Syntax

A google_iam_service_account is used to test a Google ServiceAccount resource

Examples

describe google_iam_service_account(project: 'chef-gcp-inspec', name: "display-name@project-id.iam.gserviceaccount.com") do
  it { should exist }
  its('display_name') { should cmp '' }
end

describe google_iam_service_account(project: 'chef-gcp-inspec', name: "nonexistent@project-id.iam.gserviceaccount.com") do
  it { should_not exist }
end

Properties

Properties that can be accessed from the google_iam_service_account resource:

  • name: The name of the service account.

  • project_id: Id of the project that owns the service account.

  • unique_id: Unique and stable id of the service account

  • email: Email address of the service account.

  • display_name: User specified description of service account.

  • oauth2_client_id: OAuth2 client id for the service account.

GCP Permissions

Ensure the Identity and Access Management (IAM) API is enabled for the current project.