Prices
Estimated monthly on-demand costs for this workload architecture.
Workload Costs Comparison
Prices by provider and services that enable users to run this workload. Shape the architecture based on cloud best practices using the four Architecture Priorities below — Capacity, Performance, Reliability, and Security. Components and prices recompute as you adjust each priority (e.g. higher Security adds a WAF, KMS, and threat monitoring), and you can switch region or billing period to compare like-for-like.
Architecture Priorities
Select level (High / Medium / Low) to adjust requirementsVolume Assumptions
Infrastructure Architecture Blueprint
Copy or download (export) Terraform and OpenTofu architecture blueprints to deploy this workload in a cloud provider of your choice. Add parameters, credentials, or steps for CLI and DevOps CI/CD pipelines.
| 1 | # ============================================================================== |
| 2 | # ARCHITECTURE BLUEPRINT (TERRAFORM / OPENTOFU) |
| 3 | # Copyright (c) 2026 Cosell Plus, LLC. All Rights Reserved. |
| 4 | # |
| 5 | # DISCLAIMER & TERMS OF USE: |
| 6 | # This IaC blueprint is generated by CompareCloudCosts (CCC) for educational, |
| 7 | # planning, and directional architectural purposes. Provided "AS IS" without |
| 8 | # warranty of any kind, express or implied. Cosell Plus, LLC assumes no |
| 9 | # liability for operational costs, misconfigurations, or service interruptions. |
| 10 | # Always review and validate security, IAM, and compliance parameters before |
| 11 | # deploying to production environment. |
| 12 | # ============================================================================== |
| 13 | # |
| 14 | # ------------------------------------------------------------------------------ |
| 15 | # IDENTITY & CREDENTIAL PLACEHOLDERS (CLI & DEVOPS CI/CD PIPELINE) |
| 16 | # ------------------------------------------------------------------------------ |
| 17 | # Steps to execute this blueprint using Terraform: |
| 18 | # 1. Save this file as main.tf |
| 19 | # 2. Set provider authentication credentials: |
| 20 | # |
| 21 | # For AWS Local CLI Execution: |
| 22 | # export AWS_ACCESS_KEY_ID="<YOUR_AWS_ACCESS_KEY_ID>" |
| 23 | # export AWS_SECRET_ACCESS_KEY="<YOUR_AWS_SECRET_ACCESS_KEY>" |
| 24 | # export AWS_REGION="<REGION>" |
| 25 | # |
| 26 | # For AWS DevOps CI/CD Pipeline (GitHub Actions / GitLab CI / Azure DevOps): |
| 27 | # Recommended: Use AWS OpenID Connect (OIDC) Role Assumption: |
| 28 | # - role-to-assume: "arn:aws:iam::123456789012:role/GitHubActionsDeployerRole" |
| 29 | # - aws-region: "<REGION>" |
| 30 | # |
| 31 | # 3. Initialize and apply: |
| 32 | # $ terraform init |
| 33 | # $ terraform plan |
| 34 | # $ terraform apply |
| 35 | # ------------------------------------------------------------------------------ |
| 36 | |
| 37 | # ------------------------------------------------------------------------------ |
| 38 | # PROVIDER CONFIGURATION (TERRAFORM) |
| 39 | # ------------------------------------------------------------------------------ |
| 40 | 🔑 terraform { |
| 41 | required_version = ">= 1.5.0" |
| 42 | required_providers { |
| 43 | aws = { |
| 44 | source = "hashicorp/aws" |
| 45 | version = "~> 5.0" |
| 46 | } |
| 47 | } |
| 48 | } |
| 49 | |
| 50 | 🔑 provider "aws" { |
| 51 | region = var.aws_region |
| 52 | |
| 53 | default_tags { |
| 54 | tags = { |
| 55 | ManagedBy = "Terraform" |
| 56 | Environment = var.environment |
| 57 | Workload = var.workload_id |
| 58 | Vendor = "Cosell Plus LLC Blueprint" |
| 59 | } |
| 60 | } |
| 61 | } |
| 62 | |
| 63 | 🔑 variable "aws_region" { |
| 64 | type = string |
| 65 | default = "us-east-1" |
| 66 | description = "Target AWS Deployment Region" |
| 67 | } |
| 68 | |
| 69 | 🔑 variable "environment" { |
| 70 | type = string |
| 71 | default = "production" |
| 72 | description = "Deployment environment (e.g. dev, staging, production)" |
| 73 | } |
| 74 | |
| 75 | 🔑 variable "workload_id" { |
| 76 | type = string |
| 77 | default = "workload-blueprint" |
| 78 | description = "Identifier tag for the workload" |
| 79 | } |
| 80 | |
| 81 | # ------------------------------------------------------------------------------ |
| 82 | # WORKLOAD COMPONENT RESOURCES (EVENT-DRIVEN API BACKEND) |
| 83 | # ------------------------------------------------------------------------------ |
| 84 | # Component: API Gateway |
| 85 | 🔑 resource "aws_apigatewayv2_api" "api_gateway" { |
| 86 | name = "api_gateway-http-api" |
| 87 | protocol_type = "HTTP" |
| 88 | description = "Managed REST/GraphQL endpoint router" |
| 89 | |
| 90 | cors_configuration { |
| 91 | allow_origins = ["*"] |
| 92 | allow_methods = ["GET", "POST", "PUT", "DELETE", "OPTIONS"] |
| 93 | allow_headers = ["Authorization", "Content-Type", "X-Api-Key"] |
| 94 | } |
| 95 | } |
| 96 | |
| 97 | 🔑 resource "aws_apigatewayv2_stage" "api_gateway_stage" { |
| 98 | api_id = aws_apigatewayv2_api.api_gateway.id |
| 99 | name = "$default" |
| 100 | auto_deploy = true |
| 101 | } |
| 102 | |
| 103 | # Component: Serverless Compute (Event-driven functions executing business logic) |
| 104 | 🔑 resource "aws_custom_🔑 resource" "serverless_compute" { |
| 105 | # Add required parameters for Serverless Compute |
| 106 | } |
| 107 | |
| 108 | # Component: Message Queue (Asynchronous task queuing) |
| 109 | 🔑 resource "aws_custom_🔑 resource" "messaging" { |
| 110 | # Add required parameters for Message Queue |
| 111 | } |
| 112 | |
| 113 | # Component: Distributed Cache (Low-latency in-memory data store for fast lookups) |
| 114 | 🔑 resource "aws_custom_🔑 resource" "distributed_cache" { |
| 115 | # Add required parameters for Distributed Cache |
| 116 | } |
| 117 | |
| 118 | # Component: NoSQL Database (Flexible document storage for user data) |
| 119 | 🔑 resource "aws_custom_🔑 resource" "nosql_db" { |
| 120 | # Add required parameters for NoSQL Database |
| 121 | } |
| 122 | |
| 123 | # Component: Backup Storage |
| 124 | 🔑 resource "aws_s3_bucket" "backup_storage" { |
| 125 | bucket_prefix = "ccc-backup_storage-" |
| 126 | force_destroy = false |
| 127 | } |
| 128 | |
| 129 | 🔑 resource "aws_s3_bucket_server_side_encryption_configuration" "backup_storage_enc" { |
| 130 | bucket = aws_s3_bucket.backup_storage.id |
| 131 | rule { |
| 132 | apply_server_side_encryption_by_default { |
| 133 | sse_algorithm = "AES256" |
| 134 | } |
| 135 | } |
| 136 | } |
| 137 | |
| 138 | |
| 139 | |
| 140 | |
| 141 | # ------------------------------------------------------------------------------ |
| 142 | # OUTPUTS |
| 143 | # ------------------------------------------------------------------------------ |
| 144 | 🔑 output "blueprint_summary" { |
| 145 | value = { |
| 146 | workload_id = "event-driven-api" |
| 147 | 🔑 provider = "aws" |
| 148 | region = "us-east-1" |
| 149 | components = 6 |
| 150 | priorities = { |
| 151 | capacity = "medium" |
| 152 | performance = "medium" |
| 153 | reliability = "medium" |
| 154 | security = "medium" |
| 155 | } |
| 156 | } |
| 157 | } |
| 158 |