Skip to main content
Reference for every input variable exposed by the GCP Terraform modules. Set non-sensitive variables in infra/terraform.tfvars. For sensitive variables (license key, passwords, encryption keys), make setup-env writes them to Secret Manager and the deploy script wires them into the cluster.

Core

Networking

GKE

PostgreSQL (Cloud SQL)

Redis (Memorystore)

ClickHouse

GCS storage

LangSmith application

Ingress and TLS

Add-on pass flags

Optional GCP modules

Sensitive variables (set with setup-env.sh)

make setup-env writes these to Secret Manager. Never set these inline in terraform.tfvars.