cloud-foundation-fabric/blueprints/data-solutions/shielded-folder/data/org-policies/iam.yaml

13 lines
276 B
YAML

# skip boilerplate check
#
# sample subset of useful organization policies, edit to suit requirements
iam.automaticIamGrantsForDefaultServiceAccounts:
enforce: true
iam.disableServiceAccountKeyCreation:
enforce: true
iam.disableServiceAccountKeyUpload:
enforce: true