MySQL HeatWave DB System
Managed MySQL with optional HeatWave analytics cluster, HA, backups, configuration and inbound replication channel.
Verification
Plan-validatedPassed: module logic verified on a mocked plan - inputs, validation rules, conditional creation and outputs resolve (no real provider, no cloud).
Conformance
- Static validation (fmt · validate · tflint)
- Security scan clean (Checkov)
- Plan tests (mocked: validation rules · outputs)
Provenance
- SHA-256 checksum
- Cosign signature
Functional
- Live test pending (no cloud run yet)
Last verified 2026-06-28 · how we verify
Verify this download
cosign · sha-256Don't take our word for it. Every release is signed with cosign - check the bytes against our pinned public key before you trust them.
# 1. Our pinned public key - fetch once, trust out-of-band
curl -O https://www.iac-bazaar.com/cosign.pub
# 2. This module's Sigstore bundle
curl -o oci-mysql-heatwave-1.0.0.sigstore.json \
https://www.iac-bazaar.com/api/artifacts/oci-mysql-heatwave/signature
# 3. Verify the tarball you downloaded
cosign verify-blob \
--key cosign.pub \
--bundle oci-mysql-heatwave-1.0.0.sigstore.json \
oci-mysql-heatwave-1.0.0.tar.gz
# → Verified OK
# 4. (optional) confirm the checksum too
echo "0b91b638d928571824deccb3594549a9451f351e1ada70ac832fda47352c4c88 oci-mysql-heatwave-1.0.0.tar.gz" | sha256sum -cUse it from the registry
terraform · opentofumodule "mysql_heatwave" {
source = "www.iac-bazaar.com/iac-bazaar/oci-mysql-heatwave/oci"
version = "1.0.0"
}Paid module — needs a purchase (or a subscription that covers it) plus a registry token from /account/tokens. Full setup: registry docs.
Inputs & outputs
Create a free account to read this module's contract
The declared contract — every input name, type, default and description, plus every output — is shown to signed-in accounts, not to anonymous visitors.
A free account sees the contract of every Free module. This one is Premium, so its contract unlocks when you buy it.
Documentation
oci-mysql-heatwave
Status: static-validated, live-test pending. Ships under live-test quarantine — no OCI cloud sandbox is wired into CI yet, so the live apply → verify → destroy gate has not run. Static validation (fmt, validate, tflint) passes.
Managed MySQL HeatWave DB System for OCI: a VCN-private MySQL with optional
HeatWave analytics cluster, optional 3-node HA, automatic backups with
point-in-time recovery, an optional dedicated server configuration, and an
optional inbound replication channel. Works with Terraform and OpenTofu
(>= 1.6), OCI provider >= 8.0, < 9.0.
Secure defaults
- No public endpoint. MySQL HeatWave is reachable only from inside the VCN;
this module places the system in a private subnet and prefers NSGs
(
nsg_ids) for a deny-by-default data plane. - Encryption at rest is always on (OCI-managed); TLS in transit is
available with
secure_connections_certificate_id(BYOC) or the Oracle SYSTEM certificate by default. - Automatic backups + PITR on by default (7-day retention), with explicit
deletion safety:
is_delete_protected,final_backup_on_deleteand automatic-backup retention on delete. - Crash recovery on (InnoDB redo + double-write) for durability.
- Replication is encrypted by default (
source_ssl_mode = REQUIRED). shape_name = MySQL.Freeships an Always-Free single-node 50 GB system for $0; HA and HeatWave need a paid shape (guarded by preconditions and notes).
Requirements
- Terraform or OpenTofu
>= 1.6 - Provider
oracle/oci>= 8.0, < 9.0
License
Commercial — LicenseRef-IaCBazaar-Commercial. © IaC Bazaar. Original work (not derived from a third-party module).
Usage code & full reference unlock after purchase
The complete copy-paste usage, the full input/output reference, and operational notes ship with your licence - shown here and bundled in the download.
- Usage
- Inputs
- Outputs
- Notes
Related modules
Autonomous Database (Serverless)
ATP/ADW/JSON/APEX autonomous database with private endpoint, mTLS wallet output, ACLs, auto-scaling and backup config.
Base Database Service (DBCS VM)
Oracle Database VM system with DB home, TDE via Vault, automated backups and optional Data Guard standby.
AlloyDB for PostgreSQL Cluster
AlloyDB cluster with primary + read-pool instances, PSC connectivity, automated backups and columnar/vector engine flags.
Aurora Cluster (Serverless v2 ready)
Aurora PostgreSQL/MySQL cluster with instances, parameter groups, Serverless v2 scaling, and enhanced monitoring.
Azure Cosmos DB Account
Cosmos DB (NoSQL or MongoDB API) with multi-region failover, autoscale throughput, private endpoint and backup policy.
Azure SQL Database
Logical SQL server + database with Entra-only auth, firewall/private endpoint, auditing, TDE and failover-group option.