Uploaded image for project: 'OpenShift Installer'
  1. OpenShift Installer
  2. CORS-2769

GCP: remove any unnecessary credentials

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • None
    • None
    • False
    • None
    • False

      User Story:

      I want the installer to create only the minimally needed identities to install and operate a cluster, so that our clusters adhere to the security principle of least privilege.

      Acceptance Criteria:

      Description of criteria:

      • Installer does not create any unnecessary identities.
      • Passing e2e-tests

      Out of Scope:

      • GCP Shared VPC installs allow users to pass existing service accounts to the control plane nodes. This card should not affect that functionality.

      Engineering Details:

      This requires/does not require a design proposal.
      This requires/does not require a feature gate.

            Unassigned Unassigned
            padillon Patrick Dillon
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: