- NAME
-
- gcloud alpha data-catalog entry-groups remove-iam-policy-binding - remove an IAM policy binding from a Cloud Data Catalog entry group
- SYNOPSIS
-
-
gcloud alpha data-catalog entry-groups remove-iam-policy-binding
(ENTRY_GROUP
:--location
=LOCATION
)--member
=MEMBER
--role
=ROLE
[GCLOUD_WIDE_FLAG …
]
-
- DESCRIPTION
-
(ALPHA)
Remove an IAM policy binding from a Cloud Data Catalog entry group. - POSITIONAL ARGUMENTS
-
-
Entry group resource - Entry group from which to remove the IAM policy binding.
The arguments in this group can be used to specify the attributes of this
resource. (NOTE) Some attributes are not given arguments in this group but can
be set in other ways. To set the [project] attribute: provide the argument
[entry_group] on the command line with a fully specified name; set the property
[core/project]; provide the argument [--project] on the command line. This must
be specified.
ENTRY_GROUP
- ID of the entry group or fully qualified identifier for the entry group. To set the [entry_group] attribute: provide the argument [entry_group] on the command line. This positional must be specified if any of the other arguments in this group are specified.
--location
=LOCATION
- Location of the entry group. To set the [location] attribute: provide the argument [entry_group] on the command line with a fully specified name; provide the argument [--location] on the command line.
-
Entry group resource - Entry group from which to remove the IAM policy binding.
The arguments in this group can be used to specify the attributes of this
resource. (NOTE) Some attributes are not given arguments in this group but can
be set in other ways. To set the [project] attribute: provide the argument
[entry_group] on the command line with a fully specified name; set the property
[core/project]; provide the argument [--project] on the command line. This must
be specified.
- REQUIRED FLAGS
-
--member
=MEMBER
-
The member to remove the binding for. Should be of the form
user|group|serviceAccount:email
ordomain:domain
.Examples:
user:test-user@gmail.com
,group:admins@example.com
,serviceAccount:test123@example.domain.com
, ordomain:example.domain.com
.Can also be one of the following special values:
-
allUsers
- Special identifier that represents anyone who is on the internet, with or without a Google account. -
allAuthenticatedUsers
- Special identifier that represents anyone who is authenticated with a Google account or a service account.
-
--role
=ROLE
- The role to remove the member from.
- GCLOUD WIDE FLAGS
-
These flags are available to all commands:
--account
,--billing-project
,--configuration
,--flags-file
,--flatten
,--format
,--help
,--impersonate-service-account
,--log-http
,--project
,--quiet
,--trace-token
,--user-output-enabled
,--verbosity
.Run
$ gcloud help
for details. - API REFERENCE
-
This command uses the
datacatalog/v1beta1
API. The full documentation for this API can be found at: https://cloud.google.com/data-catalog/docs/ - EXAMPLES
-
To remove an IAM policy binding for the role of 'roles/editor' for the user
'test-user@gmail.com' on entry group 'group1' with location 'us-central1', run:
gcloud alpha data-catalog entry-groups remove-iam-policy-binding --location=us-central1 group1 --member='user:test-user@gmail.com' --role='roles/editor'
To remove an IAM policy binding for the role of 'roles/editor' from all authenticated users on entry group 'group1' with location 'us-central1', run:
gcloud alpha data-catalog entry-groups remove-iam-policy-binding --location=us-central1 group1 --member='allAuthenticatedUsers' --role='roles/editor'
See https://cloud.google.com/iam/docs/managing-policies for details of policy role and member types.
- NOTES
-
This command is currently in ALPHA and may change without notice. If this
command fails with API permission errors despite specifying the right project,
you may be trying to access an API with an invitation-only early access
allowlist. These variants are also available:
gcloud data-catalog entry-groups remove-iam-policy-binding
gcloud beta data-catalog entry-groups remove-iam-policy-binding
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2020-12-15 UTC.