GoogleCloudPlatform/policy-library
A library of constraint templates and sample constraints for Constraint Framework tools
TypeScriptApache-2.0
Issues
- 3
GCPGKEPrivateClusterConstraintV1 does not validate private endpoint + public nodes
#392 opened by jdyke - 0
Validation for VPC flow logs in a subnetwork does not consider exceptions listed in the documentation
#435 opened by daniel-cit - 0
Authoring Rego rules for constraint template
#431 opened by cova-fe - 3
google_compute_subnetwork enable_flow_logs deprecated in google terraform 3.0.0 and GCPNetworkEnableFlowLogsConstraintV1 broken
#414 opened by jsmilani - 2
- 1
- 0
Make superglobbing more clear or automatic
#416 opened by Jberlinsky - 0
Service Account Key Age policy has a bug
#413 opened by hussainak - 3
rego_parse_error: no match found error for gcp_compute_block_ssh_keys_v1 and gcp_compute_enable_oslogin_project_v1
#407 opened by xingao267 - 0
gcp_enforce_naming DOES NOT work when a random string added to resource name
#404 opened by zack-amirakulov - 1
KPT breaks to install the bundle ?
#403 opened by rajlearner17 - 4
Question: managing centralised constraint exclusion
#400 opened by jralmaraz - 0
- 3
The policy "storage bucket policy only" is using deprecated argument bucketPolicyOnly
#388 opened by daniel-cit - 1
- 2
Config validator is too verbose
#387 opened by vvdaal - 3
Samples seem wrong and documentation seems lacking on target combined with Forseti v2.25.2
#385 opened by vvdaal - 0
Rename "master" branch to "main" branch
#386 opened by MartinPetkov - 0
gcp-gke-dashboard-v1 is out of sync with current google_container_cluster resource
#383 opened by linde - 2
compute_allowed_networks not working as expected
#379 opened by mittalsharad - 5
- 4
How to add a new policy bundle
#376 opened by xingao267 - 5
Logic problem when trying to identify a violation
#373 opened by akamalov - 1
- 0
- 3
storage location policy: violations is not reported when exemptions list is not specified
#369 opened by xingao267 - 6
- 1
Change to more inclusive language
#362 opened by morgante - 0
Prevent unsynced policies
#359 opened by morgante - 4
- 0
- 11
- 0
- 0
Add kpt function Dockerfile
#327 opened by morgante - 0
Add kpt function to pull policy bundle
#335 opened by gkowalski-google - 0
Request to allow whitelist buckets for GCPStorageBucketWorldReadableConstraintV1
#329 opened by aimjwizards - 0
- 0
Add Firewall sample for Forseti bundle
#316 opened by gkowalski-google - 0
Restricted Firewall Template throws error for constraints using all ports
#323 opened by gkowalski-google - 2
- 0
- 4
Add KMS sample for Forseti bundle
#317 opened by gkowalski-google - 0
Add samples to check for BigQuery datasets exposed to gmail & googlegroups
#314 opened by gkowalski-google - 0
Add Forseti annotation to several samples
#312 opened by gkowalski-google - 0
Run rego tests with multiple versions of opa
#285 opened by briantkennedy - 3
Unable to set up GCP Constraint Framework client
#306 opened by hshin-g - 1
- 0
Update LB Forwarding Rules Whitelist Template for CAI field name updates
#292 opened by gkowalski-google - 0
- 2
[FORSETI] Service Account Key scanner functionality
#273 opened by hshin-g