Skip to content

Commit

Permalink
fixed as per SCC
Browse files Browse the repository at this point in the history
  • Loading branch information
amansingh14 committed Mar 11, 2024
1 parent f3c01cc commit 18dbbdc
Show file tree
Hide file tree
Showing 4 changed files with 36 additions and 0 deletions.
11 changes: 11 additions & 0 deletions 4-projects/BU_NAME/development/example_peering_project.tf
Original file line number Diff line number Diff line change
Expand Up @@ -254,3 +254,14 @@ resource "google_compute_firewall" "allow_lb" {

target_tags = ["allow-lb"]
}

##enable dns policy on Peering vpc
resource "google_dns_policy" "default_policy" {
project = module.peering_project.project_id
name = "dp-peering-policy"
enable_inbound_forwarding = "true"
enable_logging = "true"
networks {
network_url = module.peering_network.network_self_link
}
}
11 changes: 11 additions & 0 deletions 4-projects/BU_NAME/production/example_peering_project.tf
Original file line number Diff line number Diff line change
Expand Up @@ -254,3 +254,14 @@ resource "google_compute_firewall" "allow_lb" {

target_tags = ["allow-lb"]
}

##enable dns policy on Peering vpc
resource "google_dns_policy" "default_policy" {
project = module.peering_project.project_id
name = "dp-peering-policy"
enable_inbound_forwarding = "true"
enable_logging = "true"
networks {
network_url = module.peering_network.network_self_link
}
}
11 changes: 11 additions & 0 deletions 4-projects/BU_NAME/staging/example_peering_project.tf
Original file line number Diff line number Diff line change
Expand Up @@ -254,3 +254,14 @@ resource "google_compute_firewall" "allow_lb" {

target_tags = ["allow-lb"]
}

##enable dns policy on Peering vpc
resource "google_dns_policy" "default_policy" {
project = module.peering_project.project_id
name = "dp-peering-policy"
enable_inbound_forwarding = "true"
enable_logging = "true"
networks {
network_url = module.peering_network.network_self_link
}
}
Original file line number Diff line number Diff line change
Expand Up @@ -145,6 +145,9 @@ module "mig_template" {
source_image_project = var.source_image_project
startup_script = local.startup_script
source_image = var.source_image
shielded_instance_config = {
enable_secure_boot = true
}
metadata = merge({
"secret-id" = google_secret_manager_secret_version.gh-secret-version.name
}, {
Expand Down

0 comments on commit 18dbbdc

Please sign in to comment.