Distributed Cloud Edge 컨테이너 역할 및 권한

이 페이지에는 Distributed Cloud Edge 컨테이너의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참조하세요.

Distributed Cloud Edge 컨테이너 역할

Role Permissions

(roles/edgecontainer.admin)

Full access to Edge Container all resources.

edgecontainer.*

  • edgecontainer.clusters.create
  • edgecontainer.clusters.delete
  • edgecontainer.clusters.generateAccessToken
  • edgecontainer.clusters.generateOfflineCredential
  • edgecontainer.clusters.get
  • edgecontainer.clusters.getIamPolicy
  • edgecontainer.clusters.list
  • edgecontainer.clusters.setIamPolicy
  • edgecontainer.clusters.update
  • edgecontainer.clusters.upgrade
  • edgecontainer.identityproviders.create
  • edgecontainer.identityproviders.delete
  • edgecontainer.identityproviders.get
  • edgecontainer.identityproviders.list
  • edgecontainer.locations.get
  • edgecontainer.locations.list
  • edgecontainer.machines.create
  • edgecontainer.machines.delete
  • edgecontainer.machines.get
  • edgecontainer.machines.getIamPolicy
  • edgecontainer.machines.list
  • edgecontainer.machines.setIamPolicy
  • edgecontainer.machines.update
  • edgecontainer.machines.use
  • edgecontainer.nodePools.create
  • edgecontainer.nodePools.delete
  • edgecontainer.nodePools.get
  • edgecontainer.nodePools.getIamPolicy
  • edgecontainer.nodePools.list
  • edgecontainer.nodePools.setIamPolicy
  • edgecontainer.nodePools.update
  • edgecontainer.operations.cancel
  • edgecontainer.operations.delete
  • edgecontainer.operations.get
  • edgecontainer.operations.list
  • edgecontainer.serverconfig.get
  • edgecontainer.serviceaccounts.create
  • edgecontainer.serviceaccounts.delete
  • edgecontainer.serviceaccounts.generatekey
  • edgecontainer.serviceaccounts.get
  • edgecontainer.serviceaccounts.list
  • edgecontainer.vpnConnections.create
  • edgecontainer.vpnConnections.delete
  • edgecontainer.vpnConnections.get
  • edgecontainer.vpnConnections.getIamPolicy
  • edgecontainer.vpnConnections.list
  • edgecontainer.vpnConnections.setIamPolicy
  • edgecontainer.vpnConnections.update
  • edgecontainer.zonalProjects.disable
  • edgecontainer.zonalProjects.enable
  • edgecontainer.zonalProjects.get
  • edgecontainer.zonalProjects.list
  • edgecontainer.zonalservices.disable
  • edgecontainer.zonalservices.enable
  • edgecontainer.zonalservices.get
  • edgecontainer.zonalservices.list
  • edgecontainer.zones.get
  • edgecontainer.zones.getZoneIamPolicy
  • edgecontainer.zones.list
  • edgecontainer.zones.setZoneIamPolicy

resourcemanager.projects.get

resourcemanager.projects.list

(roles/edgecontainer.clusterServiceAgent)

Grants the Edge Container Cluster Service Account access to manage resources.

cloudnotifications.activities.list

gkehub.endpoints.connect

gkehub.features.create

gkehub.features.get

gkehub.features.list

gkehub.features.update

gkehub.fleet.create

gkehub.fleet.delete

gkehub.fleet.get

gkehub.locations.*

  • gkehub.locations.get
  • gkehub.locations.list

gkehub.memberships.create

gkehub.memberships.delete

gkehub.memberships.generateConnectManifest

gkehub.memberships.get

gkehub.memberships.list

gkehub.memberships.update

gkehub.operations.*

  • gkehub.operations.cancel
  • gkehub.operations.delete
  • gkehub.operations.get
  • gkehub.operations.list

kubernetesmetadata.*

  • kubernetesmetadata.metadata.config
  • kubernetesmetadata.metadata.publish
  • kubernetesmetadata.metadata.snapshot

logging.logEntries.create

monitoring.alertPolicies.get

monitoring.alertPolicies.list

monitoring.alertPolicies.listEffectiveTags

monitoring.alertPolicies.listTagBindings

monitoring.dashboards.create

monitoring.dashboards.delete

monitoring.dashboards.get

monitoring.dashboards.list

monitoring.dashboards.listEffectiveTags

monitoring.dashboards.listTagBindings

monitoring.dashboards.update

monitoring.groups.get

monitoring.groups.list

monitoring.metricDescriptors.create

monitoring.metricDescriptors.get

monitoring.metricDescriptors.list

monitoring.monitoredResourceDescriptors.*

  • monitoring.monitoredResourceDescriptors.get
  • monitoring.monitoredResourceDescriptors.list

monitoring.notificationChannelDescriptors.*

  • monitoring.notificationChannelDescriptors.get
  • monitoring.notificationChannelDescriptors.list

monitoring.notificationChannels.get

monitoring.notificationChannels.list

monitoring.services.get

monitoring.services.list

monitoring.slos.get

monitoring.slos.list

monitoring.snoozes.get

monitoring.snoozes.list

monitoring.timeSeries.*

  • monitoring.timeSeries.create
  • monitoring.timeSeries.list

monitoring.uptimeCheckConfigs.get

monitoring.uptimeCheckConfigs.list

opsconfigmonitoring.*

  • opsconfigmonitoring.resourceMetadata.list
  • opsconfigmonitoring.resourceMetadata.write

resourcemanager.projects.get

resourcemanager.projects.list

serviceusage.quotas.get

serviceusage.services.enable

serviceusage.services.get

serviceusage.services.list

stackdriver.projects.get

stackdriver.resourceMetadata.*

  • stackdriver.resourceMetadata.list
  • stackdriver.resourceMetadata.write

storage.buckets.create

storage.buckets.get

storage.buckets.list

storage.buckets.update

storage.objects.create

storage.objects.delete

storage.objects.get

storage.objects.list

storage.objects.update

(roles/edgecontainer.identityProviderAdmin)

Access to manage Identity Providers.

edgecontainer.identityproviders.*

  • edgecontainer.identityproviders.create
  • edgecontainer.identityproviders.delete
  • edgecontainer.identityproviders.get
  • edgecontainer.identityproviders.list

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

(roles/edgecontainer.identityProviderViewer)

Read-only access to Identity Providers.

edgecontainer.identityproviders.get

edgecontainer.identityproviders.list

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

(roles/edgecontainer.machineUser)

Access to use Edge Container Machine resources.

edgecontainer.machines.get

edgecontainer.machines.getIamPolicy

edgecontainer.machines.list

edgecontainer.machines.use

resourcemanager.projects.get

resourcemanager.projects.list

(roles/edgecontainer.offlineCredentialUser)

Access to get Edge Container cluster offline credentials

edgecontainer.clusters.generateOfflineCredential

resourcemanager.projects.get

resourcemanager.projects.list

(roles/edgecontainer.serviceAgent)

Grants the Edge Container Service Account access to manage resources.

compute.externalVpnGateways.create

compute.externalVpnGateways.delete

compute.externalVpnGateways.get

compute.externalVpnGateways.use

compute.globalOperations.get

compute.networks.get

compute.networks.updatePolicy

compute.regionOperations.get

compute.routers.create

compute.routers.delete

compute.routers.get

compute.routers.list

compute.routers.update

compute.routers.use

compute.vpnGateways.create

compute.vpnGateways.delete

compute.vpnGateways.get

compute.vpnGateways.use

compute.vpnTunnels.create

compute.vpnTunnels.delete

compute.vpnTunnels.get

gkehub.memberships.create

gkehub.memberships.delete

gkehub.memberships.generateConnectManifest

gkehub.memberships.get

gkehub.memberships.list

gkehub.memberships.update

gkehub.operations.cancel

gkehub.operations.get

serviceusage.services.list

(roles/edgecontainer.viewer)

Read-only access to Edge Container all resources.

edgecontainer.clusters.generateAccessToken

edgecontainer.clusters.get

edgecontainer.clusters.getIamPolicy

edgecontainer.clusters.list

edgecontainer.identityproviders.get

edgecontainer.identityproviders.list

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

edgecontainer.machines.get

edgecontainer.machines.getIamPolicy

edgecontainer.machines.list

edgecontainer.nodePools.get

edgecontainer.nodePools.getIamPolicy

edgecontainer.nodePools.list

edgecontainer.operations.get

edgecontainer.operations.list

edgecontainer.serverconfig.get

edgecontainer.serviceaccounts.generatekey

edgecontainer.serviceaccounts.get

edgecontainer.serviceaccounts.list

edgecontainer.vpnConnections.get

edgecontainer.vpnConnections.getIamPolicy

edgecontainer.vpnConnections.list

edgecontainer.zonalProjects.get

edgecontainer.zonalProjects.list

edgecontainer.zonalservices.get

edgecontainer.zonalservices.list

edgecontainer.zones.get

edgecontainer.zones.getZoneIamPolicy

edgecontainer.zones.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/edgecontainer.zonalProjectAdmin)

Access to manage zonal projects.

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

edgecontainer.operations.*

  • edgecontainer.operations.cancel
  • edgecontainer.operations.delete
  • edgecontainer.operations.get
  • edgecontainer.operations.list

edgecontainer.zonalProjects.enable

edgecontainer.zonalProjects.get

edgecontainer.zonalProjects.list

edgecontainer.zones.get

edgecontainer.zones.list

(roles/edgecontainer.zonalProjectViewer)

Read-only access to zonal projects.

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

edgecontainer.operations.get

edgecontainer.operations.list

edgecontainer.zonalProjects.get

edgecontainer.zonalProjects.list

edgecontainer.zones.get

edgecontainer.zones.list

(roles/edgecontainer.zonalServiceAdmin)

Access to mutate zonal service.

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

edgecontainer.operations.*

  • edgecontainer.operations.cancel
  • edgecontainer.operations.delete
  • edgecontainer.operations.get
  • edgecontainer.operations.list

edgecontainer.zonalservices.enable

edgecontainer.zonalservices.get

edgecontainer.zonalservices.list

(roles/edgecontainer.zonalServiceViewer)

Read-only access to zonal services.

edgecontainer.locations.*

  • edgecontainer.locations.get
  • edgecontainer.locations.list

edgecontainer.operations.get

edgecontainer.operations.list

edgecontainer.zonalservices.get

edgecontainer.zonalservices.list

Distributed Cloud Edge 컨테이너 권한

권한 역할에 포함됨

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 클러스터 오프라인 사용자 인증 정보 사용자(roles/edgecontainer.offlineCredentialUser)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

에지 컨테이너 관리자(roles/edgecontainer.admin)

보안 관리자(roles/iam.securityAdmin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 머신 사용자(roles/edgecontainer.machineUser)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 머신 사용자(roles/edgecontainer.machineUser)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 머신 사용자(roles/edgecontainer.machineUser)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

에지 컨테이너 관리자(roles/edgecontainer.admin)

보안 관리자(roles/iam.securityAdmin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 머신 사용자(roles/edgecontainer.machineUser)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

에지 컨테이너 관리자(roles/edgecontainer.admin)

보안 관리자(roles/iam.securityAdmin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

에지 컨테이너 관리자(roles/edgecontainer.admin)

에지 컨테이너 뷰어(roles/edgecontainer.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

에지 컨테이너 관리자(roles/edgecontainer.admin)

보안 관리자(roles/iam.securityAdmin)

소유자(roles/owner)

편집자(roles/editor)

에지 컨테이너 관리자(roles/edgecontainer.admin)