Mondoo Docs

Google Kubernetes Engine (GKE) cluster

gcp.project.gkeService.cluster MQL resource for querying Google Cloud infrastructure with cnquery and cnspec.

Google CloudPrivate Resource

Google Kubernetes Engine (GKE) cluster

Min version: latestDefaults: name description zone status currentMasterVersion

Relationships

Mini Map
Google Cloud
6 resources · 7 relationshipsClick to select, expand fields to see properties.

Fields (39)

FieldTypeDescription
addonsConfigrequired
gcp.project.gkeService.cluster.addonsConfigConfigurations for the various addons available to run in the cluster
autopilotEnabledrequired
intWhether Autopilot is enabled for the cluster
binaryAuthorizationrequired
dictBinary authorization configuration
clusterIpv4Cidrrequired
stringThe IP address range of the container pods in this cluster
confidentialNodesConfigrequired
dictConfiguration of Confidential Nodes
costManagementConfigrequired
dictConfiguration for the fine-grained cost management feature
createdrequired
timeCreation time
currentMasterVersionrequired
stringThe current software version of the master endpoint
databaseEncryptionrequired
dictEtcd encryption configuration
descriptionrequired
stringOptional description for the cluster
enableKubernetesAlpharequired
intWhether Kubernetes alpha features are enabled
endpointrequired
stringThe IP address of the cluster's master endpoint
expirationTimerequired
timeThe time the cluster will be automatically deleted in
idrequired
stringUnique identifier for the cluster
identityServiceConfigrequired
dictConfiguration for Identity Service component
initialClusterVersionrequired
stringThe initial Kubernetes version for this cluster
ipAllocationPolicyrequired
gcp.project.gkeService.cluster.ipAllocationPolicyConfiguration for cluster IP allocation
legacyAbacrequired
dictLegacy ABAC authorization configuration
locationrequired
stringName of the Google Compute Engine zone/region in which the cluster exists
locationsrequired
[]stringThe list of Google Compute Engine zones in which the cluster's nodes should be located
loggingServicerequired
stringThe logging service the cluster should use to write logs
masterAuthrequired
dictAuthentication information for accessing the master endpoint
masterAuthorizedNetworksConfigrequired
dictMaster authorized networks configuration
monitoringServicerequired
stringThe monitoring service the cluster should use to write metrics
namerequired
stringThe name of the cluster
networkrequired
stringThe name of the Google Compute Engine network to which the cluster is connected
networkConfigrequired
gcp.project.gkeService.cluster.networkConfigConfiguration for cluster networking
networkPolicyConfigrequired
dictConfiguration options for the NetworkPolicy feature
nodepoolprivate
gcp.project.gkeService.cluster.nodepoolGoogle Kubernetes Engine (GKE) cluster node pool
nodePoolsrequired
[]gcp.project.gkeService.cluster.nodepoolThe list of node pools for the cluster
privateClusterConfigrequired
dictPrivate cluster configuration
projectIdrequired
stringProject ID
releaseChannelrequired
stringThe release channel that the cluster is subscribed to
resourceLabelsrequired
map[string]stringThe resource labels for the cluster to use to annotate any related Google Compute Engine resources
shieldedNodesConfigrequired
dictConfiguration for Shielded Nodes feature
statusrequired
stringThe current status of this cluster
subnetworkrequired
stringThe name of the Google Compute Engine subnetwork to which the cluster is connected
workloadIdentityConfigrequired
dictConfiguration for the use of Kubernetes Service Accounts in GCP IAM policies
zonerequired
stringDeprecated; use location instead