GoogleCloudPlatform / GoogleCloudPlatform/cloud-trace-data-source-plugin

Authentication with default GCE Service account - trace in different project where Grafana deploted

Ouverte
#16 0 commentaires 0 réactions 0 personnes assignées Voir sur GitHub
Langage dominant
Go
Étoiles
16
Forks
6
Métriques de merge des PR
Aucune PR mergée en 30 j

Description

Hello,

We are using Google GMP (Google Cloud Managed Service for Prometheus) with several clusters , each one on different project.
Our infra resources like Prometheus UI & Grafana are deployed in one cluster but our trace sent to a different project (central) from all our gke projects (scoped project for several monitored projects)

Issue is when trying to authenticate Google trace plugin with default GCE Service account (after giving the SA the needed permissions) it fail.
So I also generate json file in the SA and used Google GWT file authentication and it worked. Than I switch back to default GCE Service account hit save&test and it worked (also deleted the generated json from the SA)

Seems when trying to authenticate with default GCE Service account it doesnt know where is the scope project.

Please advise
Thank you
Daniel

Guide de contribution

Ouvrir le guide de contribution

Piste de recherche

Reproduisez le flux d’authentification du Google Cloud trace plugin à l’aide du compte de service GCE par défaut dans les projets surveillé et central, puis comparez-le à la configuration d’authentification fonctionnelle avec un fichier JSON. Vérifiez comment le projet de portée est sélectionné et confirmez que Save & test réussit sans le fichier JSON généré.

Rédigé par le modèle d'indexation à partir du texte de l'issue.

Évaluation

Stack technique
go, google-cloud
Domaine
authentication, cloud
Type d'issue
Bug
Difficulté
4/5
Temps estimé
3-5 jours
Activité
À l'abandon
Clarté
À clarifier
Accessibilité débutants
25/100

Recevez les nouvelles issues par e-mail

Un résumé court des issues GitHub adaptées aux débutants.