Google 会使用 AI 技术将内容翻译成您偏好的语言。AI 翻译可能包含错误。
Cloud Build 中的监管支持
使用集合让一切井井有条
根据您的偏好保存内容并对其进行分类。
本文档介绍了 Cloud Build 中与受支持的控制措施套餐的控制措施相符的功能、配置和 API。本文档假定您使用的是 Assured Workloads。
|
ITAR 的数据边界
支持的服务
下表列出了符合 ITAR 数据边界要求的 Cloud Build API 和版本。
| 服务 |
版本 |
状态 |
| cloudbuild.googleapis.com |
v1 |
支持
|
| cloudbuild.googleapis.com |
v2 |
支持
|
支持合规性功能的区域
Cloud Build 可在以下 Google Cloud 区域用于 ITAR 数据边界:
- us-central1
- us-central2
- us-east1
- us-east4
- us-east5
- us-south1
- us-west1
- us-west2
- us-west3
- us-west4
敏感数据的 API 字段
资源:无资源
下表列出了旨在处理受 ITAR 数据边界保护的数据的 API 资源和字段。
| API 方法 |
受保护的字段 |
|
服务:cloudbuild.googleapis.com
REST API:POST /v1/appmanifest:constructAppManifest
远程过程调用 (RPC) 方法:
google.devtools.cloudbuild.v1.CloudBuild.ConstructAppManifest
|
|
|
服务:cloudbuild.googleapis.com
REST API:POST /v1/{parent=projects/*/locations/*}/appmanifest:constructAppManifest
远程过程调用 (RPC) 方法:
google.devtools.cloudbuild.v1.CloudBuild.ConstructAppManifest
|
|
资源:cloudbuild.googleapis.com/Build
下表列出了旨在处理受 ITAR 数据边界保护的数据的 API 资源和字段。
资源:cloudbuild.googleapis.com/BuildTrigger
下表列出了旨在处理受 ITAR 数据边界保护的数据的 API 资源和字段。
不适用于敏感数据的字段
下表列出了不适合包含敏感信息的字段类别和特定字段,以供参考。为确保合规性,请避免在这些字段中放置受保护的数据。如需查看完整列表,请与您的 Google Cloud 代表联系。
| 类别 |
字段 |
| 身份验证 |
|
| 构建/触发器具体信息 |
build.buildReceipt.buildConfigSubstitutions.value
build.buildReceipt.queue
build.options.pool.name
build.source.gitSource.gitCredential.password
build.source.gitSource.gitCredential.username
triggerId
|
| 配置 |
appConfigJson.bucket
appConfigJson.object
code
eventSource
hostUrl
peeredNetwork
|
| 连接具体信息 |
connection.bitbucketCloudConfig.authorizerCredential.userTokenSecretVersion
connection.bitbucketCloudConfig.readAuthorizerCredential.userTokenSecretVersion
connection.bitbucketCloudConfig.webhookSecretSecretVersion
connection.githubEnterpriseConfig.oauthClientIdSecretVersion
connection.githubEnterpriseConfig.oauthSecretSecretVersion
connection.gitlabConfig.readAuthorizerCredential.userTokenSecretVersion
|
| 网络配置 |
不适用
|
| 代码库/项目详细信息 |
installation.repositorySettingList.repositorySettings.name
installation.repositorySettingList.repositorySettings.owner
owner
|
| 资源标识 |
enterpriseConfigResourceName
id
name
parent
projectId
repo
|
| 密钥管理 |
|
| 服务/API 访问权限 |
connection.githubEnterpriseConfig.serviceDirectoryConfig.service
connection.gitlabConfig.serviceDirectoryConfig.service
gitlabConfig.secrets.apiAccessTokenVersion
gitlabConfig.secrets.apiKeyVersion
|
| 状态管理 |
etag
pageToken
state
updateMask.paths
|
|
后续步骤
如未另行说明,那么本页面中的内容已根据知识共享署名 4.0 许可获得了许可,并且代码示例已根据 Apache 2.0 许可获得了许可。有关详情,请参阅 Google 开发者网站政策。Java 是 Oracle 和/或其关联公司的注册商标。
最后更新时间 (UTC):2026-09-18。
[null,null,["最后更新时间 (UTC):2026-09-18。"],[],[]]