-
Notifications
You must be signed in to change notification settings - Fork 2
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Publish GCP images with allUsers
visibility
#148
Comments
Relevant code that needs to be adapted is here: Lines 150 to 158 in 2442377
|
@Gchbg , can you please check if this is doable in Feb? |
Unfortunately this doesn't seem to be possible. From the documentation: Indeed when I tried to modify one of the existing images: |
@MrBatschner How is |
Initial feedback in Google in Case 57362784: Publishing images with useable by allUsers
|
@JordanJordanov , I would expect that @MrBatschner can not answer your question, as likely the policies and configuration of the project suse-byos-cloud is not visible to us? Meanwhile I've added following reply in Case 57362784: Publishing images with useable by allUsers with Google:
|
What would you like to be added:
Garden Linux images on GCP are published with
allAuthenticatedUsers
permissions. This has to be changed toallUsers
(also retroactively applied to all existing images) so that it is possible to list and consume the images for users authenticated through a federated IdP.See the clear documentation at https://cloud.google.com/iam/docs/overview#all-authenticated-users.
Why is this needed:
Gardener will use IdP access to cloud platforms for future clusters which should still be able to consume Garden Linux image.
The text was updated successfully, but these errors were encountered: