서비스 계정은 인프라 관리자 배포, 버전, IAM 정책을 보는 데 필요하지 않습니다. 인프라 관리자를 보려면 사용자, 그룹 또는 서비스 계정에 액세스 권한을 부여하세요.
Terraform 구성에 정의된 Google Cloud 리소스를 배포하거나 보려면 이러한 리소스와 관련된 서비스 계정 권한을 부여해야 합니다. 이러한 권한은 이 페이지에 나열된 인프라 관리자 권한 외에 추가로 부여됩니다. 모든 역할과 역할에 포함된 권한의 목록은 Identity and Access Management 기본 및 사전 정의된 역할 참조를 참고하세요.
사전 정의된 인프라 관리자 역할
IAM은 특정 Google Cloud 리소스에 대한 액세스 권한을 부여하고 다른 리소스에 승인되지 않은 액세스를 방지하는 사전 정의된 역할을 제공합니다.
Infra Manager API를 사용 설정하면 Infra Manager 서비스 계정이 프로젝트에 자동으로 생성되고 프로젝트의 리소스에 대해 이 역할이 부여됩니다. 인프라 관리자 서비스 계정은 배포 및 버전 생성, 관리, 삭제 시 작업을 수행하는 데 필요한 경우에만 이 역할을 사용합니다.
[[["이해하기 쉬움","easyToUnderstand","thumb-up"],["문제가 해결됨","solvedMyProblem","thumb-up"],["기타","otherUp","thumb-up"]],[["이해하기 어려움","hardToUnderstand","thumb-down"],["잘못된 정보 또는 샘플 코드","incorrectInformationOrSampleCode","thumb-down"],["필요한 정보/샘플이 없음","missingTheInformationSamplesINeed","thumb-down"],["번역 문제","translationIssue","thumb-down"],["기타","otherDown","thumb-down"]],["최종 업데이트: 2025-09-05(UTC)"],[[["\u003cp\u003eInfra Manager utilizes Identity and Access Management (IAM) to manage access to its service, requiring specific IAM roles to be assigned to service accounts for deploying resources.\u003c/p\u003e\n"],["\u003cp\u003eViewing Infra Manager deployments, revisions, and IAM policies does not require a service account, but access must be granted to the user, group, or service account.\u003c/p\u003e\n"],["\u003cp\u003eDeploying or viewing Google Cloud resources in a Terraform configuration requires permissions specific to those resources, in addition to Infra Manager permissions.\u003c/p\u003e\n"],["\u003cp\u003ePredefined Infra Manager roles, such as Admin, Service Agent, Service Account, and Viewer, grant specific permissions to manage and interact with Infra Manager resources, and it is recommended to use these instead of basic roles whenever possible for security reasons.\u003c/p\u003e\n"],["\u003cp\u003eThe basic roles of Viewer and Owner include the Infra Manager Viewer and Admin roles, respectively, however predefined roles are recommended for security.\u003c/p\u003e\n"]]],[],null,["# Access control with IAM\n\nThis page describes Infrastructure Manager roles and permissions.\n\nInfra Manager uses [Identity and Access Management (IAM)](/iam) to control\naccess to the service. To grant access to deploy resources with\nInfra Manager, assign the needed Infra Manager\n[IAM roles](/iam/docs/understanding-roles#role_types)\nto the [service account](/infrastructure-manager/docs/configure-service-account)\nthat you use to call Infra Manager. For details about how to grant\npermissions to service accounts, see\n[Manage access to service accounts](/iam/docs/manage-access-service-accounts).\n\nA service account is not required to view Infra Manager deployments,\nrevisions, and IAM policies. To view Infra Manager, grant access\nto the user, group, or service account.\n\nTo deploy or view the Google Cloud resources defined in the Terraform\nconfiguration, you need to grant the service account permissions that are\nspecific to these resources. These permissions are in addition to the\nInfra Manager permissions listed on this page. For a list of all\nroles and the permissions they contain, see\n[Identity and Access Management basic and predefined roles reference](/iam/docs/understanding-roles).\n\nPredefined Infra Manager roles\n------------------------------\n\nIAM provides\n[predefined roles](/iam/docs/understanding-roles#predefined_roles) that grant\naccess to specific Google Cloud resources and prevent unauthorized access\nto other resources.\n\nThe following table lists the Infra Manager IAM roles and\nthe permissions that they include:\n\nIn addition to the Infra Manager predefined roles, the\n[basic](/iam/docs/understanding-roles#basic) Viewer and Owner roles also\ninclude permissions related to Infra Manager.\nHowever, we recommend that you grant predefined roles where possible to comply with the\n[security principle of least privilege](/iam/docs/using-iam-securely#least_privilege).\n\nThe following table lists the basic roles and the Infra Manager\nIAM roles\nthat they include.\n\nPermissions\n-----------\n\nPermissions that the caller must have to call each method is listed in the\n[REST API reference](/infrastructure-manager/docs/reference/rest).\n\nWhat's next\n-----------\n\n- Learn about [IAM](/iam/docs).\n- Learn more about [using conditions in IAM](/deploy/docs/securing/iam#about_iam_conditions)\n- Find out more about [Infra Manager service accounts](/infrastructure-manager/docs/configure-service-account)."]]