stocky-father-81239
10/28/2025, 3:13 PMechoing-dinner-19531
10/28/2025, 3:14 PMechoing-dinner-19531
10/28/2025, 3:14 PMstocky-father-81239
10/28/2025, 3:42 PMstocky-father-81239
10/28/2025, 3:54 PMechoing-dinner-19531
10/28/2025, 3:58 PMstocky-father-81239
10/28/2025, 4:01 PMstocky-father-81239
10/28/2025, 4:06 PMstocky-father-81239
10/28/2025, 4:11 PMechoing-dinner-19531
10/28/2025, 4:14 PMstocky-father-81239
10/28/2025, 4:15 PMwet-gigabyte-99270
10/30/2025, 2:11 PMstocky-father-81239
10/30/2025, 4:17 PMI've tried to build a tool that takes all my (pulumi) state-files and merges them into a bigger structure just to be able to query and create diagrams over what is connected to what.Good to know I'm not the only one! haha
hallowed-baker-22997
10/31/2025, 10:38 PMhallowed-baker-22997
10/31/2025, 10:39 PMstocky-father-81239
11/03/2025, 3:10 PMhallowed-baker-22997
11/03/2025, 6:52 PMstocky-father-81239
11/18/2025, 12:23 PMI think that would be very very hard with the current backend architecture, but I'll take a look at the ideas in stategraphHave you had a chance to take a look yet?
echoing-dinner-19531
11/18/2025, 12:24 PMhigh-grass-3103
11/19/2025, 5:25 PMstocky-father-81239
11/20/2025, 10:03 AMnormally they reflect your environments - production, testing, etc.Yes, they normally do if you're developing & deploying a single application. However, we are the platform team of our organization and administer a whole landscape of infrastructure for our application teams. For instance, every application team gets a landing zone from us. Now, we could try to deploy all landing zones within a single Pulumi stack (i.e. basically a
for loop over the list of application teams). However, we did that in the past and ended up with pipelines that would take hours to finish. Moreover, during that time the Pulumi state would be locked, so you could not deploy any other changes in parallel. (E.g. deploy changes to landing zones 1 and 2 while that other pipeline is still working on landing zones 99 and 100.)
This is why we need more fine-grained locking. The best approach would probably be the one stategraph.dev is taking. However, right now in Pulumi a micro-stack architecture, in which every landing zone amounts to a separate stack, seems to be the only viable option. But then you're basically looking at dynamically creating & deleting stacks like any other resource. And managing cross-stack dependencies.
Note that landing zones are but one of many examples where micro-stacks would be useful for us. The same situation arises, e.g., in our Azure API Management instance (basically an API gateway for our organization), where we would like to separate the deployments of individual APIs from each other because they are rather error prone. (Azure applies validation rules that are not entirely obvious.)
I could keep goingβ¦