diff --git a/main.tf b/main.tf index 176231b..4fe35d5 100644 --- a/main.tf +++ b/main.tf @@ -95,6 +95,12 @@ resource "google_billing_account_iam_member" "billing_account_iam_binding" { member = "serviceAccount:${module.project.service_account_email}" } +resource "google_service_account_iam_member" "service_account_iam_binding" { + service_account_id = module.project.service_account_name + role = "roles/iam.serviceAccountViewer" + member = "serviceAccount:${module.project.service_account_email}" +} + resource "google_service_account_iam_member" "workload_identity_iam_binding" { service_account_id = module.project.service_account_name role = "roles/iam.workloadIdentityUser"