Overviewing Terraform Sentinel
Terraform Sentinel is a feature that is only available in the paid version of HashiCorp products such as Vault Enterprise, Nomad Enterprise, Consul Enterprise, Terraform Cloud, or Terraform Enterprise. This is basically a well-defined framework written in a code format—that is, policy as code. Terraform Sentinel has its own standard language of writing: Sentinel language. Don't worry, as it's not difficult to learn this language: anyone can learn it in just an hour, and you don't require any sort of programming language experience for this. Terraform Sentinel helps to restrict or control the behavior of the infrastructure before it actually gets deployed. Sentinel checks for defined governance requirements, and this whole flow can be controlled and automated by placing them in the VCS, as illustrated in the following diagram:
The Sentinel CLI will run and validate...