Skip to content

Commit

Permalink
fix: always grant view permissions at org to CB SA for TFV (#645)
Browse files Browse the repository at this point in the history
  • Loading branch information
bharathkkb authored Mar 8, 2022
1 parent 235698b commit 66d4c5b
Showing 1 changed file with 0 additions and 8 deletions.
8 changes: 0 additions & 8 deletions 0-bootstrap/main.tf
Original file line number Diff line number Diff line change
Expand Up @@ -177,19 +177,11 @@ data "google_project" "cloudbuild" {
}

resource "google_organization_iam_member" "org_cb_sa_iam_viewer" {
count = var.parent_folder == "" ? 1 : 0
org_id = var.org_id
role = "roles/iam.securityReviewer"
member = "serviceAccount:${data.google_project.cloudbuild.number}@cloudbuild.gserviceaccount.com"
}

resource "google_folder_iam_member" "org_cb_sa_iam_viewer" {
count = var.parent_folder != "" ? 1 : 0
folder = var.parent_folder
role = "roles/iam.securityReviewer"
member = "serviceAccount:${data.google_project.cloudbuild.number}@cloudbuild.gserviceaccount.com"
}

resource "google_organization_iam_member" "org_cb_sa_browser" {
count = var.parent_folder == "" ? 1 : 0
org_id = var.org_id
Expand Down

0 comments on commit 66d4c5b

Please sign in to comment.