[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-08-29。"],[[["\u003cp\u003eThis page outlines Apigee-specific roles applicable to both Apigee and Apigee hybrid.\u003c/p\u003e\n"],["\u003cp\u003eApigee offers pre-defined roles, called "Apigee roles," that generally allow for the listing and retrieval of organizations, environments, and projects.\u003c/p\u003e\n"],["\u003cp\u003eRoles such as \u003ccode\u003eAPI Admin\u003c/code\u003e, \u003ccode\u003eAPI Reader\u003c/code\u003e, \u003ccode\u003eAnalytics Editor\u003c/code\u003e, and \u003ccode\u003eEnvironment Admin\u003c/code\u003e grant specific access levels and permissions for managing API proxies, analytics, and environments.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003eOrg Admin\u003c/code\u003e role is a super user with complete access to all Apigee resources, and the \u003ccode\u003eRead Only Admin\u003c/code\u003e role allows for comprehensive viewing but no modification abilities.\u003c/p\u003e\n"],["\u003cp\u003eIn addition to Apigee roles, Google Cloud roles are also utilized for managing user permissions within the Apigee platform.\u003c/p\u003e\n"]]],[],null,["# Apigee roles\n\n*This page\napplies to **Apigee** and **Apigee hybrid**.*\n\n\n*View [Apigee Edge](https://docs.apigee.com/api-platform/get-started/what-apigee-edge) documentation.*\n\nThis section describes the Apigee-specific roles that you commonly assign to your users. These\nare not the same roles that you assign to service accounts.\n| **Note:** For more information, see [Users and\n| roles](/apigee/docs/api-platform/system-administration/users-roles-overview).\n\nApigee-specific roles\n---------------------\n\nApigee provides a set of pre-defined (or *curated* ) roles called *Apigee roles*.\nIn general, all pre-defined Apigee roles can:\n\n- Get and list organizations\n- Get and list environments (most but not all roles)\n- Get and list projects\n\nThe following table summarizes a few of the main Apigee roles.\n| **Note:** For a complete list of all Apigee roles and their specific permissions, see [Apigee roles](/iam/docs/understanding-roles#apigee-roles).\n\nYou can view these roles and the service account roles in the IAM **Permissions**\nview within Google Cloud console:\n\nTo access the IAM **Permissions** view:\n\nIn the Google Cloud console, go to the **IAM \\& Admin \\\u003e Roles** page.\n\n[Go to Roles](https://console.cloud.google.com/iam-admin/roles)\n\nFor a complete list of API permissions for each role, see [Apigee roles](/iam/docs/understanding-roles#apigee-roles).\n| **Note:** If you create a role in the **IAM \\& Admin \\\u003e Roles** page, be sure to include the permission `apigee.projectorganizations.get` in the role.\n\nIn addition to the Apigee roles, you also apply Google Cloud roles such\nas Logs Writer and Storage Object Admin to your users."]]