Fix xpnAdmin

This commit is contained in:
Lorenzo Caggioni 2022-02-15 21:36:11 +01:00
parent 8906252528
commit 51026e6d0f
2 changed files with 7 additions and 15 deletions

View File

@ -74,21 +74,11 @@ module "branch-dp-prod-folder" {
group_iam = {}
iam = {
# remove owner here and at project level if SA does not manage project resources
"roles/owner" = [
module.branch-dp-prod-sa.iam_email
]
"roles/logging.admin" = [
module.branch-dp-prod-sa.iam_email
]
"roles/resourcemanager.folderAdmin" = [
module.branch-dp-prod-sa.iam_email
]
"roles/resourcemanager.projectCreator" = [
module.branch-dp-prod-sa.iam_email
]
"roles/compute.xpnAdmin" = [
module.branch-teams-dev-projectfactory-sa.iam_email
]
"roles/logging.admin" = [module.branch-dp-prod-sa.iam_email]
"roles/owner" = [module.branch-dp-prod-sa.iam_email]
"roles/resourcemanager.folderAdmin" = [module.branch-dp-prod-sa.iam_email]
"roles/resourcemanager.projectCreator" = [module.branch-dp-prod-sa.iam_email]
"roles/compute.xpnAdmin" = [module.branch-dp-prod-sa.iam_email]
}
}

View File

@ -65,6 +65,7 @@ module "branch-network-prod-folder" {
name = "Production"
iam = {
"roles/compute.xpnAdmin" = [
module.branch-dp-prod-sa.iam_email,
module.branch-teams-prod-projectfactory-sa.iam_email
]
}
@ -76,6 +77,7 @@ module "branch-network-dev-folder" {
name = "Development"
iam = {
"roles/compute.xpnAdmin" = [
module.branch-dp-dev-sa.iam_email,
module.branch-teams-dev-projectfactory-sa.iam_email
]
}