Skip to content

Commit ad676ad

Browse files
committed
Adds service directory viewer
1 parent 6de19aa commit ad676ad

File tree

1 file changed

+8
-0
lines changed

1 file changed

+8
-0
lines changed

1-bootstrap/iam.tf

+8
Original file line numberDiff line numberDiff line change
@@ -139,6 +139,14 @@ resource "google_project_iam_member" "project_iam_member" {
139139
project = local.worker_pool_project
140140
}
141141

142+
resource "google_project_iam_member" "service_directory_viewer" {
143+
for_each = tomap({ for i, obj in local.expanded_environment_with_service_accounts : i => obj if obj.multitenant_pipeline == "applicationfactory" })
144+
145+
role = "roles/servicedirectory.viewer"
146+
member = "serviceAccount:${each.value.email}"
147+
project = local.worker_pool_project
148+
}
149+
142150
resource "google_project_iam_member" "secret_iam_member" {
143151
for_each = tomap({ for i, obj in local.expanded_environment_with_service_accounts : i => obj if obj.multitenant_pipeline == "applicationfactory" })
144152

0 commit comments

Comments
 (0)