BLUEPRINT LIBRARY

Create paved roads

Blueprints for creating cloud resources with best practices embedded

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

This Blueprint sets up a Google Compute Address with customizable options, emphasizing best practices by defaulting to an external address in the "us-central1" region using the "PREMIUM" network tier. Variables are organized into "Basic Settings" for essential configurations and "Advanced Settings" for additional customization, aiding software engineers in deploying cloud resources securely and efficiently without deep expertise in cloud infrastructure.l offering flexibility for advanced users.

This blueprint creates an AWS Lambda function following best practices, such as setting a default runtime environment (Python 3.8) and handler, enabling secure configuration by requiring an IAM role, and encouraging the use of tags for resource identification and management. It allows customization of memory size and timeout for performance tuning and supports the inclusion of environment variables to provide flexibility for various use cases.

This blueprint creates an AWS IAM User with best practices in mind, such as encouraging the use of tagging for resource identification and management. It provides advanced options like setting a permissions boundary for enhanced security control. The blueprint organizes variables into groups to assist users, including those who may not be cloud infrastructure experts, in configuring essential and advanced settings easily.

This blueprint creates an Azure Resource Group with best practices in mind, such as providing a default location of "eastus" while allowing customization, and encouraging the use of tags for better resource identification and management. It organizes variables into intuitive groups to assist users—including those who may not be cloud infrastructure experts—in configuring essential settings easily.

This blueprint creates an AWS Route Table associated with a specified VPC. It allows users to define multiple routes using section tags, adhering to best practices by encouraging the use of tagging for resource identification and management. The blueprint is organized into groups to assist users, including those who may not be cloud infrastructure experts, in configuring essential settings and routes easily.

This blueprint creates an AWS SNS Topic with best practices in mind, such as encouraging the use of KMS encryption to secure messages at rest. It allows users to specify custom policies for fine-grained access control and delivery settings. Tags are included to promote better resource identification and management. The blueprint organizes variables into intuitive groups to assist users—including those not well-versed in cloud infrastructure—in configuring essential and advanced settings easily.

This blueprint creates an AWS IAM Policy by requiring users to provide a valid JSON policy document, adhering to best practices in security and compliance. It encourages the use of tags for resource identification and management, organizing variables into groups to assist users—including those who may not be cloud infrastructure experts—in configuring essential settings easily.

This blueprint creates an AWS Security Group adhering to best practices by denying all inbound traffic unless specified, thereby enhancing security. It allows all outbound traffic by default, following AWS's standard behavior, but gives users the flexibility to define specific egress rules if needed. The blueprint encourages the use of descriptive tagging for better resource management and organizes variables into groups to simplify configuration for users who may not be cloud infrastructure experts.

This blueprint creates a Google Compute Engine instance with best practices in mind, such as not assigning a public IP address by default to enhance security. It uses a default machine type of e2-medium and a Debian 10 image for the boot disk, promoting cost-effectiveness and stability. The blueprint encourages the use of labels for better resource management and organizes variables into logical groups to assist users—including those who may not be cloud infrastructure experts—in configuring essential settings easily.

This blueprint creates an AWS IAM Role with best practices in mind, such as requiring an assume role policy for security and encouraging the use of tags for resource identification and management. It provides advanced options like setting a permissions boundary for better security control. The blueprint is organized into groups to assist users, including those who may not be cloud infrastructure experts, in configuring essential and advanced settings easily.

This blueprint creates an AWS VPC with best practices in mind, such as enabling DNS support and hostnames by default to facilitate resource naming and resolution within the VPC. It sets a default CIDR block of "10.0.0.0/16" but allows customization to suit different network requirements. The blueprint encourages the use of tagging for better resource management and organizes variables into groups to assist users who may not be cloud infrastructure experts.

This blueprint creates a Google Cloud VPC network following best practices by defaulting to custom mode (auto_create_subnetworks set to false), allowing for manual subnet creation and better control over network configuration. It includes advanced options like routing mode and MTU with sensible defaults, providing flexibility for advanced users. The blueprint is organized to help users, including those who may not be cloud infrastructure experts, configure essential settings easily.

This blueprint creates an AWS Auto Scaling Group with best practices in mind, such as configuring minimum and maximum instance counts for efficient scaling, using private subnets for enhanced security, setting health checks and termination policies with sensible defaults, and encouraging the use of tags for resource identification and management. The blueprint is organized into groups to assist users—including those who may not be cloud infrastructure experts—in configuring essential and advanced settings easily.

This blueprint creates an Azure Public IP with best practices in mind, such as defaulting to a 'Static' allocation method and using the 'Standard' SKU for enhanced security and features. It encourages the use of tags for better resource management and identification. Advanced settings like idle timeout can be customized if needed. The blueprint organizes variables into intuitive groups to assist users—including those who may not be cloud infrastructure experts—in configuring essential and advanced settings easily.

This blueprint creates an AWS Subnet with best practices in mind, such as disabling public IP assignment by default to enhance security. It allows customization of CIDR blocks and availability zones to suit different network requirements. The blueprint encourages the use of tagging for better resource management and organizes variables into groups to assist users who may not be cloud infrastructure experts.

Your CSPM can't fix cloud infrastructure

Learn how Resourcely can improve your cloud posture in days, not quarters