Terraform Scripts
Overview
Choose the deployment model that best fits your organization's needs:
Option 1: Centralized Service Accounts
Best for: Organizations that prefer centralized identity management
Architecture
All service accounts are created in a single centralized project
Each service account is granted permissions in its corresponding project
One Workload identity pool shared across all projects
Benefits
Centralized management and auditing
Easier to track and manage all Teleskope service accounts
Option 2: Per-Project Service Accounts
Best for: Organizations that prefer project-level isolation and want service accounts to reside in the same project where they're used
Architecture
Service Accounts are created in each project
Workload Identity pools are created per project
Each project has its own isolated identity configuration
Benefits
Complete project-level isolation
Service accounts live alongside the resources they access
Last updated
Was this helpful?
