Tetap teratur dengan koleksi
Simpan dan kategorikan konten berdasarkan preferensi Anda.
Mengontrol akses dengan IAM
Cloud Profiler mengontrol akses ke aktivitas pembuatan profil
dalam project Google Cloud menggunakan peran dan izin Identity and Access Management (IAM).
Ringkasan
Untuk menggunakan Cloud Profiler untuk project Google Cloud , Anda harus memiliki izin IAM yang sesuai di project tersebut.
Izin tidak diberikan langsung kepada pengguna; izin justru
diberikan secara tidak langsung melalui peran, yang mengelompokkan izin.
Untuk mengetahui informasi selengkapnya tentang konsep ini, lihat
dokumentasi IAM tentang peran, izin, dan konsep terkait.
Izin dan peran
Bagian ini merangkum izin dan peran yang berlaku untuk
Profiler.
Izin
Tabel berikut mencantumkan izin yang diperlukan untuk aktivitas pembuatan profil:
Aktivitas
Izin yang diperlukan
Buat profil
cloudprofiler.profiles.create
Mencantumkan profil
cloudprofiler.profiles.list
Mengubah profil
cloudprofiler.profiles.update
Peran
Peran IAM mencakup izin dan dapat ditetapkan ke pengguna,
grup, dan akun layanan. Tabel berikut mencantumkan peran untuk
Profiler:
Role
Permissions
Cloud Profiler Agent
(roles/cloudprofiler.agent)
Cloud Profiler agents are allowed to register and provide the profiling data.
cloudprofiler.profiles.create
cloudprofiler.profiles.update
Cloud Profiler User
(roles/cloudprofiler.user)
Cloud Profiler users are allowed to query and view the profiling data.
cloudprofiler.profiles.list
resourcemanager.projects.get
resourcemanager.projects.list
serviceusage.quotas.get
serviceusage.services.get
serviceusage.services.list
Untuk mempelajari cara menetapkan peran Identity and Access Management ke akun pengguna atau layanan, lihat
Mengelola Kebijakan.
[[["Mudah dipahami","easyToUnderstand","thumb-up"],["Memecahkan masalah saya","solvedMyProblem","thumb-up"],["Lainnya","otherUp","thumb-up"]],[["Sulit dipahami","hardToUnderstand","thumb-down"],["Informasi atau kode contoh salah","incorrectInformationOrSampleCode","thumb-down"],["Informasi/contoh yang saya butuhkan tidak ada","missingTheInformationSamplesINeed","thumb-down"],["Masalah terjemahan","translationIssue","thumb-down"],["Lainnya","otherDown","thumb-down"]],["Terakhir diperbarui pada 2025-09-03 UTC."],[],[],null,["# Control access with IAM\n=======================\n\nCloud Profiler controls access to profiling activities\nin Google Cloud projects by using [Identity and Access Management (IAM)](/iam/docs/overview)\nroles and permissions.\n| **Note:** Cloud Profiler doesn't support [Workload identity federation](/iam/docs/workload-identity-federation). You can't use Cloud Profiler in an environment that relies exclusively on Workload identity federation for authentication.\n\nOverview\n--------\n\nTo use Cloud Profiler for a Google Cloud project, you must have the\nappropriate IAM permissions on that project.\n\nPermissions are not granted directly to users; permissions are instead\ngranted indirectly through roles, which group permissions.\nFor more information on these concepts, see the\nIAM documentation on [roles, permissions, and related\nconcepts](/iam/docs/overview#concepts_related_to_access_management).\n\nPermissions and roles\n---------------------\n\nThis section summarizes the permissions and roles that apply to\nProfiler.\n\n### Permissions\n\nThe following table lists the permissions required for profiling activities:\n\n### Roles\n\nIAM roles include permissions and can be assigned to users,\ngroups, and service accounts. The following table lists the roles for\nProfiler:\n\nTo learn how to assign Identity and Access Management roles to a user or service account, see\n[Managing Policies](/iam/docs/managing-policies)."]]