Security perimeter for IAM management on Google Cloud
9.3K
This image is deployed as part of the installation process of the IAM management GCP integration in the P0 console or P0 Terraform module.
Create a dedicated GCP project that will contain the P0 installation, e.g. p0-install. In this project create a Cloud Run service that runs this docker image. Configure a user-managed service account named p0-security-perimeter-sa as the service identity of the Cloud Run service. P0 modifies GCP IAM policies by invoking this Cloud Run service, which ensures that P0 cannot modify its own permissions.
Content type
Image
Digest
sha256:bbd179aee…
Size
150.8 MB
Last updated
2 days ago
docker pull p0security/p0-security-perimeter-gcloud