Dataproc audit logging
This document describes audit logging for Dataproc and Dataproc Serverless. It describes which methods are audited and details about the audit log each method produces. It lists which methods do not produce audit logs, if any. Google Cloud services write audit logs that record administrative activities and accesses within your Google Cloud resources. For more information, see Cloud Audit Logs overview.
Service name
Dataproc and Dataproc Serverless audit logs use the service name dataproc.googleapis.com
.
Methods by permission type
Methods that check DATA_READ
, DATA_WRITE
, and ADMIN_READ
permission types generate Data Access audit logs.
Methods that check ADMIN_WRITE
permission types generate Admin Activity audit logs.
Permission type | Methods |
---|---|
ADMIN_READ | google.cloud.dataproc.v1.AutoscalingPolicyService.GetAutoscalingPolicy google.cloud.dataproc.v1.AutoscalingPolicyService.ListAutoscalingPolicies google.cloud.dataproc.v1.BatchController.GetBatch google.cloud.dataproc.v1.BatchController.ListBatches google.cloud.dataproc.v1.ClusterController.GetCluster google.cloud.dataproc.v1.ClusterController.ListClusters google.cloud.dataproc.v1.JobController.GetJob google.cloud.dataproc.v1.JobController.ListJobs google.cloud.dataproc.v1.NodeGroupController.GetNodeGroup google.cloud.dataproc.v1.SessionController.GetSession google.cloud.dataproc.v1.SessionController.ListSessions google.cloud.dataproc.v1.SessionTemplateController.GetSessionTemplate google.cloud.dataproc.v1.SessionTemplateController.ListSessionTemplates google.cloud.dataproc.v1.WorkflowTemplateService.GetWorkflowTemplate google.cloud.dataproc.v1.WorkflowTemplateService.ListWorkflowTemplates google.cloud.dataproc.v1beta2.AutoscalingPolicyService.GetAutoscalingPolicy google.cloud.dataproc.v1beta2.ClusterController.GetCluster google.cloud.dataproc.v1beta2.ClusterController.ListClusters google.cloud.dataproc.v1beta2.JobController.GetJob google.cloud.dataproc.v1beta2.JobController.ListJobs google.cloud.dataproc.v1beta2.WorkflowTemplateService.GetWorkflowTemplate google.cloud.dataproc.v1beta2.WorkflowTemplateService.ListWorkflowTemplates google.iam.v1.IAMPolicy.GetIamPolicy google.longrunning.Operations.GetOperation google.longrunning.Operations.ListOperations |
ADMIN_WRITE | google.cloud.dataproc.v1.AnalysisService.AnalyzeBatch google.cloud.dataproc.v1.AutoscalingPolicyService.CreateAutoscalingPolicy google.cloud.dataproc.v1.AutoscalingPolicyService.DeleteAutoscalingPolicy google.cloud.dataproc.v1.AutoscalingPolicyService.UpdateAutoscalingPolicy google.cloud.dataproc.v1.BatchController.CreateBatch google.cloud.dataproc.v1.BatchController.DeleteBatch google.cloud.dataproc.v1.ClusterController.CreateCluster google.cloud.dataproc.v1.ClusterController.DeleteCluster google.cloud.dataproc.v1.ClusterController.DiagnoseCluster google.cloud.dataproc.v1.ClusterController.InjectCredentials google.cloud.dataproc.v1.ClusterController.RepairCluster google.cloud.dataproc.v1.ClusterController.StartCluster google.cloud.dataproc.v1.ClusterController.StopCluster google.cloud.dataproc.v1.ClusterController.UpdateCluster google.cloud.dataproc.v1.JobController.CancelJob google.cloud.dataproc.v1.JobController.DeleteJob google.cloud.dataproc.v1.JobController.SubmitJob google.cloud.dataproc.v1.JobController.SubmitJobAsOperation google.cloud.dataproc.v1.JobController.UpdateJob google.cloud.dataproc.v1.NodeGroupController.CreateNodeGroup google.cloud.dataproc.v1.NodeGroupController.RepairNodeGroup google.cloud.dataproc.v1.NodeGroupController.ResizeNodeGroup google.cloud.dataproc.v1.SessionController.CreateSession google.cloud.dataproc.v1.SessionController.DeleteSession google.cloud.dataproc.v1.SessionController.TerminateSession google.cloud.dataproc.v1.SessionTemplateController.CreateSessionTemplate google.cloud.dataproc.v1.SessionTemplateController.DeleteSessionTemplate google.cloud.dataproc.v1.SessionTemplateController.UpdateSessionTemplate google.cloud.dataproc.v1.WorkflowTemplateService.CreateWorkflowTemplate google.cloud.dataproc.v1.WorkflowTemplateService.DeleteWorkflowTemplate google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateInlineWorkflowTemplate google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateWorkflowTemplate google.cloud.dataproc.v1.WorkflowTemplateService.UpdateWorkflowTemplate google.cloud.dataproc.v1beta2.AutoscalingPolicyService.CreateAutoscalingPolicy google.cloud.dataproc.v1beta2.AutoscalingPolicyService.DeleteAutoscalingPolicy google.cloud.dataproc.v1beta2.AutoscalingPolicyService.UpdateAutoscalingPolicy google.cloud.dataproc.v1beta2.ClusterController.CreateCluster google.cloud.dataproc.v1beta2.ClusterController.DeleteCluster google.cloud.dataproc.v1beta2.ClusterController.DiagnoseCluster google.cloud.dataproc.v1beta2.ClusterController.StartCluster google.cloud.dataproc.v1beta2.ClusterController.StopCluster google.cloud.dataproc.v1beta2.ClusterController.UpdateCluster google.cloud.dataproc.v1beta2.JobController.CancelJob google.cloud.dataproc.v1beta2.JobController.DeleteJob google.cloud.dataproc.v1beta2.JobController.SubmitJob google.cloud.dataproc.v1beta2.JobController.SubmitJobAsOperation google.cloud.dataproc.v1beta2.WorkflowTemplateService.CreateWorkflowTemplate google.cloud.dataproc.v1beta2.WorkflowTemplateService.DeleteWorkflowTemplate google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateInlineWorkflowTemplate google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateWorkflowTemplate google.cloud.dataproc.v1beta2.WorkflowTemplateService.UpdateWorkflowTemplate google.iam.v1.IAMPolicy.SetIamPolicy google.longrunning.Operations.CancelOperation google.longrunning.Operations.DeleteOperation |
Audit logs for each API interface
For more information about which permissions are evaluated for each method, see the Identity and Access Management documentation for Dataproc and Dataproc Serverless.
google.cloud.dataproc.v1.AnalysisService
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.AnalysisService
.
google.cloud.dataproc.v1.AnalysisService.AnalyzeBatch
- Method: google.cloud.dataproc.v1.AnalysisService.AnalyzeBatch
- Audit log Type: Admin activity
- Permissions:
dataproc.batches.analyze - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.AnalysisService.AnalyzeBatch"
google.cloud.dataproc.v1.AutoscalingPolicyService
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.AutoscalingPolicyService
.
google.cloud.dataproc.v1.AutoscalingPolicyService.CreateAutoscalingPolicy
- Method: google.cloud.dataproc.v1.AutoscalingPolicyService.CreateAutoscalingPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.AutoscalingPolicyService.CreateAutoscalingPolicy"
google.cloud.dataproc.v1.AutoscalingPolicyService.DeleteAutoscalingPolicy
- Method: google.cloud.dataproc.v1.AutoscalingPolicyService.DeleteAutoscalingPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.AutoscalingPolicyService.DeleteAutoscalingPolicy"
google.cloud.dataproc.v1.AutoscalingPolicyService.GetAutoscalingPolicy
- Method: google.cloud.dataproc.v1.AutoscalingPolicyService.GetAutoscalingPolicy
- Audit log Type: Data access
- Permissions:
dataproc.autoscalingPolicies.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.AutoscalingPolicyService.GetAutoscalingPolicy"
google.cloud.dataproc.v1.AutoscalingPolicyService.ListAutoscalingPolicies
- Method: google.cloud.dataproc.v1.AutoscalingPolicyService.ListAutoscalingPolicies
- Audit log Type: Data access
- Permissions:
dataproc.autoscalingPolicies.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.AutoscalingPolicyService.ListAutoscalingPolicies"
google.cloud.dataproc.v1.AutoscalingPolicyService.UpdateAutoscalingPolicy
- Method: google.cloud.dataproc.v1.AutoscalingPolicyService.UpdateAutoscalingPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.update - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.AutoscalingPolicyService.UpdateAutoscalingPolicy"
google.cloud.dataproc.v1.BatchController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.BatchController
.
google.cloud.dataproc.v1.BatchController.CreateBatch
- Method: google.cloud.dataproc.v1.BatchController.CreateBatch
- Audit log Type: Admin activity
- Permissions:
dataproc.batches.create - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.BatchController.CreateBatch"
google.cloud.dataproc.v1.BatchController.DeleteBatch
- Method: google.cloud.dataproc.v1.BatchController.DeleteBatch
- Audit log Type: Admin activity
- Permissions:
dataproc.batches.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.BatchController.DeleteBatch"
google.cloud.dataproc.v1.BatchController.GetBatch
- Method: google.cloud.dataproc.v1.BatchController.GetBatch
- Audit log Type: Data access
- Permissions:
dataproc.batches.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.BatchController.GetBatch"
google.cloud.dataproc.v1.BatchController.ListBatches
- Method: google.cloud.dataproc.v1.BatchController.ListBatches
- Audit log Type: Data access
- Permissions:
dataproc.batches.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.BatchController.ListBatches"
google.cloud.dataproc.v1.ClusterController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.ClusterController
.
google.cloud.dataproc.v1.ClusterController.CreateCluster
- Method: google.cloud.dataproc.v1.ClusterController.CreateCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.use - ADMIN_READ
dataproc.clusters.create - ADMIN_WRITE
dataproc.clusters.get - ADMIN_READ
dataproc.clusters.use - ADMIN_WRITE
dataproc.operations.get - ADMIN_READ
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.CreateCluster"
google.cloud.dataproc.v1.ClusterController.DeleteCluster
- Method: google.cloud.dataproc.v1.ClusterController.DeleteCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.delete - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.DeleteCluster"
google.cloud.dataproc.v1.ClusterController.DiagnoseCluster
- Method: google.cloud.dataproc.v1.ClusterController.DiagnoseCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.DiagnoseCluster"
google.cloud.dataproc.v1.ClusterController.GetCluster
- Method: google.cloud.dataproc.v1.ClusterController.GetCluster
- Audit log Type: Data access
- Permissions:
dataproc.clusters.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.GetCluster"
google.cloud.dataproc.v1.ClusterController.InjectCredentials
- Method: google.cloud.dataproc.v1.ClusterController.InjectCredentials
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.InjectCredentials"
google.cloud.dataproc.v1.ClusterController.ListClusters
- Method: google.cloud.dataproc.v1.ClusterController.ListClusters
- Audit log Type: Data access
- Permissions:
dataproc.clusters.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.ListClusters"
google.cloud.dataproc.v1.ClusterController.RepairCluster
- Method: google.cloud.dataproc.v1.ClusterController.RepairCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.update - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.RepairCluster"
google.cloud.dataproc.v1.ClusterController.StartCluster
- Method: google.cloud.dataproc.v1.ClusterController.StartCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.start - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.StartCluster"
google.cloud.dataproc.v1.ClusterController.StopCluster
- Method: google.cloud.dataproc.v1.ClusterController.StopCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.stop - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.StopCluster"
google.cloud.dataproc.v1.ClusterController.UpdateCluster
- Method: google.cloud.dataproc.v1.ClusterController.UpdateCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.use - ADMIN_READ
dataproc.clusters.update - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.ClusterController.UpdateCluster"
google.cloud.dataproc.v1.JobController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.JobController
.
google.cloud.dataproc.v1.JobController.CancelJob
- Method: google.cloud.dataproc.v1.JobController.CancelJob
- Audit log Type: Admin activity
- Permissions:
dataproc.jobs.cancel - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.CancelJob"
google.cloud.dataproc.v1.JobController.DeleteJob
- Method: google.cloud.dataproc.v1.JobController.DeleteJob
- Audit log Type: Admin activity
- Permissions:
dataproc.jobs.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.DeleteJob"
google.cloud.dataproc.v1.JobController.GetJob
- Method: google.cloud.dataproc.v1.JobController.GetJob
- Audit log Type: Data access
- Permissions:
dataproc.jobs.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.GetJob"
google.cloud.dataproc.v1.JobController.ListJobs
- Method: google.cloud.dataproc.v1.JobController.ListJobs
- Audit log Type: Data access
- Permissions:
dataproc.jobs.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.ListJobs"
google.cloud.dataproc.v1.JobController.SubmitJob
- Method: google.cloud.dataproc.v1.JobController.SubmitJob
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
dataproc.jobs.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.SubmitJob"
google.cloud.dataproc.v1.JobController.SubmitJobAsOperation
- Method: google.cloud.dataproc.v1.JobController.SubmitJobAsOperation
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
dataproc.jobs.create - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.SubmitJobAsOperation"
google.cloud.dataproc.v1.JobController.UpdateJob
- Method: google.cloud.dataproc.v1.JobController.UpdateJob
- Audit log Type: Data access
- Permissions:
dataproc.jobs.update - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.JobController.UpdateJob"
google.cloud.dataproc.v1.NodeGroupController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.NodeGroupController
.
google.cloud.dataproc.v1.NodeGroupController.CreateNodeGroup
- Method: google.cloud.dataproc.v1.NodeGroupController.CreateNodeGroup
- Audit log Type: Admin activity
- Permissions:
dataproc.nodeGroups.create - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.NodeGroupController.CreateNodeGroup"
google.cloud.dataproc.v1.NodeGroupController.GetNodeGroup
- Method: google.cloud.dataproc.v1.NodeGroupController.GetNodeGroup
- Audit log Type: Data access
- Permissions:
dataproc.nodeGroups.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.NodeGroupController.GetNodeGroup"
google.cloud.dataproc.v1.NodeGroupController.RepairNodeGroup
- Method: google.cloud.dataproc.v1.NodeGroupController.RepairNodeGroup
- Audit log Type: Admin activity
- Permissions:
dataproc.nodeGroups.update - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.NodeGroupController.RepairNodeGroup"
google.cloud.dataproc.v1.NodeGroupController.ResizeNodeGroup
- Method: google.cloud.dataproc.v1.NodeGroupController.ResizeNodeGroup
- Audit log Type: Admin activity
- Permissions:
dataproc.nodeGroups.update - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.NodeGroupController.ResizeNodeGroup"
google.cloud.dataproc.v1.SessionController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.SessionController
.
google.cloud.dataproc.v1.SessionController.CreateSession
- Method: google.cloud.dataproc.v1.SessionController.CreateSession
- Audit log Type: Admin activity
- Permissions:
dataproc.sessions.create - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionController.CreateSession"
google.cloud.dataproc.v1.SessionController.DeleteSession
- Method: google.cloud.dataproc.v1.SessionController.DeleteSession
- Audit log Type: Admin activity
- Permissions:
dataproc.sessions.delete - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionController.DeleteSession"
google.cloud.dataproc.v1.SessionController.GetSession
- Method: google.cloud.dataproc.v1.SessionController.GetSession
- Audit log Type: Data access
- Permissions:
dataproc.sessions.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionController.GetSession"
google.cloud.dataproc.v1.SessionController.ListSessions
- Method: google.cloud.dataproc.v1.SessionController.ListSessions
- Audit log Type: Data access
- Permissions:
dataproc.sessions.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionController.ListSessions"
google.cloud.dataproc.v1.SessionController.TerminateSession
- Method: google.cloud.dataproc.v1.SessionController.TerminateSession
- Audit log Type: Admin activity
- Permissions:
dataproc.sessions.terminate - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionController.TerminateSession"
google.cloud.dataproc.v1.SessionTemplateController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.SessionTemplateController
.
google.cloud.dataproc.v1.SessionTemplateController.CreateSessionTemplate
- Method: google.cloud.dataproc.v1.SessionTemplateController.CreateSessionTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.sessionTemplates.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionTemplateController.CreateSessionTemplate"
google.cloud.dataproc.v1.SessionTemplateController.DeleteSessionTemplate
- Method: google.cloud.dataproc.v1.SessionTemplateController.DeleteSessionTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.sessionTemplates.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionTemplateController.DeleteSessionTemplate"
google.cloud.dataproc.v1.SessionTemplateController.GetSessionTemplate
- Method: google.cloud.dataproc.v1.SessionTemplateController.GetSessionTemplate
- Audit log Type: Data access
- Permissions:
dataproc.sessionTemplates.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionTemplateController.GetSessionTemplate"
google.cloud.dataproc.v1.SessionTemplateController.ListSessionTemplates
- Method: google.cloud.dataproc.v1.SessionTemplateController.ListSessionTemplates
- Audit log Type: Data access
- Permissions:
dataproc.sessionTemplates.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionTemplateController.ListSessionTemplates"
google.cloud.dataproc.v1.SessionTemplateController.UpdateSessionTemplate
- Method: google.cloud.dataproc.v1.SessionTemplateController.UpdateSessionTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.sessionTemplates.update - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.SessionTemplateController.UpdateSessionTemplate"
google.cloud.dataproc.v1.WorkflowTemplateService
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1.WorkflowTemplateService
.
google.cloud.dataproc.v1.WorkflowTemplateService.CreateWorkflowTemplate
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.CreateWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.CreateWorkflowTemplate"
google.cloud.dataproc.v1.WorkflowTemplateService.DeleteWorkflowTemplate
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.DeleteWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.DeleteWorkflowTemplate"
google.cloud.dataproc.v1.WorkflowTemplateService.GetWorkflowTemplate
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.GetWorkflowTemplate
- Audit log Type: Data access
- Permissions:
dataproc.workflowTemplates.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.GetWorkflowTemplate"
google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateInlineWorkflowTemplate
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateInlineWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.instantiateInline - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateInlineWorkflowTemplate"
google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateWorkflowTemplate
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.instantiate - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.InstantiateWorkflowTemplate"
google.cloud.dataproc.v1.WorkflowTemplateService.ListWorkflowTemplates
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.ListWorkflowTemplates
- Audit log Type: Data access
- Permissions:
dataproc.workflowTemplates.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.ListWorkflowTemplates"
google.cloud.dataproc.v1.WorkflowTemplateService.UpdateWorkflowTemplate
- Method: google.cloud.dataproc.v1.WorkflowTemplateService.UpdateWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.update - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1.WorkflowTemplateService.UpdateWorkflowTemplate"
google.cloud.dataproc.v1beta2.AutoscalingPolicyService
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1beta2.AutoscalingPolicyService
.
google.cloud.dataproc.v1beta2.AutoscalingPolicyService.CreateAutoscalingPolicy
- Method: google.cloud.dataproc.v1beta2.AutoscalingPolicyService.CreateAutoscalingPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.AutoscalingPolicyService.CreateAutoscalingPolicy"
google.cloud.dataproc.v1beta2.AutoscalingPolicyService.DeleteAutoscalingPolicy
- Method: google.cloud.dataproc.v1beta2.AutoscalingPolicyService.DeleteAutoscalingPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.AutoscalingPolicyService.DeleteAutoscalingPolicy"
google.cloud.dataproc.v1beta2.AutoscalingPolicyService.GetAutoscalingPolicy
- Method: google.cloud.dataproc.v1beta2.AutoscalingPolicyService.GetAutoscalingPolicy
- Audit log Type: Data access
- Permissions:
dataproc.autoscalingPolicies.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.AutoscalingPolicyService.GetAutoscalingPolicy"
google.cloud.dataproc.v1beta2.AutoscalingPolicyService.UpdateAutoscalingPolicy
- Method: google.cloud.dataproc.v1beta2.AutoscalingPolicyService.UpdateAutoscalingPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.update - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.AutoscalingPolicyService.UpdateAutoscalingPolicy"
google.cloud.dataproc.v1beta2.ClusterController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1beta2.ClusterController
.
google.cloud.dataproc.v1beta2.ClusterController.CreateCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.CreateCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.use - ADMIN_READ
dataproc.clusters.create - ADMIN_WRITE
dataproc.clusters.get - ADMIN_READ
dataproc.operations.get - ADMIN_READ
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.CreateCluster"
google.cloud.dataproc.v1beta2.ClusterController.DeleteCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.DeleteCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.delete - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.DeleteCluster"
google.cloud.dataproc.v1beta2.ClusterController.DiagnoseCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.DiagnoseCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.DiagnoseCluster"
google.cloud.dataproc.v1beta2.ClusterController.GetCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.GetCluster
- Audit log Type: Data access
- Permissions:
dataproc.clusters.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.GetCluster"
google.cloud.dataproc.v1beta2.ClusterController.ListClusters
- Method: google.cloud.dataproc.v1beta2.ClusterController.ListClusters
- Audit log Type: Data access
- Permissions:
dataproc.clusters.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.ListClusters"
google.cloud.dataproc.v1beta2.ClusterController.StartCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.StartCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.start - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.StartCluster"
google.cloud.dataproc.v1beta2.ClusterController.StopCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.StopCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.stop - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.StopCluster"
google.cloud.dataproc.v1beta2.ClusterController.UpdateCluster
- Method: google.cloud.dataproc.v1beta2.ClusterController.UpdateCluster
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.update - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.ClusterController.UpdateCluster"
google.cloud.dataproc.v1beta2.JobController
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1beta2.JobController
.
google.cloud.dataproc.v1beta2.JobController.CancelJob
- Method: google.cloud.dataproc.v1beta2.JobController.CancelJob
- Audit log Type: Admin activity
- Permissions:
dataproc.jobs.cancel - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.JobController.CancelJob"
google.cloud.dataproc.v1beta2.JobController.DeleteJob
- Method: google.cloud.dataproc.v1beta2.JobController.DeleteJob
- Audit log Type: Admin activity
- Permissions:
dataproc.jobs.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.JobController.DeleteJob"
google.cloud.dataproc.v1beta2.JobController.GetJob
- Method: google.cloud.dataproc.v1beta2.JobController.GetJob
- Audit log Type: Data access
- Permissions:
dataproc.jobs.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.JobController.GetJob"
google.cloud.dataproc.v1beta2.JobController.ListJobs
- Method: google.cloud.dataproc.v1beta2.JobController.ListJobs
- Audit log Type: Data access
- Permissions:
dataproc.jobs.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.JobController.ListJobs"
google.cloud.dataproc.v1beta2.JobController.SubmitJob
- Method: google.cloud.dataproc.v1beta2.JobController.SubmitJob
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
dataproc.jobs.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.JobController.SubmitJob"
google.cloud.dataproc.v1beta2.JobController.SubmitJobAsOperation
- Method: google.cloud.dataproc.v1beta2.JobController.SubmitJobAsOperation
- Audit log Type: Admin activity
- Permissions:
dataproc.clusters.use - ADMIN_WRITE
dataproc.jobs.create - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.JobController.SubmitJobAsOperation"
google.cloud.dataproc.v1beta2.WorkflowTemplateService
The following section contains details about audit logs associated with methods belonging to google.cloud.dataproc.v1beta2.WorkflowTemplateService
.
google.cloud.dataproc.v1beta2.WorkflowTemplateService.CreateWorkflowTemplate
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.CreateWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.create - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.CreateWorkflowTemplate"
google.cloud.dataproc.v1beta2.WorkflowTemplateService.DeleteWorkflowTemplate
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.DeleteWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.DeleteWorkflowTemplate"
google.cloud.dataproc.v1beta2.WorkflowTemplateService.GetWorkflowTemplate
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.GetWorkflowTemplate
- Audit log Type: Data access
- Permissions:
dataproc.workflowTemplates.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.GetWorkflowTemplate"
google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateInlineWorkflowTemplate
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateInlineWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.instantiateInline - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateInlineWorkflowTemplate"
google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateWorkflowTemplate
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.instantiate - ADMIN_WRITE
- Method is a long-running or streaming operation:
Long running operation
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.InstantiateWorkflowTemplate"
google.cloud.dataproc.v1beta2.WorkflowTemplateService.ListWorkflowTemplates
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.ListWorkflowTemplates
- Audit log Type: Data access
- Permissions:
dataproc.workflowTemplates.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.ListWorkflowTemplates"
google.cloud.dataproc.v1beta2.WorkflowTemplateService.UpdateWorkflowTemplate
- Method: google.cloud.dataproc.v1beta2.WorkflowTemplateService.UpdateWorkflowTemplate
- Audit log Type: Admin activity
- Permissions:
dataproc.workflowTemplates.update - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.cloud.dataproc.v1beta2.WorkflowTemplateService.UpdateWorkflowTemplate"
google.iam.v1.IAMPolicy
The following section contains details about audit logs associated with methods belonging to google.iam.v1.IAMPolicy
.
google.iam.v1.IAMPolicy.GetIamPolicy
- Method: google.iam.v1.IAMPolicy.GetIamPolicy
- Audit log Type: Data access
- Permissions:
dataproc.autoscalingPolicies.getIamPolicy - ADMIN_READ
dataproc.clusters.getIamPolicy - ADMIN_READ
dataproc.jobs.getIamPolicy - ADMIN_READ
dataproc.operations.getIamPolicy - ADMIN_READ
dataproc.workflowTemplates.getIamPolicy - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.iam.v1.IAMPolicy.GetIamPolicy"
google.iam.v1.IAMPolicy.SetIamPolicy
- Method: google.iam.v1.IAMPolicy.SetIamPolicy
- Audit log Type: Admin activity
- Permissions:
dataproc.autoscalingPolicies.setIamPolicy - ADMIN_WRITE
dataproc.clusters.setIamPolicy - ADMIN_WRITE
dataproc.jobs.setIamPolicy - ADMIN_WRITE
dataproc.operations.setIamPolicy - ADMIN_WRITE
dataproc.workflowTemplates.setIamPolicy - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.iam.v1.IAMPolicy.SetIamPolicy"
google.longrunning.Operations
The following section contains details about audit logs associated with methods belonging to google.longrunning.Operations
.
google.longrunning.Operations.CancelOperation
- Method: google.longrunning.Operations.CancelOperation
- Audit log Type: Admin activity
- Permissions:
dataproc.batches.cancel - ADMIN_WRITE
dataproc.operations.cancel - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.longrunning.Operations.CancelOperation"
google.longrunning.Operations.DeleteOperation
- Method: google.longrunning.Operations.DeleteOperation
- Audit log Type: Admin activity
- Permissions:
dataproc.operations.delete - ADMIN_WRITE
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.longrunning.Operations.DeleteOperation"
google.longrunning.Operations.GetOperation
- Method: google.longrunning.Operations.GetOperation
- Audit log Type: Data access
- Permissions:
dataproc.operations.get - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.longrunning.Operations.GetOperation"
google.longrunning.Operations.ListOperations
- Method: google.longrunning.Operations.ListOperations
- Audit log Type: Data access
- Permissions:
dataproc.operations.list - ADMIN_READ
- Method is a long-running or streaming operation: No.
- Filter for this method:
protoPayload.methodName="google.longrunning.Operations.ListOperations"
Methods that don't produce audit logs
A method might not produce audit logs for one or more of the following reasons:
- It is a high volume method involving signifcant log generation and storage costs.
- It has low auditing value.
- Another audit or platform log already provides method coverage.
The following methods don't produce audit logs:
google.cloud.dataproc.v1beta2.ClusterController.InjectCredentials
google.cloud.dataproc.v1beta2.JobController.UpdateJob