forseti-security / helm-charts

Apache License 2.0
8 stars 11 forks source link

Update Doco - config-validator workload identity #58

Closed pdutch closed 4 years ago

pdutch commented 4 years ago

Would be good to update the doco here: https://hub.helm.sh/charts/forseti-security/forseti-security

Under prerequisites, to add:

  1. If using a bucket to sync config validator policy, then a GCP project IAM policy binding tying the Kubernetes Service account for the config-validator (created by this chart) to the GCP IAM Forseti client service account. This binding is created via the Terraform module or can be created manually.
kevensen commented 4 years ago

@pdutch Thanks for the recommendation. Please see #59