1348 Commits

Author SHA1 Message Date
Ludovico Magnocavallo
f8f856c9ac reinstate v51.0.0 2026-01-08 13:32:59 +00:00
Ludovico Magnocavallo
1b4930513f prep v51.1.1 2026-01-08 13:21:22 +00:00
Ludovico Magnocavallo
6ab071da8d prep v51.1.0 2026-01-08 12:12:43 +00:00
Eric Zhao
d2aac2c743 feat: support public dns attributes (#3618)
* feat: support public dns attributes

* fix: format

* feat: Add public DNS zone type definition with logging and DNSSEC configuration, and integrate it into the schema by replacing the forwarding zone property and updating mutual exclusivity rules.

* doc: update README.md

* feat: support public dns attributes

* fix: format

* feat: Add public DNS zone type definition with logging and DNSSEC configuration, and integrate it into the schema by replacing the forwarding zone property and updating mutual exclusivity rules.

* doc: update README.md

* feat: Add forwarding DNS zone schema to networking stage.

---------

Co-authored-by: Julio Castillo <jccb@google.com>
2026-01-07 12:14:29 +00:00
Ludovico Magnocavallo
ef027ad5b5 prep v51.0.0 2026-01-07 11:23:41 +00:00
Ludovico Magnocavallo
9135406aab Merge remote-tracking branch 'origin/master' into fast-dev 2026-01-07 11:22:19 +00:00
Ludovico Magnocavallo
7063450392 Preliminary doc for stage 0 setup in GCD (#3623)
* GCD doc

* eu0 ---> s3ns

* Rename README-GDC.md to README-GCD.md

* Didier's suggestions for gcloud auth commands
2026-01-07 12:20:48 +01:00
Ludovico Magnocavallo
7a3387d64d prep v50.1.0 2026-01-07 09:57:10 +00:00
Ludovico Magnocavallo
cb68dfda2a Merge remote-tracking branch 'origin/master' into fast-dev 2026-01-06 08:42:25 +00:00
Eric Zhao
a9df1da89c feat: Add group attribute to NCC spoke configurations. (#3617)
Co-authored-by: Julio Castillo <jccb@google.com>
2026-01-05 14:19:54 +00:00
Ludovico Magnocavallo
04cf0c9d95 FAST CI/CD Azure Devops support via project template (#3616)
* azd wip

* azd wip

* azd wip

* wip

* wip

* wip

* plan/apply pipelines

* wip

* wip

* cross-repo auth, README improvements

* README

* README

* README

* module sources

* self hosted agents

* tfdoc

* tested

* test

* anonymize examples

* boilerplate

* yamllint

* yamllint
2026-01-03 11:59:24 +00:00
Ludovico Magnocavallo
fedf90d25f Add support for pubsub to project factory (#3608)
* add support for pubsub to project factory

* remove duplicate data access log definitions from folders

* tfdoc

* schemas

* fix example

* add pubsub topics context to org in stage 0
2025-12-23 10:24:33 +00:00
Ludovico Magnocavallo
629066f474 Merge remote-tracking branch 'origin/master' into fast-dev 2025-12-23 07:24:17 +00:00
Wiktor Niesiobędzki
e811daaff7 fix bucket name for versions file in 0-org-setup 2025-12-23 07:32:56 +01:00
kovagoadam
1cdad26eab Fix project-factory version output (#3606) 2025-12-22 06:54:34 +00:00
Ludovico Magnocavallo
a554971563 Merge remote-tracking branch 'origin/master' into fast-dev 2025-12-22 06:36:05 +00:00
kovagoadam
e07db39fd5 Add audiences for cicd_workflows local (#3602) 2025-12-18 17:36:16 +00:00
Josh Myers
1eb93db427 feat: project-factory folders support deletion_protection (#3595)
* feat: project-factory buckets support deletion_protection

* chore: Update all folder.schema.json

---------

Co-authored-by: Julio Castillo <jccb@google.com>
2025-12-18 14:25:05 +00:00
Luca Prete
c193fb37ee Upgrade Terraform provider to 7.13 (#3600) 2025-12-18 11:29:48 +01:00
Wiktor Niesiobędzki
85ebc4bc6f fix tests 2025-12-18 11:20:31 +01:00
Wiktor Niesiobędzki
f4b8992ea5 Add source_md5hash to avoid inconsistent plan on updates to FAST output files 2025-12-18 11:20:31 +01:00
Vannick Trinquier
cc24046be8 Add CMEK support to FAST and controls for CMEK encryption (#3556) 2025-12-14 12:14:08 +07:00
Wiktor Niesiobędzki
5af6a3ee25 Add import snippet for IAM to 0-org-setup 2025-12-12 15:05:42 +01:00
Ludovico Magnocavallo
ab0f55216a Add support for descriptive name to projects (#3591)
* add support for descriptive name to projects

* boilerplate

* fmt
2025-12-12 09:06:47 +01:00
Ludovico Magnocavallo
dcb781c97e Update cicd.yaml 2025-12-12 08:03:52 +01:00
Ludovico Magnocavallo
216a12eae5 Fix CI/CD dataset files and provider workflow variable in FAST stage 0 (#3587)
* fix CI/CD dataset files and provider workflow variable

* IAM principals use pool, sts uses provider

* tfdoc

* fix variable description
2025-12-11 15:05:39 +01:00
Ludovico Magnocavallo
d21e9c51e8 prep v50.0.0 2025-12-10 18:22:55 +00:00
Ludovico Magnocavallo
7cc12da6b3 Merge remote-tracking branch 'origin/master' into fast-dev 2025-12-10 18:19:11 +00:00
Ludovico Magnocavallo
5e606d0fff prep v49.3.0 2025-12-10 17:51:43 +00:00
Wiktor Niesiobędzki
c04c6b8093 Add more detailed version of yq (#3581)
Co-authored-by: Ludovico Magnocavallo <ludomagno@google.com>
2025-12-10 18:07:54 +01:00
Ludovico Magnocavallo
7c05299540 Implement additional GCS attributes in project factory (#3583)
* implement additional bucket attributes in project factory

* update FAST schemas

* fmt/tfdoc
2025-12-10 16:12:58 +01:00
Ludovico Magnocavallo
dd6b1ea493 Merge remote-tracking branch 'origin/master' into fast-dev 2025-12-09 17:14:59 +00:00
Wiktor Niesiobędzki
0652ce84a0 Add yq snippets for imports 2025-12-09 17:31:14 +01:00
aumohr
33bf7ab157 added role required for support ticket creation (#3578)
* added role required for support ticket creation

* updated tests for role count

* updated tests for resource count
2025-12-09 14:09:06 +04:00
Ludovico Magnocavallo
66b9106e6e Merge remote-tracking branch 'origin/master' into fast-dev 2025-12-08 08:09:55 +00:00
Ludovico Magnocavallo
ac68262733 prep v49.2.0 2025-12-08 07:58:58 +00:00
Wiktor Niesiobędzki
a3d112d14a ignore_changes quirks 2025-12-07 10:43:25 +01:00
Zsolt Molnar
b1969f6c60 Workforce identity: migrate to iam.managed.allowedPolicyMembers Organizational Policy (#3546)
* Migrate to iam.managed.allowedPolicyMembers Organizational Policy to allow PrincipalSets configuration for Workforce identity use-cases

* Keep iam.managed.allowedPolicyMembers implementation as comment only

---------

Co-authored-by: Julio Castillo <jccb@google.com>
2025-12-05 17:26:04 +01:00
Michael Woodham
bc5732357c Updates to GKE modules to support Secret Sync (#3562)
* Updates to add secret_sync to GKE module in CFF

* updated READMEs against the python tfdoc command

* updated version for secret_sync to reflect 7.12.0

* update provider versions to 7.12.0

* Updated READMEs which got clobbered by merge with main

* Fixed test errors in secret-manager module

---------

Co-authored-by: Ludovico Magnocavallo <ludomagno@google.com>
2025-12-05 15:30:49 +00:00
Ludovico Magnocavallo
ad9b71442a Update stage 0 README (#3565)
* Update stage 0 README

* tfdoc

* sort services and remvoe duplicates
2025-12-04 10:28:57 +01:00
Vannick Trinquier
33df0bba4a Align locations in networking stage with other stages (#3559) 2025-12-04 14:28:05 +07:00
Ludovico Magnocavallo
26d43d8ec5 re-enable project billing association in project factory, extends to folder (#3554) 2025-11-27 20:51:20 +00:00
Ludovico Magnocavallo
6f8097d2eb Merge remote-tracking branch 'origin/master' into fast-dev 2025-11-24 09:56:12 +00:00
Ludovico Magnocavallo
3daba73d0b add default routes / delete default (#3549) 2025-11-24 09:28:57 +00:00
Ludovico Magnocavallo
bd4f2e317a prep v49.1.0 2025-11-24 08:37:06 +00:00
Ludovico Magnocavallo
10e29e1eeb Context improvements: "all service accounts" principal in folder, org, project modules; custom roles in factory condition vars for FAST stage 0 (#3548)
* iam principalsets

* fix folder

* add custom roles to factory condition vars in stage 0

* project shared vpc IAM
2025-11-24 08:28:41 +00:00
Vannick Trinquier
ba4ed1a7a9 Add additional hardened controls for gke, firewall, cloudrun and others (#3541) 2025-11-21 15:38:53 +07:00
Zsolt Molnar
9f51c4b555 Configure ADMIN_READ for sts.googleapis.com to enable Workforce Identity logging (#3545)
* Configure ADMIN_READ for sts.googleapis.com to enable Workforce Identity logging

* Updated test results
2025-11-21 07:40:45 +01:00
Ludovico Magnocavallo
3392953188 prep v49.0.0 2025-11-18 13:51:02 +00:00
Ludovico Magnocavallo
da5726324d Merge remote-tracking branch 'origin/master' into fast-dev 2025-11-18 13:49:13 +00:00