.

The required permissions will be shared in this document.

The bastion host will be used to provide technical support to the team in case of issues and troubleshooting with the usage of the platform, and this access will only be used for this purpose.

Observations

● The deployment will create one public and private key to establish the connection to

the bastion host.

● With this deployment, a security group allowing YData’s IP to establish the

connection to the bastion host via SSH will be created. This should be deleted after the deployment and added in case it is needed.

● The Bastion host can be stopped after the deployment to prevent any

charges and created/started to give support.

● The private subnets will have a NAT Gateway attached – this is needed since the

GKE needs access to the public internet to connect the Data Sources and to pull

images from the public registries.

Basics Configuration

Enable API’s

Permissions