-
Setup organization
...
-
Google: Add new Project
EmailSender
(with default options) -
AWS: Create Role
GMailSenderRole
and attach Policy -
Google:
-
-
Add
IAM Workload Identity Pool Admin
role to you account -
???
Organization Administrator
-
-
-
filter organization policies by
iam.workloadIdentity
-
Edit policy Allowed external Identity Providers for workloads in Cloud IAM
-
... not completed