Skip to content
This repository has been archived by the owner on Jul 26, 2022. It is now read-only.

GCP IAM Auth Organization Viewer #9

Open
JohnDzialo opened this issue Sep 18, 2018 · 1 comment
Open

GCP IAM Auth Organization Viewer #9

JohnDzialo opened this issue Sep 18, 2018 · 1 comment

Comments

@JohnDzialo
Copy link

Hi!

I was curious about the choice to only allow access through gcp iam auth with the organization viewer role.

In our organization this leads to some issues with out IT team. we don't necessarily want every user with nexus access to have access to view all of the projects in our organization.

Could this be linked to the project level instead? Is this in the works?

If not what is the reasoning behind choosing organization viewer as the permission to access nexus.

Thanks!

@pires
Copy link
Contributor

pires commented Sep 21, 2018

Hello @JohnDzialo.

This permission is, or better, was needed in order for the proxy to validate that your email is indeed part of the org. At the time (one year+ ago) we couldn't find another way to do it and it works fine for our IT.
Having said that, there's no ongoing work to change that. So, it would be great if you or someone could contribute with a solution. We'd be very happy to test and review!

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

2 participants