Funções e autorizações da IAM para Integration Connectors
As funções predefinidas dão acesso detalhado a recursos específicos do Google Cloud. Estas funções são criadas e mantidas pela Google. A Google atualiza automaticamente as respetivas autorizações conforme necessário, por exemplo, quando o Google Cloud adiciona novas funcionalidades ou serviços.
A tabela seguinte apresenta todas as funções de IAM predefinidas para os Integration Connectors:Role | Permissions |
---|---|
Connector Admin( Full access to all resources of Connectors Service. |
|
Custom Connectors Admin( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Admin access to Custom Connector resources |
|
Custom Connector Viewer( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Read-only access to Custom Connector & Custom Connector Version resources. |
|
Connectors Endpoint Attachment Admin( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Admin access to Connectors Endpoint Attachment resources. |
|
Connectors Endpoint Attachment Viewer( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Read-only access to Connectors Endpoint Attachment resources |
|
Connectors Event Subscriptions Admin( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Admin access to Connectors Subscription resources |
|
Connectors Event Subscriptions Viewer( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Read-only access to Event Subscription resources. |
|
Connector Invoker( Full Access to invoke all operations on Connections. |
|
Connector Event Listener( Full Access to listen events by connections. |
|
Connectors Managed Zone Admin( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Admin access to Connectors Managed Zone resources |
|
Connectors Managed Zone Viewer( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Read-only access to Connectors Managed Zone resources. |
|
Connectors Platform Service Agent( Grants Connectors Platform service account to manage customer resources |
|
Connectors Viewer( Read-only access to Connectors all resources. |
|
Para mais informações sobre as funções predefinidas, consulte o artigo Funções e autorizações. Para obter ajuda na escolha das funções predefinidas mais adequadas, consulte o artigo Escolha funções predefinidas.