Skip to content

Commit d3fc515

Browse files
committed
audit: update as of 2021-07-10
1 parent 930d08e commit d3fc515

File tree

24 files changed

+930
-10
lines changed

24 files changed

+930
-10
lines changed
Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
{
2+
"createTime": "2021-07-10T12:35:00.145Z",
3+
"lifecycleState": "ACTIVE",
4+
"name": "k8s-infra-project-jedha",
5+
"parent": {
6+
"id": "758905017065",
7+
"type": "organization"
8+
},
9+
"projectId": "k8s-infra-project-jedha",
10+
"projectNumber": "1088262075988"
11+
}
Lines changed: 78 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,78 @@
1+
{
2+
"bindings": [
3+
{
4+
"members": [
5+
"serviceAccount:[email protected]"
6+
],
7+
"role": "roles/compute.serviceAgent"
8+
},
9+
{
10+
"members": [
11+
"serviceAccount:service-1088262075988@container-engine-robot.iam.gserviceaccount.com"
12+
],
13+
"role": "roles/container.serviceAgent"
14+
},
15+
{
16+
"members": [
17+
"serviceAccount:[email protected]"
18+
],
19+
"role": "roles/containerregistry.ServiceAgent"
20+
},
21+
{
22+
"members": [
23+
"serviceAccount:[email protected]",
24+
"serviceAccount:[email protected]"
25+
],
26+
"role": "roles/editor"
27+
},
28+
{
29+
"members": [
30+
"serviceAccount:tf-gke-registry-cluste-1sj9@k8s-infra-project-jedha.iam.gserviceaccount.com",
31+
"serviceAccount:tf-gke-registry-cluste-2csl@k8s-infra-project-jedha.iam.gserviceaccount.com",
32+
"serviceAccount:tf-gke-registry-cluste-l9yw@k8s-infra-project-jedha.iam.gserviceaccount.com",
33+
"serviceAccount:tf-gke-registry-cluste-xu8z@k8s-infra-project-jedha.iam.gserviceaccount.com"
34+
],
35+
"role": "roles/logging.logWriter"
36+
},
37+
{
38+
"members": [
39+
"serviceAccount:tf-gke-registry-cluste-1sj9@k8s-infra-project-jedha.iam.gserviceaccount.com",
40+
"serviceAccount:tf-gke-registry-cluste-2csl@k8s-infra-project-jedha.iam.gserviceaccount.com",
41+
"serviceAccount:tf-gke-registry-cluste-l9yw@k8s-infra-project-jedha.iam.gserviceaccount.com",
42+
"serviceAccount:tf-gke-registry-cluste-xu8z@k8s-infra-project-jedha.iam.gserviceaccount.com"
43+
],
44+
"role": "roles/monitoring.metricWriter"
45+
},
46+
{
47+
"members": [
48+
"serviceAccount:tf-gke-registry-cluste-1sj9@k8s-infra-project-jedha.iam.gserviceaccount.com",
49+
"serviceAccount:tf-gke-registry-cluste-2csl@k8s-infra-project-jedha.iam.gserviceaccount.com",
50+
"serviceAccount:tf-gke-registry-cluste-l9yw@k8s-infra-project-jedha.iam.gserviceaccount.com",
51+
"serviceAccount:tf-gke-registry-cluste-xu8z@k8s-infra-project-jedha.iam.gserviceaccount.com"
52+
],
53+
"role": "roles/monitoring.viewer"
54+
},
55+
{
56+
"members": [
57+
58+
],
59+
"role": "roles/owner"
60+
},
61+
{
62+
"members": [
63+
"serviceAccount:[email protected]"
64+
],
65+
"role": "roles/pubsub.serviceAgent"
66+
},
67+
{
68+
"members": [
69+
"serviceAccount:tf-gke-registry-cluste-1sj9@k8s-infra-project-jedha.iam.gserviceaccount.com",
70+
"serviceAccount:tf-gke-registry-cluste-2csl@k8s-infra-project-jedha.iam.gserviceaccount.com",
71+
"serviceAccount:tf-gke-registry-cluste-l9yw@k8s-infra-project-jedha.iam.gserviceaccount.com",
72+
"serviceAccount:tf-gke-registry-cluste-xu8z@k8s-infra-project-jedha.iam.gserviceaccount.com"
73+
],
74+
"role": "roles/stackdriver.resourceMetadata.writer"
75+
}
76+
],
77+
"version": 1
78+
}
Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
{
2+
"disabled": true,
3+
"displayName": "Compute Engine default service account",
4+
"email": "[email protected]",
5+
"name": "projects/k8s-infra-project-jedha/serviceAccounts/[email protected]",
6+
"oauth2ClientId": "106911913404991129722",
7+
"projectId": "k8s-infra-project-jedha",
8+
"uniqueId": "106911913404991129722"
9+
}
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
{}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
{
2+
"displayName": "Terraform-managed service account for cluster registry-cluster-europe",
3+
"email": "tf-gke-registry-cluste-1sj9@k8s-infra-project-jedha.iam.gserviceaccount.com",
4+
"name": "projects/k8s-infra-project-jedha/serviceAccounts/tf-gke-registry-cluste-1sj9@k8s-infra-project-jedha.iam.gserviceaccount.com",
5+
"oauth2ClientId": "105643947909822174794",
6+
"projectId": "k8s-infra-project-jedha",
7+
"uniqueId": "105643947909822174794"
8+
}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
{}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
{
2+
"displayName": "Terraform-managed service account for cluster registry-cluster-europe",
3+
"email": "tf-gke-registry-cluste-2csl@k8s-infra-project-jedha.iam.gserviceaccount.com",
4+
"name": "projects/k8s-infra-project-jedha/serviceAccounts/tf-gke-registry-cluste-2csl@k8s-infra-project-jedha.iam.gserviceaccount.com",
5+
"oauth2ClientId": "109324601757214311170",
6+
"projectId": "k8s-infra-project-jedha",
7+
"uniqueId": "109324601757214311170"
8+
}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
{}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
{
2+
"displayName": "Terraform-managed service account for cluster registry-cluster-us",
3+
"email": "tf-gke-registry-cluste-l9yw@k8s-infra-project-jedha.iam.gserviceaccount.com",
4+
"name": "projects/k8s-infra-project-jedha/serviceAccounts/tf-gke-registry-cluste-l9yw@k8s-infra-project-jedha.iam.gserviceaccount.com",
5+
"oauth2ClientId": "107487212080222156284",
6+
"projectId": "k8s-infra-project-jedha",
7+
"uniqueId": "107487212080222156284"
8+
}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
{}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
{
2+
"displayName": "Terraform-managed service account for cluster registry-cluster-asia",
3+
"email": "tf-gke-registry-cluste-xu8z@k8s-infra-project-jedha.iam.gserviceaccount.com",
4+
"name": "projects/k8s-infra-project-jedha/serviceAccounts/tf-gke-registry-cluste-xu8z@k8s-infra-project-jedha.iam.gserviceaccount.com",
5+
"oauth2ClientId": "105064496255328089237",
6+
"projectId": "k8s-infra-project-jedha",
7+
"uniqueId": "105064496255328089237"
8+
}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
{}

audit/projects/k8s-infra-project-jedha/services/bigquery/bigquery.datasets.json

Whitespace-only changes.
Lines changed: 185 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,185 @@
1+
{
2+
"commonInstanceMetadata": {
3+
"items": [
4+
{
5+
"key": "gke-registry-cluster-us-33d4327e-secondary-ranges",
6+
"value": "services:vpc-registry-us:registry-us:registry-cluster-us-services-range,shareable-pods:vpc-registry-us:registry-us:registry-cluster-us-pods-range"
7+
},
8+
{
9+
"key": "gke-registry-cluster-europe-a531f737-secondary-ranges",
10+
"value": "services:vpc-registry-europe:registry-europe:registry-cluster-eu-services-range,shareable-pods:vpc-registry-europe:registry-europe:registry-cluster-eu-pods-range"
11+
},
12+
{
13+
"key": "gke-registry-cluster-asia-596051c3-secondary-ranges",
14+
"value": "services:vpc-registry-asia:registry-asia:registry-cluster-asia-services-range,shareable-pods:vpc-registry-asia:registry-asia:registry-cluster-asia-pods-range"
15+
}
16+
],
17+
"kind": "compute#metadata"
18+
},
19+
"creationTimestamp": "2021-07-10T05:35:31.563-07:00",
20+
"defaultNetworkTier": "PREMIUM",
21+
"defaultServiceAccount": "[email protected]",
22+
"id": "1841451747995036412",
23+
"kind": "compute#project",
24+
"name": "k8s-infra-project-jedha",
25+
"quotas": [
26+
{
27+
"limit": 10000,
28+
"metric": "SNAPSHOTS"
29+
},
30+
{
31+
"limit": 30,
32+
"metric": "NETWORKS"
33+
},
34+
{
35+
"limit": 500,
36+
"metric": "FIREWALLS"
37+
},
38+
{
39+
"limit": 5000,
40+
"metric": "IMAGES"
41+
},
42+
{
43+
"limit": 175,
44+
"metric": "STATIC_ADDRESSES"
45+
},
46+
{
47+
"limit": 300,
48+
"metric": "ROUTES"
49+
},
50+
{
51+
"limit": 150,
52+
"metric": "FORWARDING_RULES"
53+
},
54+
{
55+
"limit": 500,
56+
"metric": "TARGET_POOLS"
57+
},
58+
{
59+
"limit": 500,
60+
"metric": "HEALTH_CHECKS"
61+
},
62+
{
63+
"limit": 575,
64+
"metric": "IN_USE_ADDRESSES"
65+
},
66+
{
67+
"limit": 500,
68+
"metric": "TARGET_INSTANCES"
69+
},
70+
{
71+
"limit": 100,
72+
"metric": "TARGET_HTTP_PROXIES"
73+
},
74+
{
75+
"limit": 100,
76+
"metric": "URL_MAPS"
77+
},
78+
{
79+
"limit": 30,
80+
"metric": "BACKEND_SERVICES"
81+
},
82+
{
83+
"limit": 1000,
84+
"metric": "INSTANCE_TEMPLATES"
85+
},
86+
{
87+
"limit": 50,
88+
"metric": "TARGET_VPN_GATEWAYS"
89+
},
90+
{
91+
"limit": 100,
92+
"metric": "VPN_TUNNELS"
93+
},
94+
{
95+
"limit": 30,
96+
"metric": "BACKEND_BUCKETS"
97+
},
98+
{
99+
"limit": 20,
100+
"metric": "ROUTERS"
101+
},
102+
{
103+
"limit": 100,
104+
"metric": "TARGET_SSL_PROXIES"
105+
},
106+
{
107+
"limit": 100,
108+
"metric": "TARGET_HTTPS_PROXIES"
109+
},
110+
{
111+
"limit": 100,
112+
"metric": "SSL_CERTIFICATES"
113+
},
114+
{
115+
"limit": 275,
116+
"metric": "SUBNETWORKS"
117+
},
118+
{
119+
"limit": 100,
120+
"metric": "TARGET_TCP_PROXIES"
121+
},
122+
{
123+
"limit": 10,
124+
"metric": "SECURITY_POLICIES"
125+
},
126+
{
127+
"limit": 200,
128+
"metric": "SECURITY_POLICY_RULES"
129+
},
130+
{
131+
"limit": 1000,
132+
"metric": "XPN_SERVICE_PROJECTS"
133+
},
134+
{
135+
"limit": 150,
136+
"metric": "PACKET_MIRRORINGS"
137+
},
138+
{
139+
"limit": 1000,
140+
"metric": "NETWORK_ENDPOINT_GROUPS"
141+
},
142+
{
143+
"limit": 6,
144+
"metric": "INTERCONNECTS"
145+
},
146+
{
147+
"limit": 5000,
148+
"metric": "GLOBAL_INTERNAL_ADDRESSES"
149+
},
150+
{
151+
"limit": 50,
152+
"metric": "VPN_GATEWAYS"
153+
},
154+
{
155+
"limit": 5000,
156+
"metric": "MACHINE_IMAGES"
157+
},
158+
{
159+
"limit": 20,
160+
"metric": "SECURITY_POLICY_CEVAL_RULES"
161+
},
162+
{
163+
"limit": 50,
164+
"metric": "EXTERNAL_VPN_GATEWAYS"
165+
},
166+
{
167+
"limit": 1,
168+
"metric": "PUBLIC_ADVERTISED_PREFIXES"
169+
},
170+
{
171+
"limit": 10,
172+
"metric": "PUBLIC_DELEGATED_PREFIXES"
173+
},
174+
{
175+
"limit": 1024,
176+
"metric": "STATIC_BYOIP_ADDRESSES"
177+
},
178+
{
179+
"limit": 150,
180+
"metric": "INTERNAL_TRAFFIC_DIRECTOR_FORWARDING_RULES"
181+
}
182+
],
183+
"selfLink": "https://www.googleapis.com/compute/v1/projects/k8s-infra-project-jedha",
184+
"xpnProjectStatus": "UNSPECIFIED_XPN_PROJECT_STATUS"
185+
}

0 commit comments

Comments
 (0)