File tree Expand file tree Collapse file tree 7 files changed +49
-0
lines changed
beta-private-cluster-update-variant
private-cluster-update-variant Expand file tree Collapse file tree 7 files changed +49
-0
lines changed Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = "serviceAccount:${google_service_account.cluster_service_account[0].email}"
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var.create_service_account ? 1 : 0
67+ project = google_project_iam_member.cluster_service_account-monitoring_viewer[0].project
68+ role = "roles/stackdriver.resourceMetadata.writer"
69+ member = "serviceAccount:${google_service_account.cluster_service_account[0].email}"
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var.create_service_account && var.grant_registry_access ? 1 : 0
6774 project = var.registry_project_id == "" ? var.project_id : var.registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var. create_service_account ? 1 : 0
67+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68+ role = " roles/stackdriver.resourceMetadata.writer"
69+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var. create_service_account && var. grant_registry_access ? 1 : 0
6774 project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var. create_service_account ? 1 : 0
67+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68+ role = " roles/stackdriver.resourceMetadata.writer"
69+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var. create_service_account && var. grant_registry_access ? 1 : 0
6774 project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var. create_service_account ? 1 : 0
67+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68+ role = " roles/stackdriver.resourceMetadata.writer"
69+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var. create_service_account && var. grant_registry_access ? 1 : 0
6774 project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var. create_service_account ? 1 : 0
67+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68+ role = " roles/stackdriver.resourceMetadata.writer"
69+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var. create_service_account && var. grant_registry_access ? 1 : 0
6774 project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var. create_service_account ? 1 : 0
67+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68+ role = " roles/stackdriver.resourceMetadata.writer"
69+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var. create_service_account && var. grant_registry_access ? 1 : 0
6774 project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
6262 member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
6363}
6464
65+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66+ count = var. create_service_account ? 1 : 0
67+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68+ role = " roles/stackdriver.resourceMetadata.writer"
69+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70+ }
71+
6572resource "google_project_iam_member" "cluster_service_account-gcr" {
6673 count = var. create_service_account && var. grant_registry_access ? 1 : 0
6774 project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
You can’t perform that action at this time.
0 commit comments