Eventarc의 규제 지원

이 문서에서는 지원되는 제어 패키지의 제어와 일치하는 Eventarc의 기능, 구성, API에 대해 설명합니다. 이 문서에서는 Assured Workloads를 사용하는 것으로 가정합니다.

ITAR의 데이터 경계

지원되는 서비스

다음 표에는 ITAR의 데이터 경계 요구사항을 충족하는 Eventarc API 및 버전이 나와 있습니다.

서비스 버전 상태
eventarc.googleapis.com v1 지원됨

규정 준수 지원 리전

Eventarc는 다음 Google Cloud 리전에서 ITAR의 데이터 경계에 사용할 수 있습니다.

  • us-central1
  • us-central2
  • us-east1
  • us-east4
  • us-east5
  • us-south1
  • us-west1
  • us-west2
  • us-west3
  • us-west4

민감한 정보에 적합하지 않은 필드

다음 표에는 민감한 정보에 적합하지 않은 필드 카테고리 및 특정 필드의 예시 목록이 나와 있습니다. 규정 준수를 유지하려면 보호된 데이터를 이러한 필드에 배치하지 마세요. 전체 목록은 Google Cloud 담당자에게 문의하세요.

카테고리 필드
인증 및 승인
  • channel.cryptoKeyName
  • googleApiSource.cryptoKeyName
  • kafkaSource.authenticationConfig.saslAuth.usernameSecret
  • pipeline.destinations.authenticationConfig.oauthToken.scope
  • trigger.serviceAccount
페이지 나누기 및 필터링
  • filter
  • orderBy
  • pageToken
상위 리소스 사양
  • parent
리소스 구성 - 채널
  • channel.provider
  • channelConnection.activationToken
  • channelConnection.channel
리소스 구성 - 등록
  • enrollment.celMatch
  • enrollment.destination
  • enrollment.messageBus
리소스 구성 - 파이프라인
  • pipeline.destinations.topic
  • pipeline.destinations.workflow
  • pipeline.inputPayloadFormat.protobuf.schemaDefinition
리소스 구성 - 소스
  • googleApiSource.destination
  • kafkaSource.brokerUris
  • kafkaSource.topics
리소스 구성 - 트리거
  • trigger.destination.cloudRun.service
  • trigger.destination.gke.cluster
  • trigger.eventFilters.attribute
리소스 식별
  • channelId
  • enrollmentId
  • googleApiSourceId
  • kafkaSourceId
  • messageBusId
  • pipelineId
리소스 이름 지정
  • channel.name
  • enrollment.name
  • googleApiSource.name
  • kafkaSource.name
  • messageBus.name
  • name

다음 단계