의견 보내기
IAM으로 액세스 제어
컬렉션을 사용해 정리하기
내 환경설정을 기준으로 콘텐츠를 저장하고 분류하세요.
ID 및 액세스 관리(IAM) 역할은 Microsoft Active Directory(관리형 Microsoft AD) API의 관리형 서비스 사용 방법을 규정합니다. 다음은 관리형 Microsoft AD에서 사용할 수 있는 각 IAM 역할과 이러한 역할에 사용할 수 있는 메서드 목록입니다.
또한 서비스 계정에는 관리형 Microsoft AD를 보고 사용 설정할 수 있는 servicemanagement.services.bind
권한이 있어야 합니다. 서비스 관리 역할 및 권한 에 대해 자세히 알아보세요.
Role
Permissions
Google Cloud Managed Identities Admin
(roles/ managedidentities.admin
)
Full access to Google Cloud Managed Identities Domains and related resources. Intended to be granted on a project-level.
managedidentities.*
managedidentities. backups. create
managedidentities. backups. delete
managedidentities.backups.get
managedidentities. backups. getIamPolicy
managedidentities.backups.list
managedidentities. backups. setIamPolicy
managedidentities. backups. update
managedidentities. domains. attachTrust
managedidentities. domains. checkMigrationPermission
managedidentities. domains. create
managedidentities. domains. createTagBinding
managedidentities. domains. delete
managedidentities. domains. deleteTagBinding
managedidentities. domains. detachTrust
managedidentities. domains. disableMigration
managedidentities. domains. domainJoinMachine
managedidentities. domains. enableMigration
managedidentities. domains. extendSchema
managedidentities.domains.get
managedidentities. domains. getIamPolicy
managedidentities.domains.list
managedidentities. domains. listEffectiveTags
managedidentities. domains. listTagBindings
managedidentities. domains. reconfigureTrust
managedidentities. domains. resetpassword
managedidentities. domains. restore
managedidentities. domains. setIamPolicy
managedidentities. domains. update
managedidentities. domains. updateLDAPSSettings
managedidentities. domains. validateTrust
managedidentities. locations. get
managedidentities. locations. list
managedidentities. operations. cancel
managedidentities. operations. delete
managedidentities. operations. get
managedidentities. operations. list
managedidentities. peerings. create
managedidentities. peerings. delete
managedidentities.peerings.get
managedidentities. peerings. getIamPolicy
managedidentities. peerings. list
managedidentities. peerings. setIamPolicy
managedidentities. peerings. update
managedidentities. sqlintegrations. get
managedidentities. sqlintegrations. list
resourcemanager.projects.get
resourcemanager.projects.list
Google Cloud Managed Identities Backup Admin
(roles/ managedidentities.backupAdmin
)
Full access to Google Cloud Managed Identities Backup and related resources. Intended to be granted on a project-level
managedidentities.backups.*
managedidentities. backups. create
managedidentities. backups. delete
managedidentities.backups.get
managedidentities. backups. getIamPolicy
managedidentities.backups.list
managedidentities. backups. setIamPolicy
managedidentities. backups. update
managedidentities.domains.get
managedidentities.locations.*
managedidentities. locations. get
managedidentities. locations. list
managedidentities.operations.*
managedidentities. operations. cancel
managedidentities. operations. delete
managedidentities. operations. get
managedidentities. operations. list
resourcemanager.projects.get
resourcemanager.projects.list
Google Cloud Managed Identities Backup Viewer
(roles/ managedidentities.backupViewer
)
Read-only access to Google Cloud Managed Identities Backup and related resources.
managedidentities.backups.get
managedidentities. backups. getIamPolicy
managedidentities.backups.list
managedidentities.domains.get
managedidentities.locations.*
managedidentities. locations. get
managedidentities. locations. list
managedidentities. operations. get
managedidentities. operations. list
resourcemanager.projects.get
resourcemanager.projects.list
Google Cloud Managed Identities Domain Admin
(roles/ managedidentities.domainAdmin
)
Read-Update-Delete to Google Cloud Managed Identities Domains and related resources. Intended to be granted on a resource (domain) level.
managedidentities.backups.*
managedidentities. backups. create
managedidentities. backups. delete
managedidentities.backups.get
managedidentities. backups. getIamPolicy
managedidentities.backups.list
managedidentities. backups. setIamPolicy
managedidentities. backups. update
managedidentities. domains. attachTrust
managedidentities. domains. checkMigrationPermission
managedidentities. domains. createTagBinding
managedidentities. domains. delete
managedidentities. domains. deleteTagBinding
managedidentities. domains. detachTrust
managedidentities. domains. disableMigration
managedidentities. domains. domainJoinMachine
managedidentities. domains. enableMigration
managedidentities. domains. extendSchema
managedidentities.domains.get
managedidentities. domains. getIamPolicy
managedidentities. domains. listEffectiveTags
managedidentities. domains. listTagBindings
managedidentities. domains. reconfigureTrust
managedidentities. domains. resetpassword
managedidentities. domains. restore
managedidentities. domains. update
managedidentities. domains. updateLDAPSSettings
managedidentities. domains. validateTrust
managedidentities.locations.*
managedidentities. locations. get
managedidentities. locations. list
managedidentities. operations. get
managedidentities. operations. list
managedidentities. sqlintegrations.*
managedidentities. sqlintegrations. get
managedidentities. sqlintegrations. list
resourcemanager.projects.get
resourcemanager.projects.list
Google Cloud Managed Identities Domain Join
Beta
(roles/ managedidentities.domainJoin
)
Access to domain join VMs with Cloud AD
managedidentities. domains. domainJoinMachine
managedidentities.domains.get
Google Cloud Managed Identities Peering Admin
(roles/ managedidentities.peeringAdmin
)
Full access to Google Cloud Managed Identities Domains and related resources. Intended to be granted on a project-level
managedidentities.locations.*
managedidentities. locations. get
managedidentities. locations. list
managedidentities.operations.*
managedidentities. operations. cancel
managedidentities. operations. delete
managedidentities. operations. get
managedidentities. operations. list
managedidentities.peerings.*
managedidentities. peerings. create
managedidentities. peerings. delete
managedidentities.peerings.get
managedidentities. peerings. getIamPolicy
managedidentities. peerings. list
managedidentities. peerings. setIamPolicy
managedidentities. peerings. update
resourcemanager.projects.get
resourcemanager.projects.list
Google Cloud Managed Identities Peering Viewer
(roles/ managedidentities.peeringViewer
)
Read-only access to Google Cloud Managed Identities Peering and related resources.
managedidentities.locations.*
managedidentities. locations. get
managedidentities. locations. list
managedidentities. operations. get
managedidentities. operations. list
managedidentities.peerings.get
managedidentities. peerings. getIamPolicy
managedidentities. peerings. list
resourcemanager.projects.get
resourcemanager.projects.list
Google Cloud Managed Identities Viewer
(roles/ managedidentities.viewer
)
Read-only access to Google Cloud Managed Identities Domains and related resources.
managedidentities.backups.get
managedidentities. backups. getIamPolicy
managedidentities.backups.list
managedidentities.domains.get
managedidentities. domains. getIamPolicy
managedidentities.domains.list
managedidentities. domains. listEffectiveTags
managedidentities. domains. listTagBindings
managedidentities.locations.*
managedidentities. locations. get
managedidentities. locations. list
managedidentities. operations. get
managedidentities. operations. list
managedidentities.peerings.get
managedidentities. peerings. getIamPolicy
managedidentities. peerings. list
managedidentities. sqlintegrations.*
managedidentities. sqlintegrations. get
managedidentities. sqlintegrations. list
resourcemanager.projects.get
resourcemanager.projects.list
IAM 역할에 대한 자세한 내용은 역할 이해 를 참조하세요.
의견 보내기
달리 명시되지 않는 한 이 페이지의 콘텐츠에는 Creative Commons Attribution 4.0 라이선스 에 따라 라이선스가 부여되며, 코드 샘플에는 Apache 2.0 라이선스 에 따라 라이선스가 부여됩니다. 자세한 내용은 Google Developers 사이트 정책 을 참조하세요. 자바는 Oracle 및/또는 Oracle 계열사의 등록 상표입니다.
최종 업데이트: 2025-02-14(UTC)
의견을 전달하고 싶나요?
[[["이해하기 쉬움","easyToUnderstand","thumb-up"],["문제가 해결됨","solvedMyProblem","thumb-up"],["기타","otherUp","thumb-up"]],[["이해하기 어려움","hardToUnderstand","thumb-down"],["잘못된 정보 또는 샘플 코드","incorrectInformationOrSampleCode","thumb-down"],["필요한 정보/샘플이 없음","missingTheInformationSamplesINeed","thumb-down"],["번역 문제","translationIssue","thumb-down"],["기타","otherDown","thumb-down"]],["최종 업데이트: 2025-02-14(UTC)"],[],[]]