cloud-foundation-fabric/modules
Ludovico Magnocavallo 482f4464f8 depend feed id from IAM roles in pubsub module 2020-07-30 18:11:42 +02:00
..
__experimental Add Network Endpoint Group module (#91) 2020-06-08 13:43:13 +02:00
artifact-registry Add Artifact Registry module (#81) 2020-05-26 12:03:15 +02:00
bigquery-dataset Added google-beta provider for dataset-access resource and formatted the file (#118) 2020-07-28 18:28:59 +02:00
bigtable-instance Fix README 2020-06-09 16:03:10 +02:00
cloud-config-container Update README.md 2020-07-24 15:06:11 +02:00
cloud-function Add support for vpc connector and ingress settings to cloud-function (#116) 2020-07-24 08:55:58 +02:00
compute-mig regenerate variables/outputs tables in modules 2020-07-02 08:29:38 +02:00
compute-vm Support multiple zones in compute-vm module (#114) 2020-07-18 06:39:14 +02:00
container-registry regenerate variables/outputs tables in modules 2020-07-02 08:29:38 +02:00
datafusion First commit for Data Fusion module (#77) 2020-05-22 12:30:24 +02:00
dns fix minimum required version of google-beta provider in dns module 2020-06-28 11:19:15 +02:00
endpoints Fix Variable description 2020-06-24 18:13:45 +02:00
folders Update README.md 2020-06-09 17:21:07 +02:00
folders-unit Obey var.iam_billing_config.grant (#113) 2020-07-15 13:18:42 +02:00
gcs Add Cloud KMS support to GCS module (#87) 2020-06-05 21:59:34 +02:00
gke-cluster regenerate variables/outputs tables in modules 2020-07-02 08:29:38 +02:00
gke-nodepool Fix gke-nodepool advanced options 2020-05-07 20:28:37 +02:00
iam-service-accounts regenerate variables/outputs tables in modules 2020-07-02 08:29:38 +02:00
kms KMS module refactoring (#85) 2020-06-03 08:43:10 +02:00
logging-sinks Merge development branch (#44) 2020-04-03 14:06:48 +02:00
net-address Merge development branch (#44) 2020-04-03 14:06:48 +02:00
net-cloudnat Add support for logging in net-cloudnat (#115) 2020-07-23 09:29:24 +02:00
net-ilb regenerate variables/outputs tables in modules 2020-07-02 08:29:38 +02:00
net-vpc interpolate vpc name in routes 2020-06-12 12:07:28 +02:00
net-vpc-firewall use "all" for admin firewall rule in net-vpc-firewall module 2020-06-05 21:24:28 +02:00
net-vpc-peering Merge development branch (#44) 2020-04-03 14:06:48 +02:00
net-vpn-dynamic Merge development branch (#44) 2020-04-03 14:06:48 +02:00
net-vpn-ha Update README.md 2020-07-08 21:39:50 +02:00
net-vpn-static interpolate gateway name in route name for static vpn 2020-06-11 15:51:25 +02:00
organization Move VPC-SC to a separate module. 2020-07-07 10:23:26 +02:00
project support Shared VPC in project module (#112) 2020-07-09 15:15:14 +02:00
pubsub depend feed id from IAM roles in pubsub module 2020-07-30 18:11:42 +02:00
secret-manager regenerate variables/outputs tables in modules 2020-07-02 08:29:38 +02:00
service-directory Update README.md 2020-05-13 07:54:46 +02:00
source-repository Source repository module (#76) 2020-05-14 20:48:29 +02:00
vpc-sc - Fixes based on PR comments 2020-07-10 07:22:57 +02:00
README.md - Fixes based on PR comments 2020-07-10 07:22:57 +02:00

README.md

Terraform modules suite for Google Cloud

The modules collected in this folder are designed as a suite: they are meant to be composed together, and are designed to be forked and modified where use of third party code and sources is not allowed.

Modules try to stay close to the low level provider resources they encapsulate, and they all share a similar interface that combines management of one resource or set or resources, and the corresponding IAM bindings.

Authoritative IAM bindings are primarily used (e.g. google_storage_bucket_iam_binding for GCS buckets) so that each module is authoritative for specific roles on the resources it manages, and can neutralize or reconcile IAM changes made elsewhere.

Specific modules also offer support for non-authoritative bindings (e.g. google_storage_bucket_iam_member for service accounts), to allow granular permission management on resources that they don't manage directly.

Foundational modules

Networking modules

Compute/Container

Data

Development

Security

Serverless