services / Google Cloud / Frontend config custom resource definition for Google Kubernetes Engine
FrontendConfig objects configure two ingress features on Kubernetes Engine: 1) SSL proxy 2) HTTPS-to-HTTP redirect
FrontendConfig is a piece of reusable configuration for an Ingress object. A FrontendConfig does not take effect unless it is associated with an Ingress object via annotations.
container.frontendConfigs.delete
FrontendConfigs that are associated with an Ingress can be deleted without first removing the reference to them. Access to a Service can be disrupted by deleting a BackendConfig that is associated with an Ingress.
Risks
Scope: HIGH
This privilege may grant access to sensitive data from a single organizational function, or allow interruption of a service supporting a single organizational function.
Links
Contributed by P0 Security
© 2023–present P0 Security and contributors to the IAM Privilege Catalog