issues
search
GoogleCloudPlatform
/
pbmm-on-gcp-onboarding
GCP Canadian Public Sector Landing Zone overlay on top of the TEF via CFT modules - a secure cloud foundation
https://cloud.google.com/architecture/security-foundations
Apache License 2.0
38
stars
55
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Bump github.com/hashicorp/go-getter from 1.7.2 to 1.7.5 in /helpers/foundation-deployer
#453
dependabot[bot]
opened
5 days ago
0
New org: billing sharing from external org now requires addition of directory id - as GCP default organization policy - domain restricted sharing
#452
obriensystems
opened
2 weeks ago
1
Bump @grpc/grpc-js from 1.9.6 to 1.9.15 in /1-org/modules/cai-monitoring/function-source
#451
dependabot[bot]
opened
2 weeks ago
0
Remove BAA from sa.tf in 0-boostrap - simuliation with only BAU - retest LZ
#450
obriensystems
opened
1 month ago
0
service account impersonation for developer accounts
#449
obriensystems
opened
1 month ago
2
Merge Marian's latest dev branch - incorporating 20240520 TEF upstream sync
#448
fmichaelobrien
opened
1 month ago
0
Merge stable client branch to test - draft for diff - do not branch or merge to main yet - use in place
#447
fmichaelobrien
opened
1 month ago
1
Azure and GCP API calls - Cross Cloud Interconnect and Azure Expressroute
#446
obriensystems
opened
1 month ago
0
upstream: developer workflow - remove seed project liens before deleting - or disable liens on create
#445
obriensystems
opened
1 month ago
0
upstream: missing main branch references in 0-bootstrap push-to-repo.sh step - switch to master
#444
obriensystems
opened
1 month ago
0
Upstream: full group creation hangs on eventual consistency - wait 5 min to restart 0-bootstrap terraform plan/apply
#443
obriensystems
opened
1 month ago
0
Canary: serverless: gen app builder
#442
obriensystems
opened
1 month ago
0
ITSG-33 security controls mapping for TEF V4 - for org policies
#441
fmichaelobrien
opened
1 month ago
3
Add CSR clone procedure using SSH instead of gcloud for cloud shell
#440
obriensystems
opened
1 month ago
0
Migration: CSR (Cloud Source Repositories) EOL June 2024 - move to SSM (Secure Source Manager) as default CICD repository
#439
obriensystems
opened
1 month ago
0
pipeline retries for what can go wrong with timeout, group retry, CB pool creation
#438
fmichaelobrien
opened
1 month ago
0
terraform destroy - procedure and docs
#437
obriensystems
opened
1 month ago
0
Hold: secondary SA role of owner should not be required on bu proj
#436
obriensystems
opened
1 month ago
0
#387 - upstream TEF sync 20240511 - to PR 1199
#435
obriensystems
opened
1 month ago
3
Document Cloud Build worker pool quota increase required for the 1 private pool per region - will hit on 2nd dev LZ
#434
obriensystems
opened
1 month ago
4
#432 - cloudidentity googleapis enable
#433
obriensystems
closed
1 month ago
0
Add cloudidentity.googleapis.com - from 360 run - missing from readme
#432
obriensystems
opened
1 month ago
1
Cloud Build module in bootstrap fails on CSR clone gcloud API auth during push-to-repo.sh for CB trigger creation on particular client - use ssh key and ssh-agent
#431
fmichaelobrien
opened
1 month ago
19
Verify federated ad/entra user visible in IAM gcp side for role assignment - currently only admin side can assign user to a group
#430
fmichaelobrien
opened
1 month ago
0
Windows amd64/ia64 local gcloud client support: terraform apply via ming64/git-bash tested - expected win32 issue running bootstrap module check_env.sh works only inside docker container (ubuntu or google/cloud-sdk) - or use cloud shell
#429
fmichaelobrien
opened
1 month ago
13
Verify windows /AVD workstation 0-bootstrap deployment has no issues with symlinks
#428
fmichaelobrien
opened
1 month ago
2
#421 - main branch defaults to CB/CSR
#427
fmichaelobrien
closed
1 month ago
0
#425 - cloudbuild services enable readme
#426
fmichaelobrien
closed
1 month ago
0
Missing cloudbuild services enable on bootstrap requires a 5 min wait state before a terraform re apply on 0-bootstrap - delete the existing cloudbuild worker pool to proceed
#425
obriensystems
opened
1 month ago
0
As part of 421 - CB/local retrofit - verify KMS = us and GCS = US locations equivalents for nane1/nane2
#424
obriensystems
opened
1 month ago
0
#421 - prepare main for dual CB/CSR and terraform local deployment modes
#423
obriensystems
closed
1 month ago
1
As part of 421 - CB/local retrofit - verify no trailing . required for perimeter_additional_members like for the DNS peering domain - defaulting to no
#422
obriensystems
opened
1 month ago
1
Replace/revert-back CB/CSR options as we add local terraform and ado (399) options - to be able to use CB/CSR as a current option while we retrofit
#421
fmichaelobrien
opened
1 month ago
5
#419 - warn to use branch 357 over main for default CB/CSR until remaining local terraform mode is upsourced and/or CB/CSR is returned as part of ADO 399 work
#420
fmichaelobrien
closed
1 month ago
1
README.md warning on main branch temporary repo state while the CB/CSR option is returned during the retrofit for local TF deployment
#419
fmichaelobrien
opened
1 month ago
1
0-bootstrap cloning to repo error
#418
eballestas
opened
1 month ago
2
0-bootstrap: cloudbuild output is not present on outputs.tf file
#417
eballestas
opened
1 month ago
3
Step 0-bootstrap: no outputs generated
#416
eballestas
opened
1 month ago
2
Add 2nd gcp_scc_admin to gcp_ssc_findings_admin
#415
fmichaelobrien
opened
1 month ago
0
Install GCP local CLI on Azure Virtual Desktop
#414
obriensystems
opened
2 months ago
1
Identity Federation procedure for Active Directory and Microsoft Entra
#413
obriensystems
opened
2 months ago
0
Add local gcloud shell instructions to readme - staged in wiki
#412
obriensystems
opened
2 months ago
0
Bump github.com/hashicorp/go-getter from 1.7.2 to 1.7.4 in /test/integration
#411
dependabot[bot]
opened
2 months ago
0
Bump github.com/hashicorp/go-getter from 1.7.2 to 1.7.4 in /helpers/foundation-deployer
#410
dependabot[bot]
opened
2 months ago
0
DockerHub development version of the TEF Dockerfile terraform.exe image for ADO iteration based off the gcloud image in https://hub.docker.com/r/google/cloud-sdk/
#409
obriensystems
opened
2 months ago
5
#399 - add Azure DevOps CI/CD support
#408
obriensystems
opened
2 months ago
1
Merge duplicate instructions on GCP onboarding, roles, service enablements, billing and bootstrap project - continuation of 362
#407
obriensystems
opened
2 months ago
0
Data Residency: nane1/nane2 region retrofit throughout the LZ - in prep of a single parameterized input yaml
#406
obriensystems
opened
2 months ago
0
Align PBMM and TEF repo on nonproduction, non-production and non_production identifiers - upstream and downstream
#405
obriensystems
opened
2 months ago
0
Adjust readme.md for local PR changes specific to ongoing ADO ci/cd option
#404
obriensystems
opened
2 months ago
0
Next