Integration Connectors 的 IAM 角色和權限
預先定義的角色可精細控管特定 Google Cloud 資源的存取權。這些角色是由 Google 建立及維護。Google 會視需要自動更新角色權限,例如 Google Cloud 加入新功能或服務時。
下表列出 Integration Connectors 的所有預先定義 IAM 角色:Role | Permissions |
---|---|
Connector Admin( Full access to all resources of Connectors Service. |
|
Custom Connectors Admin( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Admin access to Custom Connector resources |
|
Custom Connector Viewer( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Read-only access to Custom Connector & Custom Connector Version resources. |
|
Connectors Endpoint Attachment Admin( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Admin access to Connectors Endpoint Attachment resources. |
|
Connectors Endpoint Attachment Viewer( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Read-only access to Connectors Endpoint Attachment resources |
|
Connectors Event Subscriptions Admin( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Admin access to Connectors Subscription resources |
|
Connectors Event Subscriptions Viewer( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Read-only access to Event Subscription resources. |
|
Connector Invoker( Full Access to invoke all operations on Connections. |
|
Connector Event Listener( Full Access to listen events by connections. |
|
Connectors Managed Zone Admin( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Admin access to Connectors Managed Zone resources |
|
Connectors Managed Zone Viewer( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Read-only access to Connectors Managed Zone resources. |
|
Connectors Platform Service Agent( Grants Connectors Platform service account to manage customer resources |
|
Connectors Viewer( Read-only access to Connectors all resources. |
|
如要進一步瞭解預先定義的角色,請參閱「角色和權限」。如需選擇最合適預先定義角色的說明,請參閱「選擇預先定義的角色」。