File tree Expand file tree Collapse file tree 7 files changed +49
-0
lines changed
beta-private-cluster-update-variant
private-cluster-update-variant Expand file tree Collapse file tree 7 files changed +49
-0
lines changed Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = "serviceAccount:${google_service_account.cluster_service_account[0].email}"
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var.create_service_account ? 1 : 0
67
+ project = google_project_iam_member.cluster_service_account-monitoring_viewer[0].project
68
+ role = "roles/stackdriver.resourceMetadata.writer"
69
+ member = "serviceAccount:${google_service_account.cluster_service_account[0].email}"
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var.create_service_account && var.grant_registry_access ? 1 : 0
67
74
project = var.registry_project_id == "" ? var.project_id : var.registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var. create_service_account ? 1 : 0
67
+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68
+ role = " roles/stackdriver.resourceMetadata.writer"
69
+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var. create_service_account && var. grant_registry_access ? 1 : 0
67
74
project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var. create_service_account ? 1 : 0
67
+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68
+ role = " roles/stackdriver.resourceMetadata.writer"
69
+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var. create_service_account && var. grant_registry_access ? 1 : 0
67
74
project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var. create_service_account ? 1 : 0
67
+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68
+ role = " roles/stackdriver.resourceMetadata.writer"
69
+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var. create_service_account && var. grant_registry_access ? 1 : 0
67
74
project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var. create_service_account ? 1 : 0
67
+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68
+ role = " roles/stackdriver.resourceMetadata.writer"
69
+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var. create_service_account && var. grant_registry_access ? 1 : 0
67
74
project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var. create_service_account ? 1 : 0
67
+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68
+ role = " roles/stackdriver.resourceMetadata.writer"
69
+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var. create_service_account && var. grant_registry_access ? 1 : 0
67
74
project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
Original file line number Diff line number Diff line change @@ -62,6 +62,13 @@ resource "google_project_iam_member" "cluster_service_account-monitoring_viewer"
62
62
member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
63
63
}
64
64
65
+ resource "google_project_iam_member" "cluster_service_account-resourceMetadata-writer" {
66
+ count = var. create_service_account ? 1 : 0
67
+ project = google_project_iam_member. cluster_service_account-monitoring_viewer [0 ]. project
68
+ role = " roles/stackdriver.resourceMetadata.writer"
69
+ member = " serviceAccount:${ google_service_account . cluster_service_account [0 ]. email } "
70
+ }
71
+
65
72
resource "google_project_iam_member" "cluster_service_account-gcr" {
66
73
count = var. create_service_account && var. grant_registry_access ? 1 : 0
67
74
project = var. registry_project_id == " " ? var. project_id : var. registry_project_id
You can’t perform that action at this time.
0 commit comments