Policy: GCP > CIS v4.0 > 1 - Identity and Access Management > 1.17 - Ensure Secrets are Not Stored in Cloud Functions Environment Variables by Using Secret Manager
Configures auditing against a CIS Benchmark item.
Level: 1
Google Cloud Functions allow you to host serverless code that is executed when an event is triggered, without the requiring the management a host operating system. These functions can also store env
Targets
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Related Policies
Controls
Setting this policy configures this control:
Policy Specification
Schema Type | |
|---|---|
Default | |
Valid Values [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/cis#/control/categories/v071602
- tmod:@turbot/gcp-cisv4-0#/policy/types/r0117
- turbot graphql policy-type --id "tmod:@turbot/gcp-cisv4-0#/policy/types/r0117"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/gcp-cisv4-0#/policy/types/r0117"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI