Skip to content

Commit

Permalink
GCP IAM Updates Detected
Browse files Browse the repository at this point in the history
  • Loading branch information
jdyke committed Dec 19, 2023
1 parent 9f0d5fe commit 696b2f2
Show file tree
Hide file tree
Showing 24 changed files with 136 additions and 13 deletions.
1 change: 1 addition & 0 deletions roles/apigateway.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -21,6 +21,7 @@
"resourcemanager.projects.get",
"resourcemanager.projects.list",
"servicemanagement.services.get",
"serviceusage.services.get",
"serviceusage.services.list"
],
"name": "roles/apigateway.viewer",
Expand Down
1 change: 1 addition & 0 deletions roles/assuredworkloads.serviceAgent
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@
"cloudkms.cryptoKeys.create",
"cloudkms.keyRings.create",
"serviceusage.services.enable",
"serviceusage.services.get",
"serviceusage.services.use"
],
"name": "roles/assuredworkloads.serviceAgent",
Expand Down
1 change: 1 addition & 0 deletions roles/automl.admin
Original file line number Diff line number Diff line change
Expand Up @@ -60,6 +60,7 @@
"automl.tableSpecs.update",
"resourcemanager.projects.get",
"resourcemanager.projects.list",
"serviceusage.services.get",
"serviceusage.services.list"
],
"name": "roles/automl.admin",
Expand Down
1 change: 1 addition & 0 deletions roles/automl.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -26,6 +26,7 @@
"automl.tableSpecs.list",
"resourcemanager.projects.get",
"resourcemanager.projects.list",
"serviceusage.services.get",
"serviceusage.services.list"
],
"name": "roles/automl.viewer",
Expand Down
2 changes: 1 addition & 1 deletion roles/consumerprocurement.entitlementViewer
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,6 @@
"serviceusage.services.list"
],
"name": "roles/consumerprocurement.entitlementViewer",
"stage": "BETA",
"stage": "GA",
"title": "Consumer Procurement Entitlement Viewer"
}
2 changes: 1 addition & 1 deletion roles/consumerprocurement.orderViewer
Original file line number Diff line number Diff line change
Expand Up @@ -21,6 +21,6 @@
"consumerprocurement.orders.list"
],
"name": "roles/consumerprocurement.orderViewer",
"stage": "BETA",
"stage": "GA",
"title": "Consumer Procurement Order Viewer"
}
2 changes: 1 addition & 1 deletion roles/consumerprocurement.procurementViewer
Original file line number Diff line number Diff line change
Expand Up @@ -30,6 +30,6 @@
"serviceusage.services.list"
],
"name": "roles/consumerprocurement.procurementViewer",
"stage": "BETA",
"stage": "GA",
"title": "Consumer Procurement Viewer"
}
12 changes: 11 additions & 1 deletion roles/enterprisepurchasing.admin
Original file line number Diff line number Diff line change
Expand Up @@ -2,10 +2,20 @@
"description": "Full access to Enterprise Purchasing resources.",
"etag": "AA==",
"includedPermissions": [
"enterprisepurchasing.gcveCuds.create",
"enterprisepurchasing.gcveCuds.get",
"enterprisepurchasing.gcveCuds.list",
"enterprisepurchasing.gcveNodePricingInfo.list",
"enterprisepurchasing.locations.get",
"enterprisepurchasing.locations.list",
"enterprisepurchasing.operations.cancel",
"enterprisepurchasing.operations.delete",
"enterprisepurchasing.operations.get",
"enterprisepurchasing.operations.list",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
],
"name": "roles/enterprisepurchasing.admin",
"stage": "ALPHA",
"stage": "BETA",
"title": "Enterprise Purchasing Admin"
}
2 changes: 1 addition & 1 deletion roles/enterprisepurchasing.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -13,6 +13,6 @@
"resourcemanager.projects.list"
],
"name": "roles/enterprisepurchasing.viewer",
"stage": "ALPHA",
"stage": "BETA",
"title": "Enterprise Purchasing Viewer"
}
2 changes: 1 addition & 1 deletion roles/mandiant.expertiseOnDemandViewer
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,6 @@
"resourcemanager.projects.list"
],
"name": "roles/mandiant.expertiseOnDemandViewer",
"stage": "ALPHA",
"stage": "BETA",
"title": "Mandiant Expertise On Demand Viewer"
}
2 changes: 1 addition & 1 deletion roles/mandiant.threatIntelEditor
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,6 @@
"resourcemanager.projects.list"
],
"name": "roles/mandiant.threatIntelEditor",
"stage": "ALPHA",
"stage": "BETA",
"title": "Mandiant Threat Intel Editor"
}
32 changes: 32 additions & 0 deletions roles/marketplacesolutions.admin
Original file line number Diff line number Diff line change
@@ -0,0 +1,32 @@
{
"description": "Full access to Marketplace Solutions resources.",
"etag": "AA==",
"includedPermissions": [
"marketplacesolutions.locations.get",
"marketplacesolutions.locations.list",
"marketplacesolutions.operations.cancel",
"marketplacesolutions.operations.delete",
"marketplacesolutions.operations.get",
"marketplacesolutions.operations.list",
"marketplacesolutions.powerImages.get",
"marketplacesolutions.powerImages.list",
"marketplacesolutions.powerInstances.applyPowerAction",
"marketplacesolutions.powerInstances.create",
"marketplacesolutions.powerInstances.delete",
"marketplacesolutions.powerInstances.get",
"marketplacesolutions.powerInstances.list",
"marketplacesolutions.powerInstances.reset",
"marketplacesolutions.powerInstances.update",
"marketplacesolutions.powerNetworks.get",
"marketplacesolutions.powerNetworks.list",
"marketplacesolutions.powerSshKeys.get",
"marketplacesolutions.powerSshKeys.list",
"marketplacesolutions.powerVolumes.get",
"marketplacesolutions.powerVolumes.list",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
],
"name": "roles/marketplacesolutions.admin",
"stage": "BETA",
"title": "Marketplace Solutions Admin"
}
26 changes: 26 additions & 0 deletions roles/marketplacesolutions.editor
Original file line number Diff line number Diff line change
@@ -0,0 +1,26 @@
{
"description": "Edit access to Marketplace Solutions resources.",
"etag": "AA==",
"includedPermissions": [
"marketplacesolutions.locations.get",
"marketplacesolutions.locations.list",
"marketplacesolutions.operations.get",
"marketplacesolutions.operations.list",
"marketplacesolutions.powerImages.get",
"marketplacesolutions.powerImages.list",
"marketplacesolutions.powerInstances.get",
"marketplacesolutions.powerInstances.list",
"marketplacesolutions.powerInstances.update",
"marketplacesolutions.powerNetworks.get",
"marketplacesolutions.powerNetworks.list",
"marketplacesolutions.powerSshKeys.get",
"marketplacesolutions.powerSshKeys.list",
"marketplacesolutions.powerVolumes.get",
"marketplacesolutions.powerVolumes.list",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
],
"name": "roles/marketplacesolutions.editor",
"stage": "ALPHA",
"title": "Marketplace Solutions Editor"
}
25 changes: 25 additions & 0 deletions roles/marketplacesolutions.viewer
Original file line number Diff line number Diff line change
@@ -0,0 +1,25 @@
{
"description": "Readonly access to Marketplace Solutions resources.",
"etag": "AA==",
"includedPermissions": [
"marketplacesolutions.locations.get",
"marketplacesolutions.locations.list",
"marketplacesolutions.operations.get",
"marketplacesolutions.operations.list",
"marketplacesolutions.powerImages.get",
"marketplacesolutions.powerImages.list",
"marketplacesolutions.powerInstances.get",
"marketplacesolutions.powerInstances.list",
"marketplacesolutions.powerNetworks.get",
"marketplacesolutions.powerNetworks.list",
"marketplacesolutions.powerSshKeys.get",
"marketplacesolutions.powerSshKeys.list",
"marketplacesolutions.powerVolumes.get",
"marketplacesolutions.powerVolumes.list",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
],
"name": "roles/marketplacesolutions.viewer",
"stage": "BETA",
"title": "Marketplace Solutions Viewer"
}
1 change: 1 addition & 0 deletions roles/monitoring.editor
Original file line number Diff line number Diff line change
Expand Up @@ -64,6 +64,7 @@
"resourcemanager.projects.get",
"resourcemanager.projects.list",
"serviceusage.services.enable",
"serviceusage.services.get",
"stackdriver.projects.edit",
"stackdriver.projects.get",
"stackdriver.resourceMetadata.list",
Expand Down
3 changes: 2 additions & 1 deletion roles/securitycenter.automationServiceAgent
Original file line number Diff line number Diff line change
Expand Up @@ -13,7 +13,8 @@
"resourcemanager.projects.get",
"resourcemanager.projects.getIamPolicy",
"resourcemanager.projects.list",
"serviceusage.services.enable"
"serviceusage.services.enable",
"serviceusage.services.get"
],
"name": "roles/securitycenter.automationServiceAgent",
"stage": "GA",
Expand Down
2 changes: 1 addition & 1 deletion roles/securitycenter.complianceSnapshotsViewer
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,6 @@
"securitycenter.compliancesnapshots.list"
],
"name": "roles/securitycenter.complianceSnapshotsViewer",
"stage": "ALPHA",
"stage": "BETA",
"title": "Security Center Compliance Snapshots Viewer"
}
1 change: 1 addition & 0 deletions roles/securitycenter.findingsViewer
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@
"resourcemanager.folders.get",
"resourcemanager.organizations.get",
"resourcemanager.projects.get",
"securitycenter.compliancesnapshots.list",
"securitycenter.findingexplanations.get",
"securitycenter.findings.group",
"securitycenter.findings.list",
Expand Down
2 changes: 1 addition & 1 deletion roles/securityposture.postureDeploymentsViewer
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,6 @@
"securityposture.postureDeployments.list"
],
"name": "roles/securityposture.postureDeploymentsViewer",
"stage": "EAP",
"stage": "GA",
"title": "Security Posture Deployments Viewer"
}
2 changes: 1 addition & 1 deletion roles/securityposture.postureEditor
Original file line number Diff line number Diff line change
Expand Up @@ -10,6 +10,6 @@
"securityposture.postures.update"
],
"name": "roles/securityposture.postureEditor",
"stage": "EAP",
"stage": "GA",
"title": "Security Posture Resource Editor"
}
2 changes: 1 addition & 1 deletion roles/securityposture.postureViewer
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,6 @@
"securityposture.postures.list"
],
"name": "roles/securityposture.postureViewer",
"stage": "EAP",
"stage": "GA",
"title": "Security Posture Resource Viewer"
}
1 change: 1 addition & 0 deletions roles/stackdriver.accounts.editor
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@
"resourcemanager.projects.get",
"resourcemanager.projects.list",
"serviceusage.services.enable",
"serviceusage.services.get",
"stackdriver.projects.edit",
"stackdriver.projects.get"
],
Expand Down
22 changes: 22 additions & 0 deletions roles/viewer
Original file line number Diff line number Diff line change
Expand Up @@ -2181,6 +2181,13 @@
"enterpriseknowledgegraph.entityReconciliationJobs.list",
"enterpriseknowledgegraph.publicKnowledgeGraphEntities.lookup",
"enterpriseknowledgegraph.publicKnowledgeGraphEntities.search",
"enterprisepurchasing.gcveCuds.get",
"enterprisepurchasing.gcveCuds.list",
"enterprisepurchasing.gcveNodePricingInfo.list",
"enterprisepurchasing.locations.get",
"enterprisepurchasing.locations.list",
"enterprisepurchasing.operations.get",
"enterprisepurchasing.operations.list",
"errorreporting.applications.list",
"errorreporting.errorEvents.list",
"errorreporting.groupMetadata.get",
Expand Down Expand Up @@ -2676,6 +2683,20 @@
"mapsplatformdatasets.datasets.export",
"mapsplatformdatasets.datasets.get",
"mapsplatformdatasets.datasets.list",
"marketplacesolutions.locations.get",
"marketplacesolutions.locations.list",
"marketplacesolutions.operations.get",
"marketplacesolutions.operations.list",
"marketplacesolutions.powerImages.get",
"marketplacesolutions.powerImages.list",
"marketplacesolutions.powerInstances.get",
"marketplacesolutions.powerInstances.list",
"marketplacesolutions.powerNetworks.get",
"marketplacesolutions.powerNetworks.list",
"marketplacesolutions.powerSshKeys.get",
"marketplacesolutions.powerSshKeys.list",
"marketplacesolutions.powerVolumes.get",
"marketplacesolutions.powerVolumes.list",
"memcache.instances.get",
"memcache.instances.list",
"memcache.locations.get",
Expand Down Expand Up @@ -3422,6 +3443,7 @@
"securitycenter.attackpaths.list",
"securitycenter.bigQueryExports.get",
"securitycenter.bigQueryExports.list",
"securitycenter.compliancesnapshots.list",
"securitycenter.containerthreatdetectionsettings.calculate",
"securitycenter.containerthreatdetectionsettings.get",
"securitycenter.effectivesecurityhealthanalyticscustommodules.get",
Expand Down
2 changes: 1 addition & 1 deletion roles/workflows.editor
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
{
"description": "Read and write access to workflows and related resources.",
"description": "Read and write access to workflows and related resources, including development and debugging of workflows.",
"etag": "AA==",
"includedPermissions": [
"resourcemanager.projects.get",
Expand Down

0 comments on commit 696b2f2

Please sign in to comment.