Skip to content

Commit

Permalink
GCP IAM Updates Detected
Browse files Browse the repository at this point in the history
  • Loading branch information
jdyke committed May 13, 2024
1 parent 570b60a commit ffea8fa
Show file tree
Hide file tree
Showing 10 changed files with 54 additions and 0 deletions.
1 change: 1 addition & 0 deletions roles/backupdr.computeEngineOperator
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
"description": "Allows a Backup and DR service account to discover, back up, and restore Compute Engine VM instances.",
"etag": "AA==",
"includedPermissions": [
"backupdr.managementServers.createConnection",
"compute.addresses.list",
"compute.addresses.use",
"compute.diskTypes.get",
Expand Down
8 changes: 8 additions & 0 deletions roles/clouddeploy.admin
Original file line number Diff line number Diff line change
Expand Up @@ -19,10 +19,14 @@
"clouddeploy.customTargetTypes.setIamPolicy",
"clouddeploy.customTargetTypes.update",
"clouddeploy.deliveryPipelines.create",
"clouddeploy.deliveryPipelines.createTagBinding",
"clouddeploy.deliveryPipelines.delete",
"clouddeploy.deliveryPipelines.deleteTagBinding",
"clouddeploy.deliveryPipelines.get",
"clouddeploy.deliveryPipelines.getIamPolicy",
"clouddeploy.deliveryPipelines.list",
"clouddeploy.deliveryPipelines.listEffectiveTags",
"clouddeploy.deliveryPipelines.listTagBindings",
"clouddeploy.deliveryPipelines.setIamPolicy",
"clouddeploy.deliveryPipelines.update",
"clouddeploy.jobRuns.get",
Expand All @@ -49,10 +53,14 @@
"clouddeploy.rollouts.retryJob",
"clouddeploy.rollouts.rollback",
"clouddeploy.targets.create",
"clouddeploy.targets.createTagBinding",
"clouddeploy.targets.delete",
"clouddeploy.targets.deleteTagBinding",
"clouddeploy.targets.get",
"clouddeploy.targets.getIamPolicy",
"clouddeploy.targets.list",
"clouddeploy.targets.listEffectiveTags",
"clouddeploy.targets.listTagBindings",
"clouddeploy.targets.setIamPolicy",
"clouddeploy.targets.update",
"resourcemanager.projects.get",
Expand Down
4 changes: 4 additions & 0 deletions roles/clouddeploy.developer
Original file line number Diff line number Diff line change
Expand Up @@ -8,10 +8,14 @@
"clouddeploy.automations.list",
"clouddeploy.config.get",
"clouddeploy.deliveryPipelines.create",
"clouddeploy.deliveryPipelines.createTagBinding",
"clouddeploy.deliveryPipelines.delete",
"clouddeploy.deliveryPipelines.deleteTagBinding",
"clouddeploy.deliveryPipelines.get",
"clouddeploy.deliveryPipelines.getIamPolicy",
"clouddeploy.deliveryPipelines.list",
"clouddeploy.deliveryPipelines.listEffectiveTags",
"clouddeploy.deliveryPipelines.listTagBindings",
"clouddeploy.deliveryPipelines.update",
"clouddeploy.jobRuns.get",
"clouddeploy.jobRuns.list",
Expand Down
8 changes: 8 additions & 0 deletions roles/clouddeploy.operator
Original file line number Diff line number Diff line change
Expand Up @@ -15,10 +15,14 @@
"clouddeploy.customTargetTypes.getIamPolicy",
"clouddeploy.customTargetTypes.list",
"clouddeploy.deliveryPipelines.create",
"clouddeploy.deliveryPipelines.createTagBinding",
"clouddeploy.deliveryPipelines.delete",
"clouddeploy.deliveryPipelines.deleteTagBinding",
"clouddeploy.deliveryPipelines.get",
"clouddeploy.deliveryPipelines.getIamPolicy",
"clouddeploy.deliveryPipelines.list",
"clouddeploy.deliveryPipelines.listEffectiveTags",
"clouddeploy.deliveryPipelines.listTagBindings",
"clouddeploy.deliveryPipelines.update",
"clouddeploy.jobRuns.get",
"clouddeploy.jobRuns.list",
Expand All @@ -43,10 +47,14 @@
"clouddeploy.rollouts.retryJob",
"clouddeploy.rollouts.rollback",
"clouddeploy.targets.create",
"clouddeploy.targets.createTagBinding",
"clouddeploy.targets.delete",
"clouddeploy.targets.deleteTagBinding",
"clouddeploy.targets.get",
"clouddeploy.targets.getIamPolicy",
"clouddeploy.targets.list",
"clouddeploy.targets.listEffectiveTags",
"clouddeploy.targets.listTagBindings",
"clouddeploy.targets.update",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
Expand Down
4 changes: 4 additions & 0 deletions roles/clouddeploy.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -13,6 +13,8 @@
"clouddeploy.deliveryPipelines.get",
"clouddeploy.deliveryPipelines.getIamPolicy",
"clouddeploy.deliveryPipelines.list",
"clouddeploy.deliveryPipelines.listEffectiveTags",
"clouddeploy.deliveryPipelines.listTagBindings",
"clouddeploy.jobRuns.get",
"clouddeploy.jobRuns.list",
"clouddeploy.locations.get",
Expand All @@ -26,6 +28,8 @@
"clouddeploy.targets.get",
"clouddeploy.targets.getIamPolicy",
"clouddeploy.targets.list",
"clouddeploy.targets.listEffectiveTags",
"clouddeploy.targets.listTagBindings",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
],
Expand Down
9 changes: 9 additions & 0 deletions roles/editor
Original file line number Diff line number Diff line change
Expand Up @@ -1075,6 +1075,7 @@
"backupdr.managementServers.assignBackupPlans",
"backupdr.managementServers.backupAccess",
"backupdr.managementServers.create",
"backupdr.managementServers.createConnection",
"backupdr.managementServers.createDynamicProtection",
"backupdr.managementServers.delete",
"backupdr.managementServers.deleteDynamicProtection",
Expand Down Expand Up @@ -1897,6 +1898,8 @@
"clouddeploy.deliveryPipelines.get",
"clouddeploy.deliveryPipelines.getIamPolicy",
"clouddeploy.deliveryPipelines.list",
"clouddeploy.deliveryPipelines.listEffectiveTags",
"clouddeploy.deliveryPipelines.listTagBindings",
"clouddeploy.deliveryPipelines.update",
"clouddeploy.jobRuns.get",
"clouddeploy.jobRuns.list",
Expand Down Expand Up @@ -1926,6 +1929,8 @@
"clouddeploy.targets.get",
"clouddeploy.targets.getIamPolicy",
"clouddeploy.targets.list",
"clouddeploy.targets.listEffectiveTags",
"clouddeploy.targets.listTagBindings",
"clouddeploy.targets.update",
"cloudfunctions.functions.call",
"cloudfunctions.functions.create",
Expand Down Expand Up @@ -7972,6 +7977,10 @@
"videostitcher.liveConfigs.list",
"videostitcher.liveSessions.create",
"videostitcher.liveSessions.get",
"videostitcher.operations.cancel",
"videostitcher.operations.delete",
"videostitcher.operations.get",
"videostitcher.operations.list",
"videostitcher.slates.create",
"videostitcher.slates.delete",
"videostitcher.slates.get",
Expand Down
1 change: 1 addition & 0 deletions roles/iam.securityReviewer
Original file line number Diff line number Diff line change
Expand Up @@ -1775,6 +1775,7 @@
"videostitcher.cdnKeys.list",
"videostitcher.liveAdTagDetails.list",
"videostitcher.liveConfigs.list",
"videostitcher.operations.list",
"videostitcher.slates.list",
"videostitcher.vodAdTagDetails.list",
"videostitcher.vodConfigs.list",
Expand Down
13 changes: 13 additions & 0 deletions roles/owner
Original file line number Diff line number Diff line change
Expand Up @@ -1123,6 +1123,7 @@
"backupdr.managementServers.assignBackupPlans",
"backupdr.managementServers.backupAccess",
"backupdr.managementServers.create",
"backupdr.managementServers.createConnection",
"backupdr.managementServers.createDynamicProtection",
"backupdr.managementServers.delete",
"backupdr.managementServers.deleteDynamicProtection",
Expand Down Expand Up @@ -2519,10 +2520,14 @@
"clouddeploy.customTargetTypes.setIamPolicy",
"clouddeploy.customTargetTypes.update",
"clouddeploy.deliveryPipelines.create",
"clouddeploy.deliveryPipelines.createTagBinding",
"clouddeploy.deliveryPipelines.delete",
"clouddeploy.deliveryPipelines.deleteTagBinding",
"clouddeploy.deliveryPipelines.get",
"clouddeploy.deliveryPipelines.getIamPolicy",
"clouddeploy.deliveryPipelines.list",
"clouddeploy.deliveryPipelines.listEffectiveTags",
"clouddeploy.deliveryPipelines.listTagBindings",
"clouddeploy.deliveryPipelines.setIamPolicy",
"clouddeploy.deliveryPipelines.update",
"clouddeploy.jobRuns.get",
Expand All @@ -2549,10 +2554,14 @@
"clouddeploy.rollouts.retryJob",
"clouddeploy.rollouts.rollback",
"clouddeploy.targets.create",
"clouddeploy.targets.createTagBinding",
"clouddeploy.targets.delete",
"clouddeploy.targets.deleteTagBinding",
"clouddeploy.targets.get",
"clouddeploy.targets.getIamPolicy",
"clouddeploy.targets.list",
"clouddeploy.targets.listEffectiveTags",
"clouddeploy.targets.listTagBindings",
"clouddeploy.targets.setIamPolicy",
"clouddeploy.targets.update",
"cloudfunctions.functions.call",
Expand Down Expand Up @@ -9130,6 +9139,10 @@
"videostitcher.liveConfigs.list",
"videostitcher.liveSessions.create",
"videostitcher.liveSessions.get",
"videostitcher.operations.cancel",
"videostitcher.operations.delete",
"videostitcher.operations.get",
"videostitcher.operations.list",
"videostitcher.slates.create",
"videostitcher.slates.delete",
"videostitcher.slates.get",
Expand Down
4 changes: 4 additions & 0 deletions roles/videostitcher.admin
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,10 @@
"videostitcher.liveConfigs.list",
"videostitcher.liveSessions.create",
"videostitcher.liveSessions.get",
"videostitcher.operations.cancel",
"videostitcher.operations.delete",
"videostitcher.operations.get",
"videostitcher.operations.list",
"videostitcher.slates.create",
"videostitcher.slates.delete",
"videostitcher.slates.get",
Expand Down
2 changes: 2 additions & 0 deletions roles/videostitcher.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,8 @@
"videostitcher.liveConfigs.get",
"videostitcher.liveConfigs.list",
"videostitcher.liveSessions.get",
"videostitcher.operations.get",
"videostitcher.operations.list",
"videostitcher.slates.get",
"videostitcher.slates.list",
"videostitcher.vodAdTagDetails.get",
Expand Down

0 comments on commit ffea8fa

Please sign in to comment.