We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 1c23f4f commit 3d8b40aCopy full SHA for 3d8b40a
gke/autopilot/custom_service_account/main.tf
@@ -21,6 +21,19 @@
21
* https://cloud.google.com/kubernetes-engine/docs/how-to/hardening-your-cluster#use_least_privilege_sa
22
*/
23
24
+data "google_project" "project" {
25
+}
26
+
27
+resource "google_service_account" "default" {
28
+ account_id = "gke-node-service-account"
29
+ display_name = "GKE node service account"
30
31
32
+resource "google_project_iam_member" "default" {
33
+ project = data.google_project.project.project_id
34
+ role = "roles/container.defaultNodeServiceAccount"
35
+ member = "serviceAccount:${google_service_account.default.email}"
36
37
38
# [START gke_autopilot_custom_service_account]
39
resource "google_container_cluster" "autopilot_cluster" {
0 commit comments