# Copyright 2023 Google LLC # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. values: google_org_policy_custom_constraint.constraint["custom.dataprocNoMoreThan10Workers"]: action_type: DENY condition: resource.config.workerConfig.numInstances + resource.config.secondaryWorkerConfig.numInstances > 10 method_types: - CREATE - UPDATE name: custom.dataprocNoMoreThan10Workers parent: organizations/1234567890 resource_types: - dataproc.googleapis.com/Cluster google_org_policy_custom_constraint.constraint["custom.gkeEnableAutoUpgrade"]: action_type: ALLOW condition: resource.management.autoUpgrade == true method_types: - CREATE name: custom.gkeEnableAutoUpgrade parent: organizations/1234567890 resource_types: - container.googleapis.com/NodePool counts: google_org_policy_custom_constraint: 2