- HTTP request
- Path parameters
- Request body
- Response body
- Authorization scopes
- IAM Permissions
- Try it!
Gets the access control policy for an Identity-Aware Proxy protected resource. More information about managing access via IAP can be found at: https://cloud.google.com/iap/docs/managing-access#managing_access_via_the_api
HTTP request
POST https://iap.googleapis.com/v1beta1/{resource=**}:getIamPolicy
The URL uses gRPC Transcoding syntax.
Path parameters
| Parameters | |
|---|---|
| resource | 
 REQUIRED: The resource for which the policy is being requested. See Resource names for the appropriate value for this field. | 
Request body
The request body contains data with the following structure:
| JSON representation | 
|---|
| {
  "options": {
    object ( | 
| Fields | |
|---|---|
| options | 
 OPTIONAL: A  | 
Response body
If successful, the response body contains an instance of Policy.
Authorization scopes
Requires the following OAuth scope:
- https://www.googleapis.com/auth/cloud-platform
For more information, see the Authentication Overview.
IAM Permissions
Requires one of the following IAM permissions on the resource resource, depending on the resource type:
- iap.gateway.getIamPolicy
- iap.tunnel.getIamPolicy
- iap.tunnelDestGroups.getIamPolicy
- iap.tunnelInstances.getIamPolicy
- iap.tunnelLocations.getIamPolicy
- iap.tunnelZones.getIamPolicy
- iap.web.getIamPolicy
- iap.webServices.getIamPolicy
- iap.webServiceVersions.getIamPolicy
- iap.webTypes.getIamPolicy
For more information, see the IAM documentation.