@@ -27,30 +27,32 @@ provider "kubernetes" {
27
27
}
28
28
29
29
module "gke" {
30
- source = " ../../modules/beta-public-cluster/"
31
- project_id = var. project_id
32
- name = " ${ local . cluster_type } -cluster${ var . cluster_name_suffix } "
33
- regional = var. regional
34
- region = var. region
35
- zones = var. zones
36
- network = var. network
37
- subnetwork = var. subnetwork
38
- ip_range_pods = var. ip_range_pods
39
- ip_range_services = var. ip_range_services
40
- create_service_account = var. compute_engine_service_account == " create"
41
- service_account = var. compute_engine_service_account
42
- istio = var. istio
43
- cloudrun = var. cloudrun
44
- dns_cache = var. dns_cache
45
- gce_pd_csi_driver = var. gce_pd_csi_driver
46
- sandbox_enabled = var. sandbox_enabled
47
- remove_default_node_pool = var. remove_default_node_pool
48
- node_pools = var. node_pools
49
- database_encryption = var. database_encryption
50
- enable_binary_authorization = var. enable_binary_authorization
51
- enable_pod_security_policy = var. enable_pod_security_policy
52
- enable_identity_service = true
53
- release_channel = " REGULAR"
30
+ source = " ../../modules/beta-public-cluster/"
31
+ project_id = var. project_id
32
+ name = " ${ local . cluster_type } -cluster${ var . cluster_name_suffix } "
33
+ regional = var. regional
34
+ region = var. region
35
+ zones = var. zones
36
+ network = var. network
37
+ subnetwork = var. subnetwork
38
+ ip_range_pods = var. ip_range_pods
39
+ ip_range_services = var. ip_range_services
40
+ create_service_account = var. compute_engine_service_account == " create"
41
+ service_account = var. compute_engine_service_account
42
+ istio = var. istio
43
+ cloudrun = var. cloudrun
44
+ dns_cache = var. dns_cache
45
+ gce_pd_csi_driver = var. gce_pd_csi_driver
46
+ sandbox_enabled = var. sandbox_enabled
47
+ remove_default_node_pool = var. remove_default_node_pool
48
+ node_pools = var. node_pools
49
+ database_encryption = var. database_encryption
50
+ enable_binary_authorization = var. enable_binary_authorization
51
+ enable_pod_security_policy = var. enable_pod_security_policy
52
+ enable_identity_service = true
53
+ release_channel = " REGULAR"
54
+ logging_enabled_components = [" SYSTEM_COMPONENTS" ]
55
+ monitoring_enabled_components = [" SYSTEM_COMPONENTS" , " WORKLOADS" ]
54
56
55
57
# Disable workload identity
56
58
identity_namespace = null
0 commit comments