Skip to content
This repository has been archived by the owner on Jan 4, 2023. It is now read-only.

Commit

Permalink
Bugfix/policyadminrole (#110)
Browse files Browse the repository at this point in the history
* fix variable name

* Added missing role for VPCSC setup (accesscontextmanager.policyAdmin)
  • Loading branch information
KonradSchieban authored Apr 27, 2020
1 parent 8e53a83 commit 53a01a5
Showing 1 changed file with 6 additions and 1 deletion.
7 changes: 6 additions & 1 deletion _helpers/setup_service_account.sh
Original file line number Diff line number Diff line change
Expand Up @@ -56,7 +56,12 @@ gcloud projects add-iam-policy-binding "${TF_ADMIN_PROJECT}" \
--member "serviceAccount:terraform@${TF_ADMIN_PROJECT}.iam.gserviceaccount.com" \
--role roles/storage.admin

# resourcemanager.organizationAdmin
# Add accesscontextmanager.policyAdmin
gcloud organizations add-iam-policy-binding "${TF_VAR_org_id}" \
--member "serviceAccount:terraform@${TF_ADMIN_PROJECT}.iam.gserviceaccount.com" \
--role="roles/accesscontextmanager.policyAdmin"

# Add resourcemanager.organizationAdmin
gcloud organizations add-iam-policy-binding "${TF_VAR_org_id}" \
--member "serviceAccount:terraform@${TF_ADMIN_PROJECT}.iam.gserviceaccount.com" \
--role="roles/resourcemanager.organizationAdmin"
Expand Down

0 comments on commit 53a01a5

Please sign in to comment.