diff --git a/.github/workflows/ci-pull-request.yaml b/.github/workflows/ci-pull-request.yaml index 7a5f69a..879ab54 100644 --- a/.github/workflows/ci-pull-request.yaml +++ b/.github/workflows/ci-pull-request.yaml @@ -52,7 +52,7 @@ jobs: - name: Check out code uses: actions/checkout@v2 - name: Cache modules - uses: actions/cache@v1 + uses: actions/cache@v4 with: path: ~/go/pkg/mod key: ${{ runner.os }}-go-${{ hashFiles('**/go.sum') }} diff --git a/modules/vm-workload-scanning/organizational.tf b/modules/vm-workload-scanning/organizational.tf index 463e77b..1202394 100644 --- a/modules/vm-workload-scanning/organizational.tf +++ b/modules/vm-workload-scanning/organizational.tf @@ -12,13 +12,13 @@ data "google_organization" "org" { ################################################### #--------------------------------------------------------------------------------------------- -# role permissions for CSPM (GCP Predefined Roles for Sysdig Cloud Secure Posture Management) +# role permissions for VM Workload Scanning #--------------------------------------------------------------------------------------------- resource "google_organization_iam_custom_role" "custom_role" { count = var.is_organizational ? 1 : 0 org_id = data.google_organization.org[0].org_id - role_id = "vmWorkloadScanningRole" + role_id = "${var.role_name}vmWorkloadScanningRole${title(local.suffix)}" title = "VM Workload Scanning Role" permissions = [ "artifactregistry.repositories.downloadArtifacts",