Policy: GCP > Project > Organization Policy > Disable Service Account Key Upload
Manage the GCP Organization Policy "Disable Service Account Key Upload" for the project.
This boolean constraint disables the feature that allows uploading public key to service account where this constraint is set to True.
By default, users can upload public key to service account based on their Cloud IAM roles and permissions.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
- GCP > Project > Organization Policy > Disable Service Account Key Upload
- GCP > Project > Organization Policy
Policy Specification
Schema Type |
|
---|---|
Default |
|
Valid Values [YAML] |
|
Examples [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/policy
- tmod:@turbot/gcp-orgpolicy#/policy/types/iamDisableServiceAccountKeyUpload
- turbot graphql policy-type --id "tmod:@turbot/gcp-orgpolicy#/policy/types/iamDisableServiceAccountKeyUpload"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/gcp-orgpolicy#/policy/types/iamDisableServiceAccountKeyUpload"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI