Class BinaryAuthorizationPolicyDefaultAdmissionRule.Builder

    • Constructor Detail

      • Builder

        public Builder()
    • Method Detail

      • enforcementMode

        @Stability(Stable)
        public BinaryAuthorizationPolicyDefaultAdmissionRule.Builder enforcementMode​(String enforcementMode)
        Parameters:
        enforcementMode - The action when a pod creation is denied by the admission rule. Possible values: ["ENFORCED_BLOCK_AND_AUDIT_LOG", "DRYRUN_AUDIT_LOG_ONLY"]. This parameter is required. Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/google/5.43.1/docs/resources/binary_authorization_policy#enforcement_mode BinaryAuthorizationPolicy#enforcement_mode}
        Returns:
        this
      • requireAttestationsBy

        @Stability(Stable)
        public BinaryAuthorizationPolicyDefaultAdmissionRule.Builder requireAttestationsBy​(List<String> requireAttestationsBy)
        Parameters:
        requireAttestationsBy - The resource names of the attestors that must attest to a container image. If the attestor is in a different project from the policy, it should be specified in the format 'projects/* /attestors/*'. Each attestor must exist before a policy can reference it. To add an attestor to a policy the principal issuing the policy change request must be able to read the attestor resource. Note: this field must be non-empty when the evaluation_mode field specifies REQUIRE_ATTESTATION, otherwise it must be empty. Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/google/5.43.1/docs/resources/binary_authorization_policy#require_attestations_by BinaryAuthorizationPolicy#require_attestations_by} Note: The above comment contained a comment block ending sequence (* followed by /). We have introduced a space between to prevent syntax errors. Please ignore the space.
        Returns:
        this