gcp-firewall-rule-labels
Hierarchical firewall rule targets disclose project, network, and service-account identifiers.
Where it sits
| location | compute.firewallPolicies.getRule.{targetResources[],targetServiceAccounts[]} |
| location kind | config_field |
| data kinds | pii sensitive_data |
| emits edge | ContainsSecret |
| service | VPC Firewall (gcp:firewall) |
Collection recipe
| access mode | read_api |
| operation | compute.firewallPolicies.getRule |
| response path | {targetResources[],targetServiceAccounts[]} |
| encoding | list |
| params | {"firewallPolicy": "\u003cpolicy-id\u003e", "priority": "\u003cpriority\u003e"} |
Required permissions
compute.firewallPolicies.get
References