Google Cloud VMware Engine 审核日志记录

本文档介绍 Google Cloud VMware Engine 的审核日志记录。 其中说明了审核的方法以及每种方法生成的审核日志的详细信息。 其中会列出不会生成审核日志(如果有)的方法。Google Cloud 服务会写入审核日志,这些日志用于记录 Google Cloud 资源中的管理活动和访问情况。如需了解详情,请参阅 Cloud Audit Logs 概览

服务名称

Google Cloud VMware Engine 审核日志使用服务名称 vmwareengine.googleapis.com

方法(按权限类型)

检查 DATA_READDATA_WRITEADMIN_READ 的方法 权限类型会生成数据访问审核日志。 检查 ADMIN_WRITE 权限类型的方法会生成管理员活动审核日志。

权限类型 方法
ADMIN_READ GetIamPolicy
google.cloud.vmwareengine.v1.VmwareEngine.FetchNetworkPolicyExternalAddresses
google.cloud.vmwareengine.v1.VmwareEngine.GetCluster
google.cloud.vmwareengine.v1.VmwareEngine.GetDnsBindPermission
google.cloud.vmwareengine.v1.VmwareEngine.GetDnsForwarding
google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAccessRule
google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAddress
google.cloud.vmwareengine.v1.VmwareEngine.GetHcxActivationKey
google.cloud.vmwareengine.v1.VmwareEngine.GetLoggingServer
google.cloud.vmwareengine.v1.VmwareEngine.GetManagementDnsZoneBinding
google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPeering
google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPolicy
google.cloud.vmwareengine.v1.VmwareEngine.GetNode
google.cloud.vmwareengine.v1.VmwareEngine.GetNodeType
google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateCloud
google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateConnection
google.cloud.vmwareengine.v1.VmwareEngine.GetSubnet
google.cloud.vmwareengine.v1.VmwareEngine.GetVmwareEngineNetwork
google.cloud.vmwareengine.v1.VmwareEngine.ListClusters
google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAccessRules
google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAddresses
google.cloud.vmwareengine.v1.VmwareEngine.ListHcxActivationKeys
google.cloud.vmwareengine.v1.VmwareEngine.ListLoggingServers
google.cloud.vmwareengine.v1.VmwareEngine.ListManagementDnsZoneBindings
google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPeerings
google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPolicies
google.cloud.vmwareengine.v1.VmwareEngine.ListNodeTypes
google.cloud.vmwareengine.v1.VmwareEngine.ListNodes
google.cloud.vmwareengine.v1.VmwareEngine.ListPeeringRoutes
google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateClouds
google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnectionPeeringRoutes
google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnections
google.cloud.vmwareengine.v1.VmwareEngine.ListSubnets
google.cloud.vmwareengine.v1.VmwareEngine.ListVmwareEngineNetworks
google.cloud.vmwareengine.v1.VmwareEngine.ShowNsxCredentials
google.cloud.vmwareengine.v1.VmwareEngine.ShowVcenterCredentials
ADMIN_WRITE SetIamPolicy
google.cloud.vmwareengine.v1.VmwareEngine.CreateCluster
google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAccessRule
google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAddress
google.cloud.vmwareengine.v1.VmwareEngine.CreateHcxActivationKey
google.cloud.vmwareengine.v1.VmwareEngine.CreateLoggingServer
google.cloud.vmwareengine.v1.VmwareEngine.CreateManagementDnsZoneBinding
google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPeering
google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPolicy
google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateCloud
google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateConnection
google.cloud.vmwareengine.v1.VmwareEngine.CreateVmwareEngineNetwork
google.cloud.vmwareengine.v1.VmwareEngine.DeleteCluster
google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAccessRule
google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAddress
google.cloud.vmwareengine.v1.VmwareEngine.DeleteLoggingServer
google.cloud.vmwareengine.v1.VmwareEngine.DeleteManagementDnsZoneBinding
google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPeering
google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPolicy
google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateCloud
google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateConnection
google.cloud.vmwareengine.v1.VmwareEngine.DeleteVmwareEngineNetwork
google.cloud.vmwareengine.v1.VmwareEngine.GrantDnsBindPermission
google.cloud.vmwareengine.v1.VmwareEngine.RepairManagementDnsZoneBinding
google.cloud.vmwareengine.v1.VmwareEngine.ResetNsxCredentials
google.cloud.vmwareengine.v1.VmwareEngine.ResetVcenterCredentials
google.cloud.vmwareengine.v1.VmwareEngine.RevokeDnsBindPermission
google.cloud.vmwareengine.v1.VmwareEngine.UndeletePrivateCloud
google.cloud.vmwareengine.v1.VmwareEngine.UpdateCluster
google.cloud.vmwareengine.v1.VmwareEngine.UpdateDnsForwarding
google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAccessRule
google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAddress
google.cloud.vmwareengine.v1.VmwareEngine.UpdateLoggingServer
google.cloud.vmwareengine.v1.VmwareEngine.UpdateManagementDnsZoneBinding
google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPeering
google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPolicy
google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateCloud
google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateConnection
google.cloud.vmwareengine.v1.VmwareEngine.UpdateSubnet
google.cloud.vmwareengine.v1.VmwareEngine.UpdateVmwareEngineNetwork
google.longrunning.Operations.DeleteOperation

每个 API 接口的审核日志

如需详细了解每种方法会评估哪些权限,请参阅 Google Cloud VMware Engine 的 Identity and Access Management 文档。

google.cloud.vmwareengine.v1.VmwareEngine

以下部分详细介绍了与 google.cloud.vmwareengine.v1.VmwareEngine 中的方法相关联的审核日志。

google.cloud.vmwareengine.v1.VmwareEngine.CreateCluster

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateCluster
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.clusters.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateCluster"

google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAccessRule

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAccessRule
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.externalAccessRules.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAccessRule"

google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAddress

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAddress
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.externalAddresses.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateExternalAddress"

google.cloud.vmwareengine.v1.VmwareEngine.CreateHcxActivationKey

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateHcxActivationKey
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.hcxActivationKeys.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateHcxActivationKey"

google.cloud.vmwareengine.v1.VmwareEngine.CreateLoggingServer

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateLoggingServer
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.loggingServers.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateLoggingServer"

google.cloud.vmwareengine.v1.VmwareEngine.CreateManagementDnsZoneBinding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateManagementDnsZoneBinding
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.managementDnsZoneBindings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateManagementDnsZoneBinding"

google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPeering

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPeering
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.networkPeerings.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPeering"

google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPolicy

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPolicy
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.networkPolicies.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateNetworkPolicy"

google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateCloud

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateCloud
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateClouds.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateCloud"

google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateConnection

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateConnection
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateConnections.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreatePrivateConnection"

google.cloud.vmwareengine.v1.VmwareEngine.CreateVmwareEngineNetwork

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.CreateVmwareEngineNetwork
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.vmwareEngineNetworks.create - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.CreateVmwareEngineNetwork"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteCluster

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteCluster
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.clusters.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteCluster"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAccessRule

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAccessRule
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.externalAccessRules.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAccessRule"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAddress

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAddress
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.externalAddresses.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteExternalAddress"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteLoggingServer

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteLoggingServer
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.loggingServers.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteLoggingServer"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteManagementDnsZoneBinding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteManagementDnsZoneBinding
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.managementDnsZoneBindings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteManagementDnsZoneBinding"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPeering

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPeering
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.networkPeerings.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPeering"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPolicy

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPolicy
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.networkPolicies.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteNetworkPolicy"

google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateCloud

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateCloud
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateClouds.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateCloud"

google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateConnection

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateConnection
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateConnections.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeletePrivateConnection"

google.cloud.vmwareengine.v1.VmwareEngine.DeleteVmwareEngineNetwork

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.DeleteVmwareEngineNetwork
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.vmwareEngineNetworks.delete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.DeleteVmwareEngineNetwork"

google.cloud.vmwareengine.v1.VmwareEngine.FetchNetworkPolicyExternalAddresses

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.FetchNetworkPolicyExternalAddresses
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.networkPolicies.fetchExternalAddresses - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.FetchNetworkPolicyExternalAddresses"

google.cloud.vmwareengine.v1.VmwareEngine.GetCluster

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetCluster
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.clusters.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetCluster"

google.cloud.vmwareengine.v1.VmwareEngine.GetDnsBindPermission

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetDnsBindPermission
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.dnsBindPermission.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetDnsBindPermission"

google.cloud.vmwareengine.v1.VmwareEngine.GetDnsForwarding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetDnsForwarding
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.dnsForwarding.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetDnsForwarding"

google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAccessRule

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAccessRule
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.externalAccessRules.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAccessRule"

google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAddress

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAddress
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.externalAddresses.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetExternalAddress"

google.cloud.vmwareengine.v1.VmwareEngine.GetHcxActivationKey

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetHcxActivationKey
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.hcxActivationKeys.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetHcxActivationKey"

google.cloud.vmwareengine.v1.VmwareEngine.GetLoggingServer

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetLoggingServer
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.loggingServers.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetLoggingServer"

google.cloud.vmwareengine.v1.VmwareEngine.GetManagementDnsZoneBinding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetManagementDnsZoneBinding
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.managementDnsZoneBindings.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetManagementDnsZoneBinding"

google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPeering

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPeering
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.networkPeerings.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPeering"

google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPolicy

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPolicy
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.networkPolicies.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetNetworkPolicy"

google.cloud.vmwareengine.v1.VmwareEngine.GetNode

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetNode
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.nodes.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetNode"

google.cloud.vmwareengine.v1.VmwareEngine.GetNodeType

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetNodeType
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.nodeTypes.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetNodeType"

google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateCloud

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateCloud
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateClouds.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateCloud"

google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateConnection

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateConnection
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateConnections.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetPrivateConnection"

google.cloud.vmwareengine.v1.VmwareEngine.GetSubnet

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetSubnet
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.subnets.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetSubnet"

google.cloud.vmwareengine.v1.VmwareEngine.GetVmwareEngineNetwork

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GetVmwareEngineNetwork
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.vmwareEngineNetworks.get - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GetVmwareEngineNetwork"

google.cloud.vmwareengine.v1.VmwareEngine.GrantDnsBindPermission

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.GrantDnsBindPermission
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.dnsBindPermission.grant - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.GrantDnsBindPermission"

google.cloud.vmwareengine.v1.VmwareEngine.ListClusters

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListClusters
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.clusters.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListClusters"

google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAccessRules

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAccessRules
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.externalAccessRules.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAccessRules"

google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAddresses

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAddresses
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.externalAddresses.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListExternalAddresses"

google.cloud.vmwareengine.v1.VmwareEngine.ListHcxActivationKeys

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListHcxActivationKeys
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.hcxActivationKeys.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListHcxActivationKeys"

google.cloud.vmwareengine.v1.VmwareEngine.ListLoggingServers

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListLoggingServers
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.loggingServers.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListLoggingServers"

google.cloud.vmwareengine.v1.VmwareEngine.ListManagementDnsZoneBindings

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListManagementDnsZoneBindings
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.managementDnsZoneBindings.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListManagementDnsZoneBindings"

google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPeerings

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPeerings
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.networkPeerings.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPeerings"

google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPolicies

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPolicies
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.networkPolicies.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListNetworkPolicies"

google.cloud.vmwareengine.v1.VmwareEngine.ListNodeTypes

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListNodeTypes
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.nodeTypes.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListNodeTypes"

google.cloud.vmwareengine.v1.VmwareEngine.ListNodes

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListNodes
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.nodes.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListNodes"

google.cloud.vmwareengine.v1.VmwareEngine.ListPeeringRoutes

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListPeeringRoutes
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.networkPeerings.listPeeringRoutes - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListPeeringRoutes"

google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateClouds

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateClouds
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateClouds.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateClouds"

google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnectionPeeringRoutes

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnectionPeeringRoutes
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateConnections.listPeeringRoutes - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnectionPeeringRoutes"

google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnections

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnections
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateConnections.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListPrivateConnections"

google.cloud.vmwareengine.v1.VmwareEngine.ListSubnets

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListSubnets
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.subnets.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListSubnets"

google.cloud.vmwareengine.v1.VmwareEngine.ListVmwareEngineNetworks

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ListVmwareEngineNetworks
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.vmwareEngineNetworks.list - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ListVmwareEngineNetworks"

google.cloud.vmwareengine.v1.VmwareEngine.RepairManagementDnsZoneBinding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.RepairManagementDnsZoneBinding
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.managementDnsZoneBindings.repair - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.RepairManagementDnsZoneBinding"

google.cloud.vmwareengine.v1.VmwareEngine.ResetNsxCredentials

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ResetNsxCredentials
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateClouds.resetNsxCredentials - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ResetNsxCredentials"

google.cloud.vmwareengine.v1.VmwareEngine.ResetVcenterCredentials

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ResetVcenterCredentials
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateClouds.resetVcenterCredentials - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ResetVcenterCredentials"

google.cloud.vmwareengine.v1.VmwareEngine.RevokeDnsBindPermission

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.RevokeDnsBindPermission
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.dnsBindPermission.revoke - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.RevokeDnsBindPermission"

google.cloud.vmwareengine.v1.VmwareEngine.ShowNsxCredentials

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ShowNsxCredentials
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateClouds.showNsxCredentials - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ShowNsxCredentials"

google.cloud.vmwareengine.v1.VmwareEngine.ShowVcenterCredentials

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.ShowVcenterCredentials
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.privateClouds.showVcenterCredentials - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.ShowVcenterCredentials"

google.cloud.vmwareengine.v1.VmwareEngine.UndeletePrivateCloud

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UndeletePrivateCloud
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateClouds.undelete - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UndeletePrivateCloud"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateCluster

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateCluster
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.clusters.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateCluster"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateDnsForwarding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateDnsForwarding
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.dnsForwarding.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateDnsForwarding"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAccessRule

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAccessRule
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.externalAccessRules.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAccessRule"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAddress

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAddress
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.externalAddresses.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateExternalAddress"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateLoggingServer

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateLoggingServer
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.loggingServers.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateLoggingServer"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateManagementDnsZoneBinding

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateManagementDnsZoneBinding
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.managementDnsZoneBindings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateManagementDnsZoneBinding"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPeering

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPeering
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.networkPeerings.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPeering"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPolicy

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPolicy
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.networkPolicies.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateNetworkPolicy"

google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateCloud

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateCloud
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateClouds.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateCloud"

google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateConnection

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateConnection
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.privateConnections.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdatePrivateConnection"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateSubnet

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateSubnet
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.subnets.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateSubnet"

google.cloud.vmwareengine.v1.VmwareEngine.UpdateVmwareEngineNetwork

  • 方法google.cloud.vmwareengine.v1.VmwareEngine.UpdateVmwareEngineNetwork
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.vmwareEngineNetworks.update - ADMIN_WRITE
  • 方法是长时间运行的操作或流式操作长时间运行的操作
  • 此方法的过滤条件 protoPayload.methodName="google.cloud.vmwareengine.v1.VmwareEngine.UpdateVmwareEngineNetwork"

google.iam.v1.IAMPolicy

以下部分详细介绍了与 google.iam.v1.IAMPolicy 中的方法相关联的审核日志。

GetIamPolicy

  • 方法GetIamPolicy
  • 审核日志类型数据访问
  • 权限
    • vmwareengine.clusters.getIamPolicy - ADMIN_READ
    • vmwareengine.hcxActivationKeys.getIamPolicy - ADMIN_READ
    • vmwareengine.privateClouds.getIamPolicy - ADMIN_READ
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="GetIamPolicy"

SetIamPolicy

  • 方法SetIamPolicy
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.clusters.setIamPolicy - ADMIN_WRITE
    • vmwareengine.hcxActivationKeys.setIamPolicy - ADMIN_WRITE
    • vmwareengine.privateClouds.setIamPolicy - ADMIN_WRITE
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="SetIamPolicy"

google.longrunning.Operations

以下部分详细介绍了与 google.longrunning.Operations 中的方法相关联的审核日志。

google.longrunning.Operations.DeleteOperation

  • 方法google.longrunning.Operations.DeleteOperation
  • 审核日志类型管理员活动
  • 权限
    • vmwareengine.operations.delete - ADMIN_WRITE
  • Method 是长时间运行的操作或流式传输操作:否。
  • 此方法的过滤条件 protoPayload.methodName="google.longrunning.Operations.DeleteOperation"

系统事件

系统事件审核日志由 GCP 系统生成, 直接用户操作。如需了解详情,请参阅 系统事件审核日志

方法名称 针对此事件进行过滤 备注
system.privateCloud.addNodes protoPayload.methodName="system.privateCloud.addNodes"