Automated cloud infrastructure deployment
Automated deployment engines described herein may be configured to automatically deploy cloud infrastructure. Such an engine may detect a single command for deploying infrastructure at one or more cloud computing environments, access, based on the single command, one or more configuration files associated with one or more IaC tools selected from a plurality of IaC tools, and deploy, based on the one or more configuration files, the infrastructure at the one or more cloud computing environments using the one or more IaC tools. The engine may then interface, based on the one or more configuration files, the infrastructure with a data platform configured to monitor the infrastructure.
1 . A method comprising:
detecting, by an automated deployment engine compatible with a plurality of infrastructure as code (IaC) tools, at a command line interface associated with the automated deployment engine, a single command for deploying infrastructure at one or more cloud computing environments;
in response to detecting the single command, accessing, by the automated deployment engine based on the single command, one or more configuration files associated with one or more IaC tools selected from the plurality of IaC tools;
automatically mapping each of the one or more configuration files to a corresponding IaC tool of the plurality of IaC tools based on a parameter within each configuration file;
deploying, by the automated deployment engine based on the one or more configuration files, the infrastructure at the one or more cloud computing environments using the one or more IaC tools by providing each of the corresponding IaC tools with access to the corresponding configuration file; and
interfacing, by the automated deployment engine based on the one or more configuration files, the infrastructure with a data platform configured to monitor the infrastructure.
2 . The method of claim 1 , further comprising initiating, by the automated deployment engine, a security threat at an application deployed at the one or more cloud computing environments.
3 . The method of claim 2 , further comprising:
accessing, by the data platform, event data associated with activities within the one or more cloud computing environments;
determining, by the data platform based on the event data, an occurrence of the security threat within the one or more cloud computing environments; and
performing, by the data platform based on the determining the occurrence of the security threat, a security response operation with respect to the one or more cloud computing environments.
4 . The method of claim 3 , wherein the determining the occurrence of the security threat comprises generating a logical graph comprising a plurality of nodes interconnected by a plurality of edges, the plurality of nodes and the plurality of edges representative of the event data.
5 . The method of claim 2 , wherein:
the initiating the security threat comprises driving data traffic over the application deployed at the one or more cloud computing environments via a load generator; and
the infrastructure comprises the load generator.
6 . The method of claim 1 , further comprising:
detecting, by the automated deployment engine, an additional single command for deploying additional infrastructure at one or more additional cloud computing environments;
accessing, by the automated deployment engine based on the additional single command, one or more additional configuration files associated with one or more additional IaC tools selected from the plurality of IaC tools and different from the one or more IaC tools;
deploying, by the automated deployment engine based on the one or more configuration files, the additional infrastructure at the one or more additional cloud computing environments using the one or more additional IaC tools; and
interfacing, by the automated deployment engine based on the one or more additional configuration files, the additional infrastructure with the data platform.
7 . The method of claim 1 , wherein the interfacing the infrastructure with the data platform comprises deploying one or more agents associated with the data platform at the one or more cloud computing environments.
8 . The method of claim 1 , wherein the interfacing the infrastructure with the data platform comprises interfacing the infrastructure with the data platform via one or more application programming interfaces.
9 . The method of claim 1 , wherein the single command is received at a user interface from a client of the data platform, and wherein the infrastructure corresponds to a service provided by the client.
10 . The method of claim 1 , wherein the infrastructure comprises one or more Kubernetes clusters and one or more containerized services.
11 . The method of claim 1 , further comprising:
detecting, by the automated deployment engine, a single modification command for modifying one or more components of the infrastructure;
accessing, by the automated deployment engine based on the single modification command, one or more additional configuration files associated with the one or more components; and
modifying, by the automated deployment engine, the one or more components without modifying additional components of the infrastructure.
12 . The method of claim 1 , further comprising:
generating, by the automated deployment engine based on the single command, one or more infrastructure commands; and
generating, by the automated deployment engine based on the one or more configuration files, one or more configuration resources for deploying the infrastructure at the one or more cloud computing environments;
wherein the one or more configuration files are accessed based on the one or more infrastructure commands.
13 . The method of claim 1 , wherein the single command is received at the command line interface associated with the automated deployment engine.
14 . A computer program product embodied in a non-transitory computer-readable storage medium and comprising computer instructions for an automated deployment engine compatible with a plurality of infrastructure as code (IaC) tools to perform a process comprising:
detecting, at a command line interface associated with the automated deployment engine, a single command for deploying infrastructure at one or more cloud computing environments;
in response to detecting the single command, accessing, based on the single command, one or more configuration files associated with one or more IaC tools selected from the plurality of IaC tools;
automatically mapping each of the one or more configuration files to a corresponding IaC tool of the plurality of IaC tools based on a parameter within each configuration file;
deploying, based on the one or more configuration files, the infrastructure at the one or more cloud computing environments using the one or more IaC tools by providing each of the corresponding IaC tools with access to the corresponding configuration file; and
interfacing, based on the one or more configuration files, the infrastructure with a data platform configured to monitor the infrastructure.
15 . The computer program product of claim 14 , wherein the process further comprises initiating a security threat at an application deployed at the one or more cloud computing environments.
16 . The computer program product of claim 15 , wherein the process further comprises:
accessing event data associated with activities within the one or more cloud computing environments;
determining, based on the event data, an occurrence of the security threat within the one or more cloud computing environments; and
performing, based on the determining the occurrence of the security threat, a security response operation with respect to the one or more cloud computing environments.
17 . The computer program product of claim 14 , wherein the process further comprises:
detecting an additional single command for deploying additional infrastructure at one or more additional cloud computing environments;
accessing, based on the additional single command, one or more additional configuration files associated with one or more additional IaC tools selected from the plurality of IaC tools and different from the one or more IaC tools;
deploying, based on the one or more configuration files, the additional infrastructure at the one or more additional cloud computing environments using the one or more additional IaC tools; and
interfacing, based on the one or more additional configuration files, the additional infrastructure with the data platform.
18 . A system comprising:
memory storing instructions; and
one or more processors communicatively coupled to the memory and configured to execute the instructions to perform a process comprising:
detecting, at a command line interface associated with an automated deployment engine, a single command for deploying infrastructure at one or more cloud computing environments;
in response to detecting the single command, accessing, based on the single command, one or more configuration files associated with one or more infrastructure as code (IaC) tools selected from a plurality of IaC tools compatible with the automated deployment engine;
automatically mapping each of the one or more configuration files to a corresponding IaC tool of the plurality of IaC tools based on a parameter within each configuration file;
deploying, based on the one or more configuration files, the infrastructure at the one or more cloud computing environments using the one or more IaC tools by providing each of the corresponding IaC tools with access to the corresponding configuration file; and
interfacing, based on the one or more configuration files, the infrastructure with a data platform configured to monitor the infrastructure.
19 . The system of claim 18 , wherein the process further comprises initiating a security threat at an application deployed at the one or more cloud computing environments.
20 . The system of claim 18 , wherein the process further comprises:
detecting a single modification command for modifying one or more components of the infrastructure;
accessing, based on the single modification command, one or more additional configuration files associated with the one or more components; and
modifying the one or more components without modifying additional components of the infrastructure.