canada-ca / accelerators_accelerateurs-gcp

[GCP] Tools and templates to accelerate GC service delivery. Outils et modèles pour accélérer la prestation de services du GC.
MIT License
10 stars 8 forks source link

GR 1 and 2: Implement SSO for Super Admin and at Identity org level for Evidence ATO acceptance #53

Open fmichaelobrien opened 1 year ago

fmichaelobrien commented 1 year ago

We currently perform SSO for the super admin and the identity organization to adhere to GR 1 and 2 evidence requirements. This should be formalized in the repo readme manual instructions References https://github.com/GoogleCloudPlatform/pbmm-on-gcp-onboarding/blob/main/docs/google-cloud-security-controls.md#guardrails-evidence-package https://github.com/GoogleCloudPlatform/pbmm-on-gcp-onboarding/blob/main/docs/google-cloud-security-controls.md#01-protect-root--global-admins-account https://github.com/GoogleCloudPlatform/pbmm-on-gcp-onboarding/blob/main/docs/google-cloud-security-controls.md#02-management-of-administrative-privileges https://github.com/GoogleCloudPlatform/pbmm-on-gcp-onboarding/blob/main/docs/google-cloud-security-controls.md#iam---mfa https://github.com/GoogleCloudPlatform/pbmm-on-gcp-onboarding/blob/main/docs/google-cloud-security-controls.md#iam---mfa---mfa-on-super-admin-account https://github.com/GoogleCloudPlatform/pbmm-on-gcp-onboarding/blob/main/docs/google-cloud-security-controls.md#iam---mfa---mfa-on-entire-organization-level