You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
ensure that all relevant security APIs are enabled
GKE autopilot cluster (+ bootstrapping?)
service account for cert manager (DNS solver)
service account and storage bucket for CloudnativePG backups
service account for SOPS
Infrastructure not currently found in the experimental project, but planned/anticipated for prod:
custom VPC with limited subnets
logging:
set appropriate retention window (default might be fine, but setting it explicitly will make it easier to document enforcement)
create sinks to copy audit level logs (GCP audit logs, logs about flux changes, new app images, app-level audit logs, etc) to a bucket with a longer retention window. May need to also send these logs to a DTB logging endpoint, TBD
TODO:
deploy/gcloud_init_setup.sh
The text was updated successfully, but these errors were encountered: