Skip to content

Security enhancements #25

@Abdul-Kinadiyil

Description

@Abdul-Kinadiyil
  1. Ensure the public IP access is restricted through Identity aware proxy. Use private clusters as well
  2. Use Preemptible VMs for the clusters so that they don't run beyond 24 hours.
  3. Revert the org following org policy changes after the cluster is set up.
    constraints/compute.trustedImageProjects
    constraints/compute.vmExternalIpAccess
    constraints/compute.restrictSharedVpcSubnetworks
    constraints/compute.restrictSharedVpcHostProjects
    constraints/compute.restrictVpcPeering
    constraints/compute.vmCanIpForward

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions