Skip to content

Permissions gcp secret manager

Frederic Loudet requested to merge permissions-gcp-secret-manager into master

What does this MR do and why?

This MR updates the documentation for IAM permissions related to GCP secret manager. The documentation suggests to grant the GitLab project access to the entire GCP project within IAM (therefore all secrets in it) and optionally fine tune this access to specific secrets using IAM conditions. A more secure approach is to give permissions/grant access directly at the secret level and not at the project level.

MR acceptance checklist

Please evaluate this MR against the MR acceptance checklist. It helps you analyze changes to reduce risks in quality, performance, reliability, security, and maintainability.

Edited by Frederic Loudet

Merge request reports