Policy: GCP > Project > Organization Policy > Domain restricted sharing
Manage the GCP Organization Policy "Domain restricted sharing" for the project.
This list constraint defines the set of members that can be added to Cloud IAM policies. By default, all user identities are allowed to be added to Cloud IAM policies. The allowed/denied list must specify one or more Cloud Identity or G Suite customer IDs. If this constraint is active, only identities in the allowed list will be eligible to be added to Cloud IAM policies.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Related Policies
Controls
Policy Specification
Schema Type |
|
---|---|
Default |
|
Valid Values [YAML] |
|
Examples [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/policy
- tmod:@turbot/gcp-orgpolicy#/policy/types/iamAllowedPolicyMemberDomains
- turbot graphql policy-type --id "tmod:@turbot/gcp-orgpolicy#/policy/types/iamAllowedPolicyMemberDomains"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/gcp-orgpolicy#/policy/types/iamAllowedPolicyMemberDomains"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI