Skip to content

Commit

Permalink
Merge pull request #2446 from k8s-infra-ci-robot/autoaudit-prow
Browse files Browse the repository at this point in the history
audit: update as of 2021-08-03
  • Loading branch information
k8s-ci-robot authored Aug 3, 2021
2 parents b0271d2 + 0bbfbdf commit 5e32983
Show file tree
Hide file tree
Showing 12 changed files with 89 additions and 9 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -14,5 +14,9 @@
{
"role": "READER",
"specialGroup": "projectReaders"
},
{
"role": "READER",
"userByEmail": "[email protected]"
}
]
6 changes: 6 additions & 0 deletions audit/projects/k8s-infra-prow-build-trusted/iam.json
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,12 @@
],
"role": "organizations/758905017065/roles/iam.serviceAccountLister"
},
{
"members": [
"serviceAccount:[email protected]"
],
"role": "roles/bigquery.user"
},
{
"members": [
"serviceAccount:[email protected]"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -14,9 +14,7 @@
"enabled": true,
"securityGroup": "[email protected]"
},
"autoscaling": {
"autoscalingProfile": "BALANCED"
},
"autoscaling": {},
"binaryAuthorization": {},
"clusterIpv4Cidr": "10.4.0.0/14",
"createTime": "2020-04-30T23:44:46+00:00",
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,7 @@
[
"projects/k8s-infra-prow-build-trusted/logs/OSConfigAgent",
"projects/k8s-infra-prow-build-trusted/logs/cloudaudit.googleapis.com%2Factivity",
"projects/k8s-infra-prow-build-trusted/logs/cloudaudit.googleapis.com%2Fdata_access",
"projects/k8s-infra-prow-build-trusted/logs/cloudaudit.googleapis.com%2Fsystem_event",
"projects/k8s-infra-prow-build-trusted/logs/clouderrorreporting.googleapis.com%2Finsights",
"projects/k8s-infra-prow-build-trusted/logs/compute.googleapis.com%2Fshielded_vm_integrity",
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -225,7 +225,7 @@
"upgradeSettings": {
"maxSurge": 1
},
"version": "1.19.9-gke.1900"
"version": "1.20.8-gke.900"
}
],
"releaseChannel": {
Expand Down
Original file line number Diff line number Diff line change
@@ -1,5 +1,6 @@
[
"projects/k8s-infra-prow-build/logs/GCEGuestAgent",
"projects/k8s-infra-prow-build/logs/OSConfigAgent",
"projects/k8s-infra-prow-build/logs/cloudaudit.googleapis.com%2Factivity",
"projects/k8s-infra-prow-build/logs/cloudaudit.googleapis.com%2Fdata_access",
"projects/k8s-infra-prow-build/logs/cloudaudit.googleapis.com%2Fsystem_event",
Expand Down
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
{"rule": [{"action": {"type": "Delete"}, "condition": {"age": 90}}]}
Original file line number Diff line number Diff line change
Expand Up @@ -6,13 +6,13 @@ gs://k8s-infra-scalability-tests-logs/ :
Logging configuration: None
Website configuration: None
CORS configuration: None
Lifecycle configuration: None
Lifecycle configuration: Present
Requester Pays enabled: None
Labels: None
Default KMS key: None
Time created: Thu, 17 Jun 2021 20:05:52 GMT
Time updated: Thu, 17 Jun 2021 20:05:53 GMT
Metageneration: 2
Time updated: Tue, 03 Aug 2021 18:54:17 GMT
Metageneration: 3
Bucket Policy Only enabled: True
ACL: []
Default ACL: []
41 changes: 41 additions & 0 deletions audit/projects/kubernetes-public/buckets/k8s-metrics/iam.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,41 @@
{
"bindings": [
{
"members": [
"group:[email protected]",
"group:[email protected]",
"projectEditor:kubernetes-public",
"projectOwner:kubernetes-public"
],
"role": "roles/storage.legacyBucketOwner"
},
{
"members": [
"projectViewer:kubernetes-public"
],
"role": "roles/storage.legacyBucketReader"
},
{
"members": [
"serviceAccount:[email protected]",
"serviceAccount:[email protected]"
],
"role": "roles/storage.legacyBucketWriter"
},
{
"members": [
"group:[email protected]",
"group:[email protected]",
"serviceAccount:[email protected]",
"serviceAccount:[email protected]"
],
"role": "roles/storage.objectAdmin"
},
{
"members": [
"allUsers"
],
"role": "roles/storage.objectViewer"
}
]
}
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
{"rule": [{"action": {"type": "Delete"}, "condition": {"age": 365}}]}
18 changes: 18 additions & 0 deletions audit/projects/kubernetes-public/buckets/k8s-metrics/metadata.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,18 @@
gs://k8s-metrics/ :
Storage class: STANDARD
Location type: multi-region
Location constraint: US
Versioning enabled: None
Logging configuration: None
Website configuration: None
CORS configuration: None
Lifecycle configuration: Present
Requester Pays enabled: None
Labels: None
Default KMS key: None
Time created: Tue, 03 Aug 2021 17:30:17 GMT
Time updated: Tue, 03 Aug 2021 17:31:03 GMT
Metageneration: 12
Bucket Policy Only enabled: True
ACL: []
Default ACL: []
Original file line number Diff line number Diff line change
@@ -1,11 +1,20 @@
[
{
"createTime": "2021-08-03T15:53:57.204242Z",
"etag": "\"15c8a9b18a2d12\"",
"name": "projects/127754664067/secrets/k8s-infra-ci-robot-github-token/versions/2",
"replicationStatus": {
"automatic": {}
},
"state": "ENABLED"
},
{
"createTime": "2021-06-15T21:10:17.454396Z",
"etag": "\"15c4d466a06f3c\"",
"etag": "\"15c8a9b398bcc0\"",
"name": "projects/127754664067/secrets/k8s-infra-ci-robot-github-token/versions/1",
"replicationStatus": {
"automatic": {}
},
"state": "ENABLED"
"state": "DISABLED"
}
]

0 comments on commit 5e32983

Please sign in to comment.