GoogleCloudPlatform / GoogleCloudPlatform/cloud-trace-data-source-plugin

Authentication with default GCE Service account - trace in different project where Grafana deploted

Abierto
#16 0 comentarios 0 reacciones 0 asignados Ver en GitHub
Lenguaje dominante
Go
Estrellas
16
Forks
6
Métricas de merge de PR
Sin PR fusionados en 30 d

Descripción

Hello,

We are using Google GMP (Google Cloud Managed Service for Prometheus) with several clusters , each one on different project.
Our infra resources like Prometheus UI & Grafana are deployed in one cluster but our trace sent to a different project (central) from all our gke projects (scoped project for several monitored projects)

Issue is when trying to authenticate Google trace plugin with default GCE Service account (after giving the SA the needed permissions) it fail.
So I also generate json file in the SA and used Google GWT file authentication and it worked. Than I switch back to default GCE Service account hit save&test and it worked (also deleted the generated json from the SA)

Seems when trying to authenticate with default GCE Service account it doesnt know where is the scope project.

Please advise
Thank you
Daniel

Guía de contribución

Abrir la guía de contribución

Línea de trabajo

Reproduce el flujo de autenticación del plugin de trazas de Google Cloud usando la cuenta de servicio GCE predeterminada en los proyectos supervisado y central, y compáralo con la configuración de autenticación mediante archivo JSON que funciona. Comprueba cómo se selecciona el proyecto de ámbito y confirma que Save & test se completa correctamente sin el archivo JSON generado.

Escrito por el modelo de indexación a partir del texto del issue.

Evaluación

Stack tecnológico
go, google-cloud
Área
authentication, cloud
Tipo de issue
Error
Dificultad
4/5
Tiempo estimado
3-5 días
Estado de actividad
Estancado
Claridad
Necesita aclaración
Aptitud para principiantes
25/100

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.