IAM-Rollen und -Berechtigungen für Integration Connectors
Vordefinierte Rollen ermöglichen einen genau definierten Zugriff auf bestimmte Google Cloud-Ressourcen. Vordefinierte Rollen werden von Google erstellt und verwaltet. Google aktualisiert seine Berechtigungen bei Bedarf automatisch, z. B. wenn Google Cloud neue Funktionen oder Dienste hinzufügt.
In der folgenden Tabelle sind alle vordefinierten IAM-Rollen für Integration Connectors aufgeführt:Role | Permissions |
---|---|
Connector Admin( Full access to all resources of Connectors Service. |
|
Custom Connectors Admin( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Admin access to Custom Connector resources |
|
Custom Connector Viewer( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Read-only access to Custom Connector & Custom Connector Version resources. |
|
Connectors Endpoint Attachment Admin( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Admin access to Connectors Endpoint Attachment resources. |
|
Connectors Endpoint Attachment Viewer( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Read-only access to Connectors Endpoint Attachment resources |
|
Connectors Event Subscriptions Admin( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Admin access to Connectors Subscription resources |
|
Connectors Event Subscriptions Viewer( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Read-only access to Event Subscription resources. |
|
Connector Invoker( Full Access to invoke all operations on Connections. |
|
Connector Event Listener( Full Access to listen events by connections. |
|
Connectors Managed Zone Admin( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Admin access to Connectors Managed Zone resources |
|
Connectors Managed Zone Viewer( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Read-only access to Connectors Managed Zone resources. |
|
Connectors Platform Service Agent( Grants Connectors Platform service account to manage customer resources |
|
Connectors Viewer( Read-only access to Connectors all resources. |
|
Weitere Informationen zu vordefinierten Rollen finden Sie unter Rollen und Berechtigungen. Hilfe bei der Auswahl der am besten geeigneten vordefinierten Rollen finden Sie unter Vordefinierte Rollen auswählen.