terraform-azurerm-set-diff-analyzer
Terraform AzureRM 플랜에서 Set 유형 속성 순서로 인해 발생하는 거짓 양성 차이를 식별합니다. Terraform 플랜 JSON 출력을 분석하여 Set 내 요소 재정렬로 인한 가짜 차이와 실제 리소스 변경을 구분합니다. Set 유형 속성을 가진 AzureRM 리소스(Application Gateway, Load Balancer, NSG, Firewall, Front Door 등)를 대상으로 합니다. Python 3.8+가 필요하며 표준 라이브러리만 사용합니다. 구성 가능한 출력 형식과 종료 코드로 CI/CD 파이프라인에 통합됩니다. 검토자에게 도움을 줍니다...
npx skills add https://github.com/github/awesome-copilot --skill terraform-azurerm-set-diff-analyzerTerraform AzureRM Set Diff Analyzer
A skill to identify "false-positive diffs" in Terraform plans caused by AzureRM Provider's Set-type attributes and distinguish them from actual changes.
When to Use
terraform planshows many changes, but you only added/removed a single element- Application Gateway, Load Balancer, NSG, etc. show "all elements changed"
- You want to automatically filter false-positive diffs in CI/CD
Background
Terraform's Set type compares by position rather than by key, so when adding or removing elements, all elements appear as "changed". This is a general Terraform issue, but it's particularly noticeable with AzureRM resources that heavily use Set-type attributes like Application Gateway, Load Balancer, and NSG.
These "false-positive diffs" don't actually affect the resources, but they make reviewing terraform plan output difficult.
Prerequisites
- Python 3.8+
If Python is unavailable, install via your package manager (e.g., apt install python3, brew install python3) or from python.org.
Basic Usage
# 1. Generate plan JSON output
terraform plan -out=plan.tfplan
terraform show -json plan.tfplan > plan.json
# 2. Analyze
python scripts/analyze_plan.py plan.json
Troubleshooting
python: command not found: Usepython3instead, or install PythonModuleNotFoundError: Script uses only standard library; ensure Python 3.8+
Detailed Documentation
- scripts/README.md - All options, output formats, exit codes, CI/CD examples
- references/azurerm_set_attributes.md - Supported resources and attributes