-
Notifications
You must be signed in to change notification settings - Fork 6
Open
Description
- Ensure the public IP access is restricted through Identity aware proxy. Use private clusters as well
- Use Preemptible VMs for the clusters so that they don't run beyond 24 hours.
- Revert the org following org policy changes after the cluster is set up.
constraints/compute.trustedImageProjects
constraints/compute.vmExternalIpAccess
constraints/compute.restrictSharedVpcSubnetworks
constraints/compute.restrictSharedVpcHostProjects
constraints/compute.restrictVpcPeering
constraints/compute.vmCanIpForward
Metadata
Metadata
Assignees
Labels
No labels