This will deploy the infrastructure required to run Wickr Enterprise using Amazon EC2. At a high level, this is what you will get;
- A VPC spanning 2 x AZs, with 2 x Public and 2 x Private Subnets as well as NAT Gateways and appropriate routing.
- Security groups configured as-per the Wickr Enterprise installation guide.
- 1 x Messaging, 1 x Voice and Video and 1 x Data Retention EC2 Nitro System based instances, with encrypted EBS storage and Docker CE pre-installed.
- Messaging and Voice Video servers in public subnets.
- Data Retention server in a private subnet, and in a different AZ to the other instances.
- Carry out the CDK Prerequisites found here
- Install CDK
- An SSH KeyPair uploaded or created in AWS region you wish to use
- A Wickr Enterprise license (for system configuration once this template has been deployed).
- Edit
/lib/WickrEntCdk.ts
lines 18 and 24 to reflect the AZ's you wish to use. - Edit
/bin/WickrEntCdk.ts
line 18 to reflect the account and region you are deploying to. - Run
npm install
. - Bootstrap your account by running the following command, adding in your account and region;
cdk bootstrap aws://account/region
- Run
cdk deploy --parameters sshIp=1.2.3.4/32 --parameters keyPair=ssh_keypair_name
to deploy the stack, wheresshIp
is your public IP andssh_keypair_name
is your pre-existing SSH KeyPair name. - Once the deployment finishes, you will see the public IP's of the Messaging and Voice server as output as well as the instance id of the retention server. You can connect to that via SSM Session Manager, or by using SSM SSH (instructions here
- SSH to the Messaging server
ssh ec2-user@<messaging-server-Ip>
- Enter the following command:
curl -sSL -o install.sh https://get.replicated.com/docker/wickrenterprise/stable && sudo bash ./install.sh
- You will now be asked to select which network addresses are attached to the server:
- Select [0] to set Eth0 as the Private IP.
- Select [0] to select the Default for the Public IP.
- Select 'N' when asked if the machine requires a proxy.
- Once the installation script has completed, you will be presented with a URL to browse to.
- Continue using the Wickr Enterprise Installation guide, as found in the
administration-guides
folder from section 4.3. The SSO and Administration guides are also added for your reference.
- Run
cdk destroy
cdk deploy
deploy this stack to your default AWS account/regioncdk diff
compare deployed stack with current statecdk synth
emits the synthesized CloudFormation template