Mods

Policy: GCP > CIS v4.0 > 1 - Identity and Access Management > 1.17 - Ensure Secrets are Not Stored in Cloud Functions Environment Variables by Using Secret Manager

Configures auditing against a CIS Benchmark item.

Level: 1

Google Cloud Functions allow you to host serverless code that is executed when an event is triggered, without the requiring the management a host operating system. These functions can also store env

Targets

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Per GCP > CIS v4.0 > 1 - Identity and Access Management
Valid Values [YAML]
  • Per GCP > CIS v4.0 > 1 - Identity and Access Management
    
  • Skip
    
  • Check: Benchmark using attestation
    

Category

In Your Workspace

Developers