Add GCP > CIS v1.3 > 2.15 Ensure 'Access Approval' is 'Enabled' #75
Labels
enhancement
New feature or request
help wanted
We are asking the community to submit a PR to resolve this issue
Is your feature request related to a problem? Please describe.
Add GCP > CIS v1.3 > 2.15 Ensure 'Access Approval' is 'Enabled'
Description:
GCP Access Approval enables you to require your organizations' explicit approval whenever Google support try to access your projects. You can then select users within your organization who can approve these requests through giving them a security role in IAM. All access requests display which Google Employee requested them in an email or Pub/Sub message that you can choose to Approve. This adds an additional control and logging of who in your organization approved/denied these requests.
Audit:
From Console:
Determine if Access Transparency is Enabled as it is a Dependency
Determine if Access Approval is Enabled:
From CLI:
Determine if Access Approval is Enabled
gcloud access-approval settings get
The text was updated successfully, but these errors were encountered: