Peran Identity and Access Management (IAM) menentukan cara Anda dapat menggunakan API Layanan Terkelola untuk Microsoft Active Directory (Microsoft AD Terkelola). Berikut adalah daftar setiap peran IAM yang tersedia untuk Managed Microsoft AD dan metode yang tersedia untuknya.
Selain itu, akun layanan harus memiliki izin servicemanagement.services.bind
untuk melihat dan mengaktifkan Managed Microsoft AD. Pelajari lebih lanjut peran dan izin pengelolaan layanan.
Role | Permissions |
---|---|
Google Cloud Managed Identities Admin( Full access to Google Cloud Managed Identities Domains and related resources. Intended to be granted on a project-level. |
|
Google Cloud Managed Identities Backup Admin( Full access to Google Cloud Managed Identities Backup and related resources. Intended to be granted on a project-level |
|
Google Cloud Managed Identities Backup Viewer( Read-only access to Google Cloud Managed Identities Backup and related resources. |
|
Google Cloud Managed Identities Domain Admin( Read-Update-Delete to Google Cloud Managed Identities Domains and related resources. Intended to be granted on a resource (domain) level. |
|
Google Cloud Managed Identities Domain Join Beta( Access to domain join VMs with Cloud AD |
|
Google Cloud Managed Identities Peering Admin( Full access to Google Cloud Managed Identities Domains and related resources. Intended to be granted on a project-level |
|
Google Cloud Managed Identities Peering Viewer( Read-only access to Google Cloud Managed Identities Peering and related resources. |
|
Google Cloud Managed Identities Viewer( Read-only access to Google Cloud Managed Identities Domains and related resources. |
|
Untuk mengetahui informasi selengkapnya tentang peran IAM, lihat memahami peran.