- NAME
-
- gcloud ai-platform models remove-iam-policy-binding - remove IAM policy binding for a model
- SYNOPSIS
-
-
gcloud ai-platform models remove-iam-policy-binding
MODEL
--member
=MEMBER
--role
=ROLE
[--region
=REGION
] [GCLOUD_WIDE_FLAG …
]
-
- DESCRIPTION
- Removes a policy binding from an AI Platform Model. One binding consists of a member, a role and an optional condition. See $ gcloud ai-platform models get-iam-policy for examples of how to specify a model resource.
- POSITIONAL ARGUMENTS
-
-
Model resource - The AI Platform model for which to remove IAM policy binding
from. This represents a Cloud resource. (NOTE) Some attributes are not given
arguments in this group but can be set in other ways. To set the
project
attribute: provide the argumentmodel
on the command line with a fully specified name; provide the argument--project
on the command line; set the propertycore/project
. This must be specified.MODEL
-
ID of the model or fully qualified identifier for the model. To set the
name
attribute: provide the argumentmodel
on the command line.
-
Model resource - The AI Platform model for which to remove IAM policy binding
from. This represents a Cloud resource. (NOTE) Some attributes are not given
arguments in this group but can be set in other ways. To set the
- REQUIRED FLAGS
-
--member
=MEMBER
-
The member to remove the binding for. Should be of the form
user|group|serviceAccount:email
ordomain:domain
.Examples:
user:test-user@gmail.com
,group:admins@example.com
,serviceAccount:test123@example.domain.com
, ordomain:example.domain.com
.Can also be one of the following special values:
-
allUsers
- Special identifier that represents anyone who is on the internet, with or without a Google account. -
allAuthenticatedUsers
- Special identifier that represents anyone who is authenticated with a Google account or a service account.
-
--role
=ROLE
- The role to remove the member from.
- OPTIONAL FLAGS
-
--region
=REGION
-
Google Cloud region of the regional endpoint to use for this command. If
unspecified, the command uses the global endpoint of the AI Platform Training
and Prediction API.
Learn more about regional endpoints and see a list of available regions: https://cloud.google.com/ai-platform/prediction/docs/regional-endpoints
REGION
must be one of:global
,asia-east1
,asia-northeast1
,asia-southeast1
,australia-southeast1
,europe-west1
,europe-west2
,europe-west3
,europe-west4
,northamerica-northeast1
,us-central1
,us-east1
,us-east4
,us-west1
.
- GCLOUD WIDE FLAGS
-
These flags are available to all commands:
--account
,--billing-project
,--configuration
,--flags-file
,--flatten
,--format
,--help
,--impersonate-service-account
,--log-http
,--project
,--quiet
,--trace-token
,--user-output-enabled
,--verbosity
.Run
$ gcloud help
for details. - EXAMPLES
-
To remove an IAM policy binding for the role of 'roles/ml.admin' for the user
'test-user@gmail.com' on model with identifier 'my_model', run:
gcloud ai-platform models remove-iam-policy-binding my_model --member='user:test-user@gmail.com' --role='roles/ml.admin'
To remove an IAM policy binding for the role of 'roles/ml.admin' from all authenticated users on model 'my_model', run:
gcloud ai-platform models remove-iam-policy-binding my_model --member='allAuthenticatedUsers' --role='roles/ml.admin'
See https://cloud.google.com/iam/docs/managing-policies for details of policy role and member types.
- NOTES
-
These variants are also available:
gcloud alpha ai-platform models remove-iam-policy-binding
gcloud beta ai-platform models remove-iam-policy-binding
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2021-02-09 UTC.