Is it possible to set up an access permission on GCP resource that requires multiple roles/permissions/groups membership? Basically, have a logical AND for permissions.
IAM "conditions" feature provides means for basic role assignment requirement, like time and duration restriction but this is not what I'm looking for.
Example organization structure:
- Testing folder:
--- SomeProject [Require "Testing" group membership]
--- AnotherProject [Require "Testing" group membership]
--- SecretProject [Require "Testing" AND "Secret" group membership]
- Production folder
--- SomeProject1 [Require "Production" group membership]
--- AnotherProject1 [Require "Production" group mmebrship]
--- SecretProject1 [Require "Production" AND "Secret" group membership]
Thanks.