2023-01-16 23:49:04 -08:00
|
|
|
# skip boilerplate check
|
|
|
|
#
|
|
|
|
# sample subset of useful organization policies, edit to suit requirements
|
|
|
|
|
|
|
|
run.allowedIngress:
|
2023-02-21 04:58:08 -08:00
|
|
|
rules:
|
|
|
|
- allow:
|
|
|
|
values:
|
|
|
|
- is:internal
|
2023-01-16 23:49:04 -08:00
|
|
|
|
|
|
|
# run.allowedVPCEgress:
|
2023-02-21 04:58:08 -08:00
|
|
|
# rules:
|
|
|
|
# - allow:
|
|
|
|
# values:
|
2023-01-16 23:49:04 -08:00
|
|
|
# - is:private-ranges-only
|
|
|
|
|
|
|
|
# cloudfunctions.allowedIngressSettings:
|
2023-02-21 04:58:08 -08:00
|
|
|
# rules:
|
|
|
|
# - allow:
|
|
|
|
# values:
|
|
|
|
# - is:ALLOW_INTERNAL_ONLY
|
2023-01-16 23:49:04 -08:00
|
|
|
|
|
|
|
# cloudfunctions.allowedVpcConnectorEgressSettings:
|
2023-02-21 04:58:08 -08:00
|
|
|
# rules:
|
|
|
|
# - allow:
|
|
|
|
# values:
|
|
|
|
# - is:PRIVATE_RANGES_ONLY
|
2023-01-16 23:49:04 -08:00
|
|
|
|
|
|
|
# cloudfunctions.requireVPCConnector:
|
2023-02-21 04:58:08 -08:00
|
|
|
# rules:
|
|
|
|
# - enforce: true
|