Integration Connectors 的 IAM 角色和权限
预定义角色可提供对特定 Google Cloud 资源的精细访问权限。 这些角色由 Google 创建和维护。Google 会根据需要自动更新其权限,例如 Google Cloud 添加新功能或服务时。
下表列出了 Integration Connectors 的所有预定义 IAM 角色:Role | Permissions |
---|---|
Connector Admin( Full access to all resources of Connectors Service. |
|
Custom Connectors Admin( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Admin access to Custom Connector resources |
|
Custom Connector Viewer( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Read-only access to Custom Connector & Custom Connector Version resources. |
|
Connectors Endpoint Attachment Admin( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Admin access to Connectors Endpoint Attachment resources. |
|
Connectors Endpoint Attachment Viewer( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Read-only access to Connectors Endpoint Attachment resources |
|
Connectors Event Subscriptions Admin( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Admin access to Connectors Subscription resources |
|
Connectors Event Subscriptions Viewer( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Read-only access to Event Subscription resources. |
|
Connector Invoker( Full Access to invoke all operations on Connections. |
|
Connector Event Listener( Full Access to listen events by connections. |
|
Connectors Managed Zone Admin( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Admin access to Connectors Managed Zone resources |
|
Connectors Managed Zone Viewer( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Read-only access to Connectors Managed Zone resources. |
|
Connectors Platform Service Agent( Grants Connectors Platform service account to manage customer resources |
|
Connectors Viewer( Read-only access to Connectors all resources. |
|
如需详细了解预定义角色,请参阅角色和权限。如需有关选择最合适的预定义角色的帮助,请参阅选择预定义角色。