Merge: bootstrap monitoring role fix

This commit is contained in:
ZdenekSrotyr 2026-04-21 20:32:59 +02:00
commit 717f40c218

View file

@ -26,6 +26,7 @@ gcloud services enable \
secretmanager.googleapis.com \ secretmanager.googleapis.com \
cloudresourcemanager.googleapis.com \ cloudresourcemanager.googleapis.com \
storage.googleapis.com \ storage.googleapis.com \
monitoring.googleapis.com \
--project="${PROJECT_ID}" --project="${PROJECT_ID}"
echo "=== Create deploy service account (if not exists) ===" echo "=== Create deploy service account (if not exists) ==="
@ -46,7 +47,8 @@ for role in \
iam.serviceAccountAdmin \ iam.serviceAccountAdmin \
secretmanager.admin \ secretmanager.admin \
storage.admin \ storage.admin \
resourcemanager.projectIamAdmin; do resourcemanager.projectIamAdmin \
monitoring.editor; do
gcloud projects add-iam-policy-binding "${PROJECT_ID}" \ gcloud projects add-iam-policy-binding "${PROJECT_ID}" \
--member="serviceAccount:${SA_EMAIL}" \ --member="serviceAccount:${SA_EMAIL}" \
--role="roles/${role}" \ --role="roles/${role}" \