Fix permissions for branch network dev - read sa (#2233)

Co-authored-by: Luca Prete <lucaprete@google.com>
This commit is contained in:
Luca Prete
2024-04-23 15:19:38 +02:00
committed by GitHub
parent 59084fa853
commit dd213ea9a9

View File

@@ -101,10 +101,10 @@ module "branch-network-dev-folder" {
)
# read-only (plan) automation service accounts
"roles/compute.networkViewer" = concat(
local.branch_optional_r_sa_lists.dp-prod,
local.branch_optional_r_sa_lists.gke-prod,
local.branch_optional_r_sa_lists.dp-dev,
local.branch_optional_r_sa_lists.gke-dev,
local.branch_optional_r_sa_lists.gcve-dev,
local.branch_optional_r_sa_lists.pf-prod,
local.branch_optional_r_sa_lists.pf-dev,
)
(local.custom_roles.gcve_network_admin) = local.branch_optional_sa_lists.gcve-dev
}