ASSET COVERAGE
Org Policy and Access Policy (VPC-SCs Policy) Support
Cloud Asset Inventory now supports GCP Org Policy and Access Policy. The Organization Policy allows you to set up rules to control your cloud resources programmatically. Access policy allows admins to define fine grained attribute based access control for projects and resources in GCP, which is used by services like VPC Service Controls. With the new policy types available through Cloud Asset Inventory, you have one centralized managed inventory service to view and assess more of your resources and policies.
Service Account Keys Support
Cloud Asset Inventory now supports IAM Service Account Keys. This enables easier tracking service account keys issued across your org, with change history as well, which is critical for monitoring and reviewing service account access.
ASSET SERVICES
Change to certain resource field names is fully rolled out
Cloud Asset Inventory now fully rolled out the change to certain resource field names in order to maintain consistency between Cloud Asset Inventory response field names and other public Google Cloud Platform APIs response field names.
To keep the Cloud Asset API temporarily backwards compatible, Cloud Asset Inventory exports both types of field names. While the deprecated Cloud Asset Inventory field names are backwards compatible during the transition time period, review the list of updated asset field names below. If you have any data processes depending on the soon-to-be deprecated field names, avoid possible service disruptions by updating them to use the new field names.
For any questions, please email gcp-asset-inventory...@googlegroups.com , thank you so much!
Cloud Asset Inventory team