GKE Hub 审核日志记录

本文档介绍 GKE Hub 的审核日志记录。Google Cloud 服务会写入审核日志,这些日志用于记录 Google Cloud 资源中的管理活动和访问情况。如需了解详情,请参阅 Cloud Audit Logs 概览

本页面的上次生成时间是世界协调时间 (UTC) 2024-05-23 18:52:15。

服务名称

GKE Hub 审核日志使用服务名称 gkehub.googleapis.com

方法(按权限类型)

检查 DATA_READDATA_WRITEADMIN_READ 权限类型的方法是数据访问审核日志。检查 ADMIN_WRITE 权限类型的方法是管理员活动审核日志。

权限类型 方法
ADMIN_READ GetIamPolicy
google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest
google.cloud.gkehub.v1.GkeHub.GetFeature
google.cloud.gkehub.v1.GkeHub.GetFleet
google.cloud.gkehub.v1.GkeHub.GetMembership
google.cloud.gkehub.v1.GkeHub.GetMembershipBinding
google.cloud.gkehub.v1.GkeHub.GetScope
google.cloud.gkehub.v1.GkeHub.GetScopeNamespace
google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding
google.cloud.gkehub.v1.GkeHub.ListBoundMemberships
google.cloud.gkehub.v1.GkeHub.ListFeatures
google.cloud.gkehub.v1.GkeHub.ListMembershipBindings
google.cloud.gkehub.v1.GkeHub.ListMemberships
google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces
google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings
google.cloud.gkehub.v1.GkeHub.ListScopes
google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest
google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML
google.cloud.gkehub.v1alpha.GkeHub.GetFeature
google.cloud.gkehub.v1alpha.GkeHub.GetFleet
google.cloud.gkehub.v1alpha.GkeHub.GetMembership
google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding
google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.GetScope
google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace
google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships
google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships
google.cloud.gkehub.v1alpha.GkeHub.ListFeatures
google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings
google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings
google.cloud.gkehub.v1alpha.GkeHub.ListMemberships
google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces
google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings
google.cloud.gkehub.v1alpha.GkeHub.ListScopes
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures
google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest
google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML
google.cloud.gkehub.v1beta.GkeHub.GetFeature
google.cloud.gkehub.v1beta.GkeHub.GetFleet
google.cloud.gkehub.v1beta.GkeHub.GetMembership
google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding
google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.GetScope
google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace
google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships
google.cloud.gkehub.v1beta.GkeHub.ListFeatures
google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings
google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings
google.cloud.gkehub.v1beta.GkeHub.ListMemberships
google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces
google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings
google.cloud.gkehub.v1beta.GkeHub.ListScopes
google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest
google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest
google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership
google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships
google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity
ADMIN_WRITE SetIamPolicy
google.cloud.gkehub.v1.GkeHub.CreateFeature
google.cloud.gkehub.v1.GkeHub.CreateFleet
google.cloud.gkehub.v1.GkeHub.CreateMembership
google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding
google.cloud.gkehub.v1.GkeHub.CreateScope
google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace
google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding
google.cloud.gkehub.v1.GkeHub.DeleteFeature
google.cloud.gkehub.v1.GkeHub.DeleteFleet
google.cloud.gkehub.v1.GkeHub.DeleteMembership
google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding
google.cloud.gkehub.v1.GkeHub.DeleteScope
google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace
google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding
google.cloud.gkehub.v1.GkeHub.UpdateFeature
google.cloud.gkehub.v1.GkeHub.UpdateFleet
google.cloud.gkehub.v1.GkeHub.UpdateMembership
google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding
google.cloud.gkehub.v1.GkeHub.UpdateScope
google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace
google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.CreateFeature
google.cloud.gkehub.v1alpha.GkeHub.CreateFleet
google.cloud.gkehub.v1alpha.GkeHub.CreateMembership
google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding
google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.CreateScope
google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace
google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature
google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet
google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership
google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding
google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.DeleteScope
google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace
google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature
google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet
google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership
google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding
google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.UpdateScope
google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace
google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding
google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature
google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature
google.cloud.gkehub.v1beta.GkeHub.CreateFeature
google.cloud.gkehub.v1beta.GkeHub.CreateFleet
google.cloud.gkehub.v1beta.GkeHub.CreateMembership
google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding
google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.CreateScope
google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace
google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.DeleteFeature
google.cloud.gkehub.v1beta.GkeHub.DeleteFleet
google.cloud.gkehub.v1beta.GkeHub.DeleteMembership
google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding
google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.DeleteScope
google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace
google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.UpdateFeature
google.cloud.gkehub.v1beta.GkeHub.UpdateFleet
google.cloud.gkehub.v1beta.GkeHub.UpdateMembership
google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding
google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding
google.cloud.gkehub.v1beta.GkeHub.UpdateScope
google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace
google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding
google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership
google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership
google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership
google.longrunning.Operations.CancelOperation
google.longrunning.Operations.DeleteOperation

每个 API 接口的审核日志

如需了解评估哪些权限以及如何针对每种方法进行评估,请参阅 GKE Hub 的 Identity and Access Management 文档。

google.cloud.gkehub.v1.GkeHub

与属于 google.cloud.gkehub.v1.GkeHub 的方法关联的审核日志的详细信息。

google.cloud.gkehub.v1.GkeHub.CreateFeature

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateFeature"

google.cloud.gkehub.v1.GkeHub.CreateFleet

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateFleet"

google.cloud.gkehub.v1.GkeHub.CreateMembership

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateMembership"

google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateMembershipBinding"

google.cloud.gkehub.v1.GkeHub.CreateScope

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateScope"

google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateScopeNamespace"

google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.CreateScopeRBACRoleBinding"

google.cloud.gkehub.v1.GkeHub.DeleteFeature

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteFeature"

google.cloud.gkehub.v1.GkeHub.DeleteFleet

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteFleet"

google.cloud.gkehub.v1.GkeHub.DeleteMembership

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteMembership"

google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteMembershipBinding"

google.cloud.gkehub.v1.GkeHub.DeleteScope

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteScope"

google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteScopeNamespace"

google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.DeleteScopeRBACRoleBinding"

google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest

  • 方法:google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.generateConnectManifest - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GenerateConnectManifest"

google.cloud.gkehub.v1.GkeHub.GetFeature

  • 方法:google.cloud.gkehub.v1.GkeHub.GetFeature
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetFeature"

google.cloud.gkehub.v1.GkeHub.GetFleet

  • 方法:google.cloud.gkehub.v1.GkeHub.GetFleet
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.fleet.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetFleet"

google.cloud.gkehub.v1.GkeHub.GetMembership

  • 方法:google.cloud.gkehub.v1.GkeHub.GetMembership
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetMembership"

google.cloud.gkehub.v1.GkeHub.GetMembershipBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.GetMembershipBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.membershipbindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetMembershipBinding"

google.cloud.gkehub.v1.GkeHub.GetScope

  • 方法:google.cloud.gkehub.v1.GkeHub.GetScope
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetScope"

google.cloud.gkehub.v1.GkeHub.GetScopeNamespace

  • 方法:google.cloud.gkehub.v1.GkeHub.GetScopeNamespace
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.namespaces.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetScopeNamespace"

google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.GetScopeRBACRoleBinding"

google.cloud.gkehub.v1.GkeHub.ListBoundMemberships

  • 方法:google.cloud.gkehub.v1.GkeHub.ListBoundMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.listBoundMemberships - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListBoundMemberships"

google.cloud.gkehub.v1.GkeHub.ListFeatures

  • 方法:google.cloud.gkehub.v1.GkeHub.ListFeatures
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListFeatures"

google.cloud.gkehub.v1.GkeHub.ListMembershipBindings

  • 方法:google.cloud.gkehub.v1.GkeHub.ListMembershipBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.membershipbindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListMembershipBindings"

google.cloud.gkehub.v1.GkeHub.ListMemberships

  • 方法:google.cloud.gkehub.v1.GkeHub.ListMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListMemberships"

google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces

  • 方法:google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.namespaces.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListScopeNamespaces"

google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings

  • 方法:google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListScopeRBACRoleBindings"

google.cloud.gkehub.v1.GkeHub.ListScopes

  • 方法:google.cloud.gkehub.v1.GkeHub.ListScopes
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.ListScopes"

google.cloud.gkehub.v1.GkeHub.UpdateFeature

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateFeature"

google.cloud.gkehub.v1.GkeHub.UpdateFleet

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateFleet"

google.cloud.gkehub.v1.GkeHub.UpdateMembership

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateMembership"

google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateMembershipBinding"

google.cloud.gkehub.v1.GkeHub.UpdateScope

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateScope"

google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateScopeNamespace"

google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1.GkeHub.UpdateScopeRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub

与属于 google.cloud.gkehub.v1alpha.GkeHub 的方法关联的审核日志的详细信息。

google.cloud.gkehub.v1alpha.GkeHub.CreateFeature

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateFeature"

google.cloud.gkehub.v1alpha.GkeHub.CreateFleet

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateFleet"

google.cloud.gkehub.v1alpha.GkeHub.CreateMembership

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateMembership"

google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipBinding"

google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateMembershipRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.CreateScope

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateScope"

google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateScopeNamespace"

google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.CreateScopeRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteFeature"

google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteFleet"

google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteMembership"

google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipBinding"

google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteMembershipRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.DeleteScope

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteScope"

google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeNamespace"

google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.DeleteScopeRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.generateConnectManifest - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GenerateConnectManifest"

google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GenerateMembershipRBACRoleBindingYAML"

google.cloud.gkehub.v1alpha.GkeHub.GetFeature

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetFeature
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetFeature"

google.cloud.gkehub.v1alpha.GkeHub.GetFleet

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetFleet
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.fleet.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetFleet"

google.cloud.gkehub.v1alpha.GkeHub.GetMembership

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetMembership
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetMembership"

google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.membershipbindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetMembershipBinding"

google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetMembershipRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.GetScope

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetScope
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetScope"

google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.namespaces.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetScopeNamespace"

google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.GetScopeRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListAdminClusterMemberships"

google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.listBoundMemberships - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListBoundMemberships"

google.cloud.gkehub.v1alpha.GkeHub.ListFeatures

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListFeatures
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListFeatures"

google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.membershipbindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListMembershipBindings"

google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListMembershipRBACRoleBindings"

google.cloud.gkehub.v1alpha.GkeHub.ListMemberships

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListMemberships"

google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.namespaces.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListScopeNamespaces"

google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListScopeRBACRoleBindings"

google.cloud.gkehub.v1alpha.GkeHub.ListScopes

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ListScopes
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ListScopes"

google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateFeature"

google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateFleet"

google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateMembership"

google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipBinding"

google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateMembershipRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.UpdateScope

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateScope"

google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeNamespace"

google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.UpdateScopeRBACRoleBinding"

google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership

  • 方法:google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha.GkeHub.ValidateCreateMembership"

google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService

与属于 google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService 的方法关联的审核日志的详细信息。

google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature

  • 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.CreateFeature"

google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature

  • 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.DeleteFeature"

google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature

  • 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.GetFeature"

google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures

  • 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.ListFeatures"

google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature

  • 方法:google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1alpha1.GkeHubDomainFeatureService.UpdateFeature"

google.cloud.gkehub.v1beta.GkeHub

与属于 google.cloud.gkehub.v1beta.GkeHub 的方法关联的审核日志的详细信息。

google.cloud.gkehub.v1beta.GkeHub.CreateFeature

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateFeature"

google.cloud.gkehub.v1beta.GkeHub.CreateFleet

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateFleet"

google.cloud.gkehub.v1beta.GkeHub.CreateMembership

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateMembership"

google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateMembershipBinding"

google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateMembershipRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.CreateScope

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateScope"

google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateScopeNamespace"

google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.CreateScopeRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.DeleteFeature

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteFeature"

google.cloud.gkehub.v1beta.GkeHub.DeleteFleet

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteFleet"

google.cloud.gkehub.v1beta.GkeHub.DeleteMembership

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteMembership"

google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipBinding"

google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteMembershipRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.DeleteScope

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteScope"

google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteScopeNamespace"

google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.DeleteScopeRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.generateConnectManifest - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GenerateConnectManifest"

google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GenerateMembershipRBACRoleBindingYAML"

google.cloud.gkehub.v1beta.GkeHub.GetFeature

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetFeature
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetFeature"

google.cloud.gkehub.v1beta.GkeHub.GetFleet

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetFleet
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.fleet.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetFleet"

google.cloud.gkehub.v1beta.GkeHub.GetMembership

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetMembership
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetMembership"

google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.membershipbindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetMembershipBinding"

google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetMembershipRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.GetScope

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetScope
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetScope"

google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.namespaces.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetScopeNamespace"

google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.GetScopeRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.listBoundMemberships - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListBoundMemberships"

google.cloud.gkehub.v1beta.GkeHub.ListFeatures

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListFeatures
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListFeatures"

google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.membershipbindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListMembershipBindings"

google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListMembershipRBACRoleBindings"

google.cloud.gkehub.v1beta.GkeHub.ListMemberships

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListMemberships"

google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.namespaces.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListScopeNamespaces"

google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.rbacrolebindings.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListScopeRBACRoleBindings"

google.cloud.gkehub.v1beta.GkeHub.ListScopes

  • 方法:google.cloud.gkehub.v1beta.GkeHub.ListScopes
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.scopes.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.ListScopes"

google.cloud.gkehub.v1beta.GkeHub.UpdateFeature

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateFeature
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateFeature"

google.cloud.gkehub.v1beta.GkeHub.UpdateFleet

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateFleet
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.fleet.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateFleet"

google.cloud.gkehub.v1beta.GkeHub.UpdateMembership

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateMembership"

google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.membershipbindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipBinding"

google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateMembershipRBACRoleBinding"

google.cloud.gkehub.v1beta.GkeHub.UpdateScope

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateScope
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.scopes.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateScope"

google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.namespaces.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateScopeNamespace"

google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding

  • 方法:google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.rbacrolebindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta.GkeHub.UpdateScopeRBACRoleBinding"

google.cloud.gkehub.v1beta1.GkeHubMembershipService

与属于 google.cloud.gkehub.v1beta1.GkeHubMembershipService 的方法关联的审核日志的详细信息。

google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.CreateMembership"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.DeleteMembership"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.generateConnectManifest - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateConnectManifest"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.generateConnectManifest - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.GenerateExclusivityManifest"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.get - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.GetMembership"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.list - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.ListMemberships"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.memberships.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输: 长时间运行的操作
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.UpdateMembership"

google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity

  • 方法:google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.memberships.generateConnectManifest - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.cloud.gkehub.v1beta1.GkeHubMembershipService.ValidateExclusivity"

google.iam.v1.IAMPolicy

与属于 google.iam.v1.IAMPolicy 的方法关联的审核日志的详细信息。

GetIamPolicy

  • 方法:GetIamPolicy
  • 审核日志类型:数据访问
  • 权限:
    • gkehub.features.getIamPolicy - ADMIN_READ
    • gkehub.memberships.getIamPolicy - ADMIN_READ
    • gkehub.scopes.getIamPolicy - ADMIN_READ
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="GetIamPolicy"

SetIamPolicy

  • 方法:SetIamPolicy
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.features.setIamPolicy - ADMIN_WRITE
    • gkehub.memberships.setIamPolicy - ADMIN_WRITE
    • gkehub.scopes.setIamPolicy - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="SetIamPolicy"

google.longrunning.Operations

与属于 google.longrunning.Operations 的方法关联的审核日志的详细信息。

google.longrunning.Operations.CancelOperation

  • 方法:google.longrunning.Operations.CancelOperation
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.operations.cancel - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.longrunning.Operations.CancelOperation"

google.longrunning.Operations.DeleteOperation

  • 方法:google.longrunning.Operations.DeleteOperation
  • 审核日志类型:管理员活动
  • 权限:
    • gkehub.operations.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式传输:否。
  • 此方法的过滤条件: protoPayload.methodName="google.longrunning.Operations.DeleteOperation"

Kubernetes 审核日志记录

除了 Cloud Audit Logs 之外,通过 Kubernetes 审核日志记录,管理员可对已注册集群中发生的事件执行保留、查询、处理和提醒操作。管理员可以使用日志中记录的信息执行取证分析、实时提醒,或者对一组集群的使用方式和用户进行编目。

Connect Agent 会与已注册集群中运行的本地 API 服务器通信,并且每个集群都有自己的一组 Kubernetes 审核日志。用户通过 Connect 在界面中执行的所有操作均由该集群记录。