本文档介绍 GKE Hub 的审核日志记录。Google Cloud 服务会写入审核日志,这些日志用于记录 Google Cloud 资源中的管理活动和访问情况。如需了解详情,请参阅 Cloud Audit Logs 概览。
本页面的上次生成时间是世界协调时间 (UTC) 2024-05-23 18:52:15。
服务名称
GKE Hub 审核日志使用服务名称 gkehub.googleapis.com
。
方法(按权限类型)
检查 DATA_READ
、DATA_WRITE
和 ADMIN_READ
权限类型的方法是数据访问审核日志。检查 ADMIN_WRITE
权限类型的方法是管理员活动审核日志。
权限类型 | 方法 |
---|---|
ADMIN_READ | GetIamPolicy google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest google.cloud.gkehub.v1.GkeHub.GetFeature google.cloud.gkehub.v1.GkeHub.GetFleet google.cloud.gkehub.v1.GkeHub.GetMembership google.cloud.gkehub.v1.GkeHub.GetMembershipBinding google.cloud.gkehub.v1.GkeHub.GetScope google.cloud.gkehub.v1.GkeHub.GetScopeNamespace google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding google.cloud.gkehub.v1.GkeHub.ListBoundMemberships google.cloud.gkehub.v1.GkeHub.ListFeatures google.cloud.gkehub.v1.GkeHub.ListMembershipBindings google.cloud.gkehub.v1.GkeHub.ListMemberships google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings google.cloud.gkehub.v1.GkeHub.ListScopes google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML google.cloud.gkehub.v1alpha.GkeHub.GetFeature google.cloud.gkehub.v1alpha.GkeHub.GetFleet google.cloud.gkehub.v1alpha.GkeHub.GetMembership google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.GetScope google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships google.cloud.gkehub.v1alpha.GkeHub.ListFeatures google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings google.cloud.gkehub.v1alpha.GkeHub.ListMemberships google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings google.cloud.gkehub.v1alpha.GkeHub.ListScopes google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML google.cloud.gkehub.v1beta.GkeHub.GetFeature google.cloud.gkehub.v1beta.GkeHub.GetFleet google.cloud.gkehub.v1beta.GkeHub.GetMembership google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.GetScope google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships google.cloud.gkehub.v1beta.GkeHub.ListFeatures google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings google.cloud.gkehub.v1beta.GkeHub.ListMemberships google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings google.cloud.gkehub.v1beta.GkeHub.ListScopes google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity |
ADMIN_WRITE | SetIamPolicy google.cloud.gkehub.v1.GkeHub.CreateFeature google.cloud.gkehub.v1.GkeHub.CreateFleet google.cloud.gkehub.v1.GkeHub.CreateMembership google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding google.cloud.gkehub.v1.GkeHub.CreateScope google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding google.cloud.gkehub.v1.GkeHub.DeleteFeature google.cloud.gkehub.v1.GkeHub.DeleteFleet google.cloud.gkehub.v1.GkeHub.DeleteMembership google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding google.cloud.gkehub.v1.GkeHub.DeleteScope google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding google.cloud.gkehub.v1.GkeHub.UpdateFeature google.cloud.gkehub.v1.GkeHub.UpdateFleet google.cloud.gkehub.v1.GkeHub.UpdateMembership google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding google.cloud.gkehub.v1.GkeHub.UpdateScope google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.CreateFeature google.cloud.gkehub.v1alpha.GkeHub.CreateFleet google.cloud.gkehub.v1alpha.GkeHub.CreateMembership google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.CreateScope google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.DeleteScope google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.UpdateScope google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature google.cloud.gkehub.v1beta.GkeHub.CreateFeature google.cloud.gkehub.v1beta.GkeHub.CreateFleet google.cloud.gkehub.v1beta.GkeHub.CreateMembership google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.CreateScope google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.DeleteFeature google.cloud.gkehub.v1beta.GkeHub.DeleteFleet google.cloud.gkehub.v1beta.GkeHub.DeleteMembership google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.DeleteScope google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.UpdateFeature google.cloud.gkehub.v1beta.GkeHub.UpdateFleet google.cloud.gkehub.v1beta.GkeHub.UpdateMembership google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding google.cloud.gkehub.v1beta.GkeHub.UpdateScope google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership google.longrunning.Operations.CancelOperation google.longrunning.Operations.DeleteOperation |
每个 API 接口的审核日志
如需了解评估哪些权限以及如何针对每种方法进行评估,请参阅 GKE Hub 的 Identity and Access Management 文档。
google.cloud.gkehub.v1.GkeHub
与属于 google.cloud.gkehub.v1.GkeHub
的方法关联的审核日志的详细信息。
google.cloud.gkehub.v1.GkeHub.CreateFeature
- 方法:google.cloud.gkehub.v1.GkeHub.CreateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateFeature"
google.cloud.gkehub.v1.GkeHub.CreateFleet
- 方法:google.cloud.gkehub.v1.GkeHub.CreateFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateFleet"
google.cloud.gkehub.v1.GkeHub.CreateMembership
- 方法:google.cloud.gkehub.v1.GkeHub.CreateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateMembership"
google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding
- 方法:google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding"
google.cloud.gkehub.v1.GkeHub.CreateScope
- 方法:google.cloud.gkehub.v1.GkeHub.CreateScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateScope"
google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace
- 方法:google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace"
google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding"
google.cloud.gkehub.v1.GkeHub.DeleteFeature
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteFeature"
google.cloud.gkehub.v1.GkeHub.DeleteFleet
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteFleet"
google.cloud.gkehub.v1.GkeHub.DeleteMembership
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteMembership"
google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding"
google.cloud.gkehub.v1.GkeHub.DeleteScope
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteScope"
google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace"
google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding"
google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest
- 方法:google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.generateConnectManifest - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest"
google.cloud.gkehub.v1.GkeHub.GetFeature
- 方法:google.cloud.gkehub.v1.GkeHub.GetFeature
- 审核日志类型:数据访问
- 权限:
gkehub.features.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetFeature"
google.cloud.gkehub.v1.GkeHub.GetFleet
- 方法:google.cloud.gkehub.v1.GkeHub.GetFleet
- 审核日志类型:数据访问
- 权限:
gkehub.fleet.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetFleet"
google.cloud.gkehub.v1.GkeHub.GetMembership
- 方法:google.cloud.gkehub.v1.GkeHub.GetMembership
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetMembership"
google.cloud.gkehub.v1.GkeHub.GetMembershipBinding
- 方法:google.cloud.gkehub.v1.GkeHub.GetMembershipBinding
- 审核日志类型:数据访问
- 权限:
gkehub.membershipbindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetMembershipBinding"
google.cloud.gkehub.v1.GkeHub.GetScope
- 方法:google.cloud.gkehub.v1.GkeHub.GetScope
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetScope"
google.cloud.gkehub.v1.GkeHub.GetScopeNamespace
- 方法:google.cloud.gkehub.v1.GkeHub.GetScopeNamespace
- 审核日志类型:数据访问
- 权限:
gkehub.namespaces.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetScopeNamespace"
google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding"
google.cloud.gkehub.v1.GkeHub.ListBoundMemberships
- 方法:google.cloud.gkehub.v1.GkeHub.ListBoundMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.listBoundMemberships - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListBoundMemberships"
google.cloud.gkehub.v1.GkeHub.ListFeatures
- 方法:google.cloud.gkehub.v1.GkeHub.ListFeatures
- 审核日志类型:数据访问
- 权限:
gkehub.features.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListFeatures"
google.cloud.gkehub.v1.GkeHub.ListMembershipBindings
- 方法:google.cloud.gkehub.v1.GkeHub.ListMembershipBindings
- 审核日志类型:数据访问
- 权限:
gkehub.membershipbindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListMembershipBindings"
google.cloud.gkehub.v1.GkeHub.ListMemberships
- 方法:google.cloud.gkehub.v1.GkeHub.ListMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListMemberships"
google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces
- 方法:google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces
- 审核日志类型:数据访问
- 权限:
gkehub.namespaces.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces"
google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings
- 方法:google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings"
google.cloud.gkehub.v1.GkeHub.ListScopes
- 方法:google.cloud.gkehub.v1.GkeHub.ListScopes
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListScopes"
google.cloud.gkehub.v1.GkeHub.UpdateFeature
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateFeature"
google.cloud.gkehub.v1.GkeHub.UpdateFleet
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateFleet"
google.cloud.gkehub.v1.GkeHub.UpdateMembership
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateMembership"
google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding"
google.cloud.gkehub.v1.GkeHub.UpdateScope
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateScope"
google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace"
google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub
与属于 google.cloud.gkehub.v1alpha.GkeHub
的方法关联的审核日志的详细信息。
google.cloud.gkehub.v1alpha.GkeHub.CreateFeature
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateFeature"
google.cloud.gkehub.v1alpha.GkeHub.CreateFleet
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateFleet"
google.cloud.gkehub.v1alpha.GkeHub.CreateMembership
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateMembership"
google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding"
google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.CreateScope
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateScope"
google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace"
google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature"
google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet"
google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership"
google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding"
google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.DeleteScope
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteScope"
google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace"
google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.generateConnectManifest - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest"
google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML"
google.cloud.gkehub.v1alpha.GkeHub.GetFeature
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetFeature
- 审核日志类型:数据访问
- 权限:
gkehub.features.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetFeature"
google.cloud.gkehub.v1alpha.GkeHub.GetFleet
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetFleet
- 审核日志类型:数据访问
- 权限:
gkehub.fleet.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetFleet"
google.cloud.gkehub.v1alpha.GkeHub.GetMembership
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetMembership
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetMembership"
google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding
- 审核日志类型:数据访问
- 权限:
gkehub.membershipbindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding"
google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.GetScope
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetScope
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetScope"
google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace
- 审核日志类型:数据访问
- 权限:
gkehub.namespaces.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace"
google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships"
google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.listBoundMemberships - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships"
google.cloud.gkehub.v1alpha.GkeHub.ListFeatures
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListFeatures
- 审核日志类型:数据访问
- 权限:
gkehub.features.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListFeatures"
google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings
- 审核日志类型:数据访问
- 权限:
gkehub.membershipbindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings"
google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings"
google.cloud.gkehub.v1alpha.GkeHub.ListMemberships
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListMemberships"
google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces
- 审核日志类型:数据访问
- 权限:
gkehub.namespaces.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces"
google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings"
google.cloud.gkehub.v1alpha.GkeHub.ListScopes
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ListScopes
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListScopes"
google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature"
google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet"
google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership"
google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding"
google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.UpdateScope
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateScope"
google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace"
google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding"
google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership
- 方法:google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership"
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService
与属于 google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService
的方法关联的审核日志的详细信息。
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature
- 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature"
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature
- 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature"
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature
- 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature
- 审核日志类型:数据访问
- 权限:
gkehub.features.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature"
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures
- 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures
- 审核日志类型:数据访问
- 权限:
gkehub.features.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures"
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature
- 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature"
google.cloud.gkehub.v1beta.GkeHub
与属于 google.cloud.gkehub.v1beta.GkeHub
的方法关联的审核日志的详细信息。
google.cloud.gkehub.v1beta.GkeHub.CreateFeature
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateFeature"
google.cloud.gkehub.v1beta.GkeHub.CreateFleet
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateFleet"
google.cloud.gkehub.v1beta.GkeHub.CreateMembership
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateMembership"
google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding"
google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.CreateScope
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateScope"
google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace"
google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.DeleteFeature
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteFeature"
google.cloud.gkehub.v1beta.GkeHub.DeleteFleet
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteFleet"
google.cloud.gkehub.v1beta.GkeHub.DeleteMembership
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteMembership"
google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding"
google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.DeleteScope
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteScope"
google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace"
google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest
- 方法:google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.generateConnectManifest - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest"
google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML
- 方法:google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML"
google.cloud.gkehub.v1beta.GkeHub.GetFeature
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetFeature
- 审核日志类型:数据访问
- 权限:
gkehub.features.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetFeature"
google.cloud.gkehub.v1beta.GkeHub.GetFleet
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetFleet
- 审核日志类型:数据访问
- 权限:
gkehub.fleet.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetFleet"
google.cloud.gkehub.v1beta.GkeHub.GetMembership
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetMembership
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetMembership"
google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding
- 审核日志类型:数据访问
- 权限:
gkehub.membershipbindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding"
google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.GetScope
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetScope
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetScope"
google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace
- 审核日志类型:数据访问
- 权限:
gkehub.namespaces.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace"
google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.listBoundMemberships - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships"
google.cloud.gkehub.v1beta.GkeHub.ListFeatures
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListFeatures
- 审核日志类型:数据访问
- 权限:
gkehub.features.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListFeatures"
google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings
- 审核日志类型:数据访问
- 权限:
gkehub.membershipbindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings"
google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings"
google.cloud.gkehub.v1beta.GkeHub.ListMemberships
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListMemberships"
google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces
- 审核日志类型:数据访问
- 权限:
gkehub.namespaces.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces"
google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings
- 审核日志类型:数据访问
- 权限:
gkehub.rbacrolebindings.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings"
google.cloud.gkehub.v1beta.GkeHub.ListScopes
- 方法:google.cloud.gkehub.v1beta.GkeHub.ListScopes
- 审核日志类型:数据访问
- 权限:
gkehub.scopes.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListScopes"
google.cloud.gkehub.v1beta.GkeHub.UpdateFeature
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateFeature
- 审核日志类型:管理员活动
- 权限:
gkehub.features.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateFeature"
google.cloud.gkehub.v1beta.GkeHub.UpdateFleet
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateFleet
- 审核日志类型:管理员活动
- 权限:
gkehub.fleet.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateFleet"
google.cloud.gkehub.v1beta.GkeHub.UpdateMembership
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateMembership"
google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.membershipbindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding"
google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding"
google.cloud.gkehub.v1beta.GkeHub.UpdateScope
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateScope
- 审核日志类型:管理员活动
- 权限:
gkehub.scopes.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateScope"
google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace
- 审核日志类型:管理员活动
- 权限:
gkehub.namespaces.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace"
google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding
- 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding
- 审核日志类型:管理员活动
- 权限:
gkehub.rbacrolebindings.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding"
google.cloud.gkehub.v1beta1.GkeHubMembershipService
与属于 google.cloud.gkehub.v1beta1.GkeHubMembershipService
的方法关联的审核日志的详细信息。
google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.create - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.generateConnectManifest - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.generateConnectManifest - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.get - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.list - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership
- 审核日志类型:管理员活动
- 权限:
gkehub.memberships.update - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:
长时间运行的操作
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership"
google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity
- 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity
- 审核日志类型:数据访问
- 权限:
gkehub.memberships.generateConnectManifest - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity"
google.iam.v1.IAMPolicy
与属于 google.iam.v1.IAMPolicy
的方法关联的审核日志的详细信息。
GetIamPolicy
- 方法:GetIamPolicy
- 审核日志类型:数据访问
- 权限:
gkehub.features.getIamPolicy - ADMIN_READ
gkehub.memberships.getIamPolicy - ADMIN_READ
gkehub.scopes.getIamPolicy - ADMIN_READ
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="GetIamPolicy"
SetIamPolicy
- 方法:SetIamPolicy
- 审核日志类型:管理员活动
- 权限:
gkehub.features.setIamPolicy - ADMIN_WRITE
gkehub.memberships.setIamPolicy - ADMIN_WRITE
gkehub.scopes.setIamPolicy - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="SetIamPolicy"
google.longrunning.Operations
与属于 google.longrunning.Operations
的方法关联的审核日志的详细信息。
google.longrunning.Operations.CancelOperation
- 方法:google.longrunning.Operations.CancelOperation
- 审核日志类型:管理员活动
- 权限:
gkehub.operations.cancel - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.longrunning.Operations.CancelOperation"
google.longrunning.Operations.DeleteOperation
- 方法:google.longrunning.Operations.DeleteOperation
- 审核日志类型:管理员活动
- 权限:
gkehub.operations.delete - ADMIN_WRITE
- 方法是长时间运行的操作或流式传输:否。
- 此方法的过滤条件:
protoPayload.methodName="google.longrunning.Operations.DeleteOperation"
Kubernetes 审核日志记录
除了 Cloud Audit Logs 之外,通过 Kubernetes 审核日志记录,管理员可对已注册集群中发生的事件执行保留、查询、处理和提醒操作。管理员可以使用日志中记录的信息执行取证分析、实时提醒,或者对一组集群的使用方式和用户进行编目。
Connect Agent 会与已注册集群中运行的本地 API 服务器通信,并且每个集群都有自己的一组 Kubernetes 审核日志。用户通过 Connect 在界面中执行的所有操作均由该集群记录。