0
0

Delete article

Deleted articles cannot be recovered.

Draft of this article would be also deleted.

Are you sure you want to delete this article?

More than 3 years have passed since last update.

Beyondcorp Enterprise の Google Cloud Console and the Google Cloud APIs でService accountのアクセスが制御できるか?A. 現状はできない

Last updated at Posted at 2021-07-06

#はじめに
Beyondcorp Enterprise の Google Cloud Console and the Google Cloud APIs (Context aware access for Google Cloud Console and the Google Cloud APIs) で Service account が制御できるかについて記載されたドキュメントがなかったので確認してみました。

結論としては、現状(2021/7/6)ではサポートされていません。

#やってみた結果
image.png

#その他の考慮点
Service accountの鍵が流出した場合の対策として、Beyondcorp Enterprise の Google Cloud Console and the Google Cloud APIs でIP制限を実施することはできないので、VPC Service Contol で制御することを検討したほうがよい。

0
0
0

Register as a new user and use Qiita more conveniently

  1. You get articles that match your needs
  2. You can efficiently read back useful information
  3. You can use dark theme
What you can do with signing up
0
0

Delete article

Deleted articles cannot be recovered.

Draft of this article would be also deleted.

Are you sure you want to delete this article?