Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
15 changes: 14 additions & 1 deletion .release-please-manifest.json
Original file line number Diff line number Diff line change
@@ -1 +1,14 @@
{"catalog/bucket":"0.4.1","catalog/empty":"0.3.0","catalog/gitops":"0.4.0","catalog/gke":"0.3.0","catalog/hierarchy":"0.3.0","catalog/landing-zone":"0.4.0","catalog/log-export":"0.4.0","catalog/networking":"0.4.0","catalog/project":"0.4.1","catalog/redis-bucket":"0.3.1","catalog/spanner":"0.3.0"}
{
"catalog/bucket": "0.4.1",
"catalog/empty": "0.3.0",
"catalog/gitops": "0.4.0",
"catalog/gke": "0.3.0",
"catalog/hierarchy": "0.3.0",
"catalog/landing-zone": "0.4.0",
"catalog/log-export": "0.4.0",
"catalog/networking": "0.4.0",
"catalog/project": "0.4.1",
"catalog/redis-bucket": "0.3.1",
"catalog/spanner": "0.3.0",
"catalog/iam-foundation": "0.1.0"
}
2 changes: 1 addition & 1 deletion catalog/iam-foundation/devops.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ kind: IAMPolicyMember
metadata:
name: foundation-devops-folders
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to view folders.
namespace: config-control
spec:
Expand Down
8 changes: 4 additions & 4 deletions catalog/iam-foundation/networking.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ kind: IAMPolicyMember
metadata:
name: network-admins-compute
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to create, modify, and delete networking resources, except for firewall rules and SSL certificates.
namespace: config-control
spec:
Expand All @@ -32,7 +32,7 @@ kind: IAMPolicyMember
metadata:
name: network-admins-shared-vpc
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to administer Shared VPC host projects.
namespace: config-control
spec:
Expand All @@ -48,7 +48,7 @@ kind: IAMPolicyMember
metadata:
name: network-admins-security
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to create, modify, and delete firewall rules and SSL certificates.
namespace: config-control
spec:
Expand All @@ -64,7 +64,7 @@ kind: IAMPolicyMember
metadata:
name: network-admins-folders
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to view folders.
namespace: config-control
spec:
Expand Down
2 changes: 1 addition & 1 deletion catalog/iam-foundation/org.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ kind: IAMPolicyMember
metadata:
name: foundation-org-admin
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: Access to administer all resources belonging to the organization.
namespace: config-control
spec:
Expand Down
20 changes: 10 additions & 10 deletions catalog/iam-foundation/security.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-org-policy
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permission to set organizational policy constraints.
namespace: config-control
spec:
Expand All @@ -32,7 +32,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-security-reviewer
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to view all resources for the organization, and to view the IAM policies that apply to them.
namespace: config-control
spec:
Expand All @@ -48,7 +48,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-custom-roles
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to view all custom IAM roles in the organization, and to view the projects that they apply to.
namespace: config-control
spec:
Expand All @@ -64,7 +64,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-scc
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants administrator access to the Security Command Center.
namespace: config-control
spec:
Expand All @@ -80,7 +80,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-folder-iam
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to set folder-level IAM policies.
namespace: config-control
spec:
Expand All @@ -96,7 +96,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-private-logs
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants read-only access to Cloud Logging features, including the ability to read private logs.
namespace: config-control
spec:
Expand All @@ -112,7 +112,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-log-config
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants permissions to create logs-based metrics and export sinks.
namespace: config-control
spec:
Expand All @@ -128,7 +128,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-gke
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants read-only access to Google Kubernetes Engine resources.
namespace: config-control
spec:
Expand All @@ -144,7 +144,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-gce
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants read-only access to Compute Engine resources.
namespace: config-control
spec:
Expand All @@ -160,7 +160,7 @@ kind: IAMPolicyMember
metadata:
name: security-admins-bq
annotations:
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.4.0
cnrm.cloud.google.com/blueprint: cnrm/org-iam/v0.1.0
blueprints.cloud.google.com/description: This grants read-only access to BigQuery datasets.
namespace: config-control
spec:
Expand Down
4 changes: 4 additions & 0 deletions release-please-config.json
Original file line number Diff line number Diff line change
Expand Up @@ -43,6 +43,10 @@
"catalog/spanner": {
"package-name": "spanner-blueprint",
"changelog-path": "CHANGELOG.md"
},
"catalog/iam-foundation": {
"package-name": "iam-foundation-blueprint",
"changelog-path": "CHANGELOG.md"
}
},
"bootstrap-sha": "dc9e8fe511c009536064cb2b677e6ceff52f1b1f",
Expand Down