[Feature Request]Customize Org Policy Enforcement Based on Regime Setting
Maintainers usually reply within 2 days
Nobody has claimed this yet.
Assessment
- Difficulty
- 5/5
- Estimated time
- Over a week
- Newbie friendliness
- 35/100
- Issue type
- Feature
- Clarity
- Needs clarification
- Activity status
- Active
- Tech stack
- gcp
- Domain
- cloud, infrastructure
Research direction
Start with fast/stages-aw/0-bootstrap/data/org-policies/compute_policy.yaml, especially line 84, and inspect the other files in that directory. Trace how the Regime setting is represented and how these static policies are applied; the issue does not name an entry point, tests, or a defined completion condition, so the desired conditional behavior needs clarification before implementation.
Written by the indexing model from the issue text.
Description
Feature Description and Use Case
Currently Stellar Engine has no option to customize org policy enforcement based on Regime setting. Org policies are static and stored under fast/stages-aw/0-bootstrap/data/org-policies/
This has led to issues where org policies will be enforced on regime entries that don't even support the api, for example, at IL5 oslogin.googleapis.com is not currently enabled, yet we still have an org policy set that mandates oslogin enforcement.
- Dominant language
- HCL
- Stars
- 51
- Forks
- 21
- Avg merge
- 1d 17h
- Merged PRs (30d)
- 29
Getting set up
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from google/stellar-engine
-
documentation Level of Effort - High Priority - Medium
Difficulty 1/5 1-3 hours Newbie friendliness 88/100
google/stellar-engine#232 ·
Maintainers usually reply within 2 days
-
Bug Gemini - Government Level of Effort - Low Priority - Low
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
google/stellar-engine#135 ·
Maintainers usually reply within 2 days
-
[Feature Request] gem4gov: implement BigQuery import in the standalone datastore import commandOpenEnhancement Gemini - Government Level of Effort - Medium Priority - Medium
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
google/stellar-engine#122 ·
Maintainers usually reply within 2 days
-
documentation Level of Effort - Medium Priority - Medium
Difficulty 2/5 Half a day Newbie friendliness 72/100
google/stellar-engine#117 · 1 comment ·
Maintainers usually reply within 2 days
-
[Feature Request] No research blueprint family — the README names universities as a target audience, every blueprint is FedRAMP High, FedRAMP Moderate or IL5Possibly taken @Calvin-Cheng1 claimed this 21 days ago. Openenhancement
google/stellar-engine#239 · 2 comments · 1 assignee ·
Maintainers usually reply within 2 days
All issues in google/stellar-engine
Similar issues
-
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
jenkinsci/ec2-plugin#2041 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 72/100
buildkite/elastic-ci-stack-for-aws#1905 ·
Maintainers usually reply within 1 day
-
Difficulty 2/5 1-3 hours Newbie friendliness 74/100
spiffe/helm-charts-hardened#976 ·
Maintainers usually reply within 1 day
-
[Bug]: object delete is reported as failed on S3-compatible stores that answer DeleteObject with HTTP 200Possibly taken A pull request linked to this issue is open or already merged. Openkind/bug
Difficulty 2/5 1-3 hours Newbie friendliness 72/100
Maintainers usually reply within 1 day
-
Difficulty 2/5 1-3 hours Newbie friendliness 90/100
cloudposse/atmos#3284 ·
Maintainers usually reply within 1 day