Ludovico Magnocavallo
cdc5e7df45
prep v52.0.0
2026-01-30 16:00:47 +00:00
Ludovico Magnocavallo
12fd675c8c
Merge remote-tracking branch 'origin/master' into fast-dev
2026-01-30 15:59:10 +00:00
Ludovico Magnocavallo
1f8c2b36da
prep v51.1.0
2026-01-30 15:58:47 +00:00
Ludovico Magnocavallo
30810146cf
Merge remote-tracking branch 'origin/master' into fast-dev
2026-01-30 15:54:45 +00:00
Ludovico Magnocavallo
06c6df5fec
allow null prefixes in project factory when override is not set ( #3691 )
2026-01-30 16:52:50 +01:00
Ludovico Magnocavallo
1a2f84a5a7
Fix resource policies for regional disks in compute-vm module ( #3689 )
...
* fix resource policy for regional disks
* remove unused providers from lockfile
2026-01-30 14:46:40 +01:00
Samuele Perticarari
f9b94955a9
fix: extract and validate links within HTML blocks in Markdown files ( #3688 )
...
* fix: extract and validate links within HTML blocks in Markdown files
---------
Co-authored-by: Samuele Perticarari <sperticarari@google.com >
2026-01-30 09:42:08 +00:00
Luca Prete
dc2ccfe518
Fix Agent Engine PSC-I configuration ( #3687 )
2026-01-30 07:38:41 +01:00
Luca Prete
3877a40119
Add PSC-I support to Agent Engine module ( #3686 )
2026-01-30 07:24:06 +03:00
Tom Wehmeyer
6ba109f5ae
Add template revision to ignore_changes list
2026-01-29 11:03:07 +01:00
Julio Castillo
c1e0c0a390
Clarify GCD install process ( #3683 )
2026-01-28 17:12:05 +03:00
Sven
e933340e02
feat: create new dataset classic-gcd (based on dataset classic) to enable deployment on GCD ( #3679 )
...
* feat: create classic dataset for GCD deployments
* Revert billing config to classic
* Revert GCD README
* Restore billing project in GCD
* Add basic alignment-test with classic dataset
---------
Co-authored-by: Julio Castillo <jccb@google.com >
2026-01-27 16:59:18 +00:00
Julio Castillo
34415a8885
Update defaults.yaml ( #3681 )
2026-01-27 14:52:04 +00:00
Thomas Colomb
a29b1619e9
fix(gke-cluster-standard): Avoid perpetual diff on network tags in node_pool_auto_config block ( #3680 )
...
* fix(gke-cluster-standard): Avoid perpetual diff on network tags in node_pool_auto_config block
* Fix test, remove network tags when empty
2026-01-27 14:12:21 +00:00
Ludovico Magnocavallo
d95c4fcc3f
Merge remote-tracking branch 'origin/master' into fast-dev
2026-01-27 11:55:58 +00:00
Ludovico Magnocavallo
8490df96bf
Use context syntax for VPC-SC access levels and policies ( #3678 )
...
* access levels as context
* ingress/egress context in module
* ingress/egress context in module
* update FAST
* tfdoc
* context test
2026-01-26 15:12:26 +00:00
Simone Ruffilli
75bc003960
Add KMS, Confidential Compute and Shielded VM support to 2-networking ( #3676 )
2026-01-26 14:11:12 +00:00
Isabel Povoa
cc10a29f78
Update README-GCD.md ( #3677 )
...
Updated names and status for clarity
2026-01-26 13:49:22 +00:00
Ludovico Magnocavallo
91973aca23
add support for custom periods in factory budgets ( #3674 )
2026-01-24 09:58:25 +00:00
Ludovico Magnocavallo
447420f173
enable source tag support for hierarchical firewall rules ( #3673 )
2026-01-24 09:41:13 +00:00
Julio Castillo
889fad9536
Update GCD Readme ( #3672 )
2026-01-23 19:25:24 +01:00
Suryansh Singhal
f94033f098
improve configurability and resource references for internal ALB ( #3654 )
...
* refactor(net-lb-app-ext): improve configurability and resource references
- Allow overriding names for backend buckets and instance groups
- Add optional per-group description with default value
- Use self_link for instance group backend references
- Fix HTTP proxy name to use http_proxy_config
* reverted the instance group reference in backend service back to id instead of self link
* updated all the lb modules for unmanaged instance groups to have flexible names and proper refactorization of http_proxy_cofig in each module
* removed the description variable
* updated the readme.md for the net-lb-app-ext-regional module
* fixed the linting error for the change in versions.tf
---------
Co-authored-by: Julio Castillo <jccb@google.com >
Co-authored-by: Ludovico Magnocavallo <ludomagno@google.com >
2026-01-23 15:35:52 +00:00
Ludovico Magnocavallo
b18a883506
Support universe-specific package domain in artifact registry module ( #3671 )
...
* universe
* tflint
* yamllint
2026-01-23 15:55:14 +01:00
Julio Castillo
8dde9fe773
Fix domains of default service accounts when universe is present ( #3670 )
2026-01-23 14:11:17 +00:00
Julio Castillo
1e82683b15
Add service connection policies to net-vpc ( #3667 )
2026-01-23 12:51:00 +00:00
lopezvit
6db25b1a08
Add support for the Assured Workloads in the project factory ( #3666 )
...
* Add support for the Assured Workloads in the project factory
* Fix test after requiring organization as a var
2026-01-23 13:21:48 +01:00
Vannick Trinquier
2ea4c27fe8
Add context support for constraints and additional controls for hardened datasets (IAM, GKE and others) ( #3661 )
2026-01-23 08:28:02 +07:00
kovagoadam
6f0e2ea5fb
Updated documentation to better reflect fallback behaviour ( #3621 )
2026-01-21 11:42:54 +07:00
Roberto Jung Drebes
6e776238d9
Minor doc improvements for FAST bootstrap ( #3643 )
...
* docs(fast): improve stage 0 bootstrap and troubleshooting instructions
2026-01-20 19:43:12 +00:00
Julio Castillo
d46b39b717
Add missing context interpolations ( #3659 )
2026-01-20 20:21:56 +01:00
Julio Castillo
d9e1b924a1
Add asset_feeds to resman modules ( #3658 )
...
* Add asset_feeds to resman modules
* Add examples and update readmes
* Extend pubsub_topic context to project and folder modules
* Use pubsub_topic context for pubsub_destination
* Update readmes and add project-factory asset_feed example
* Update context tests
* Update schemas
2026-01-20 14:37:35 +00:00
Ludovico Magnocavallo
9d486022bf
Merge remote-tracking branch 'origin/master' into fast-dev
2026-01-20 08:47:01 +00:00
Ludovico Magnocavallo
558e552b5e
Support org-level logging cmek config in schema, use context for org-level logging config, update schema docs. ( #3657 )
...
* support org-level logging cmek config in schema, update schema docs
* fix org logging identity context
2026-01-19 16:35:44 +01:00
Ludovico Magnocavallo
04de8f7de7
Support CMEK configuration in org module logging settings, expose identities in FAST context ( #3656 )
...
* support CMEK configuration in org module logging settings, expose identities as FAST contexts
* remove hash from inventories
2026-01-19 13:35:30 +01:00
Vannick Trinquier
8342558732
Implement various compliance configuration and principle of least privilege for hardened dataset ( #3635 )
2026-01-19 15:46:15 +07:00
Luca Prete
ecb92b508c
Add ability to use existing source files in GCS. ( #3653 )
2026-01-15 16:39:05 +00:00
Suryansh Singhal
620551cbb1
feat(logging-bucket): support locked parameter for project parent types ( #3650 )
...
* feat(logging-bucket): support locked parameter for project parent types
- Add locked parameter to project bucket resources with default value of false.
* fixed the linting error, added the validation for project level bucket only and removed the nullable constraint
2026-01-15 11:46:32 +01:00
Suryansh Singhal
ca7e437d60
fix(artifact-registry): resolve permadiff for docker_config immutable_tags ( #3652 )
...
A persistent diff was occurring for Docker artifact registries where `immutable_tags` was set to `false`. On every `terraform plan`, Terraform would propose changing `immutable_tags` from `false` to `null`.
This was caused by the `for_each` condition in the `docker_config` dynamic block, which only created the block if `immutable_tags` was explicitly set to `true`.
The condition has been updated to check if `immutable_tags` is not null (`!= null`) instead of checking if it is true (`== true`). This ensures the `docker_config` block is correctly generated for both `true` and `false` values, aligning the configuration with the resource's state and eliminating the persistent diff.
Co-authored-by: Ludovico Magnocavallo <ludomagno@google.com >
2026-01-15 10:56:25 +01:00
Ludovico Magnocavallo
86268888b4
Merge remote-tracking branch 'origin/master' into fast-dev
2026-01-14 15:06:31 +00:00
Julio Castillo
cff8a25c59
Introduce iam_by_principals_conditional ( #3649 )
...
* Introduce iam_by_principals_conditional
* Add iam_by_principals_conditional to project factory
* Update IAM ADR
* Update project factory readme
* Sync FAST schemas
* Update organization schema
* Add resman tests for iam_by_principals_conditional
* Update PF project-defaults.tf
* Update copyright
2026-01-14 11:16:07 +00:00
David Liebert
649cab0020
fixed bug where label field is ignored for policy based routes ( #3648 )
...
* fixed bug where label field is ignored for policy based routes
* Fix example and inventory
* Add missing schema
---------
Co-authored-by: Julio Castillo <jccb@google.com >
2026-01-14 09:48:16 +00:00
Ludovico Magnocavallo
ed6b8529b8
Merge remote-tracking branch 'origin/master' into fast-dev
2026-01-13 09:43:11 +00:00
Ludovico Magnocavallo
66bbaeb854
fix observability in stage 0 ( #3646 )
2026-01-13 09:34:59 +00:00
Ludovico Magnocavallo
032db2f902
expose bigquery kms in project schema ( #3645 )
2026-01-13 10:30:19 +01:00
Ludovico Magnocavallo
88306fe99a
Adding missing context replacement type to project factory README, add folder_ids to project condition vars ( #3642 )
...
* Adding missing context replacement type to project factory README
* add folder ids to project context condition vars
2026-01-12 14:41:07 +01:00
labbott-hub24
5e6f9a4332
Added locality_lb_policy support to the regional ext alb module ( #3638 )
...
Added http_cookie to the session_affinity validation
doc update
Co-authored-by: Julio Castillo <jccb@google.com >
2026-01-12 12:50:53 +01:00
Julio Castillo
6febcfe136
Add support for mirroring rules to modules/net-firewall-policy ( #3636 )
...
* Add support for mirroring rules to net-firewall-policy
* Split mirroring rules
* Add schema
* Sort variables
2026-01-12 11:10:43 +00:00
Eric Zhao
c1248d328a
Allow any VPC for (secure) network_tags ( #3634 )
...
* feat: allow all for VPC networks
* feat: add examples
* feat: add header
* feat: module test
* fix: update network testing data to pass validation
---------
Co-authored-by: Julio Castillo <jccb@google.com >
2026-01-12 09:34:18 +00:00
Vannick Trinquier
ca413b8aa8
Add support to VPC flow logs for PSC subnet ( #3639 )
2026-01-12 15:56:14 +07:00
Ludovico Magnocavallo
6a2a80786f
Delete fast/stages/0-org-setup/WORKLOG.md
2026-01-09 13:07:46 +01:00