Mantieni tutto organizzato con le raccolte
Salva e classifica i contenuti in base alle tue preferenze.
Identity and Access Management (IAM) ti consente di concedere l'accesso a risorse specifiche.
Per concedere l'accesso a una risorsa, devi assegnare un ruolo specifico a un utente, che gli conferirà determinate autorizzazioni.
Ruoli obbligatori
Ogni metodo dell'API Workload Manager richiede le autorizzazioni IAM necessarie. Le autorizzazioni vengono assegnate concedendo i ruoli a un utente, un gruppo o un account di servizio. Per informazioni su come concedere l'accesso alle risorse, consulta Gestire l'accesso.
La tabella seguente mostra i ruoli IAM di Workload Manager e le autorizzazioni concesse da questi ruoli.
Ruoli di Workload Manager
Autorizzazioni
Workload Manager Admin
Beta
(roles/workloadmanager.admin)
Accesso completo a tutte le risorse del Gestore workload.
compute.acceleratorTypes.list
compute.diskTypes.list
compute.machineTypes.list
compute.networks.list
compute.projects.get
compute.regions.list
compute.subnetworks.list
compute.zones.list
dns.managedZones.list
iam.serviceAccounts.list
monitoring.timeSeries.list
orgpolicy.policy.get
resourcemanager.projects.get
resourcemanager.projects.getIamPolicy
resourcemanager.projects.list
serviceusage.quotas.get
serviceusage.services.get
storage.buckets.list
storage.objects.list
workloadmanager.*
Workload Manager Deployment Admin
beta
(roles/workloadmanager.deploymentAdmin)
Accesso completo alle risorse di deployment di Workload Manager.
compute.acceleratorTypes.list
compute.diskTypes.list
compute.machineTypes.list
compute.networks.list
compute.projects.get
compute.regions.list
compute.subnetworks.list
compute.zones.list
dns.managedZones.list
iam.serviceAccounts.list
monitoring.timeSeries.list
resourcemanager.projects.get
resourcemanager.projects.getIamPolicy
resourcemanager.projects.list
serviceusage.quotas.get
serviceusage.services.get
storage.buckets.list
storage.objects.list
workloadmanager.actuations.*
workloadmanager.deployments.*
workloadmanager.locations.*
workloadmanager.operations.*
Workload Manager Deployment Viewer
beta
(roles/workloadmanager.deploymentViewer)
Accesso in sola lettura alle risorse di deployment di Workload Manager.
resourcemanager.projects.get
resourcemanager.projects.list
workloadmanager.actuations.get
workloadmanager.actuations.list
workloadmanager.deployments.get
workloadmanager.deployments.list
Workload Manager Evaluation Admin
beta
(roles/workloadmanager.evaluationAdmin)
Accesso completo alle risorse di valutazione del Gestore workload.
orgpolicy.policy.get
resourcemanager.projects.get
resourcemanager.projects.list
workloadmanager.evaluations.*
workloadmanager.executions.*
workloadmanager.locations.*
workloadmanager.operations.*
workloadmanager.results.list
workloadmanager.rules.list
Workload Manager Evaluation Viewer
beta
(roles/workloadmanager.evaluationViewer)
Accesso in sola lettura alle risorse di valutazione del Gestore workload.
orgpolicy.policy.get
resourcemanager.projects.get
resourcemanager.projects.list
workloadmanager.evaluations.get
workloadmanager.evaluations.list
workloadmanager.executions.get
workloadmanager.executions.list
workloadmanager.results.list
workloadmanager.rules.list
Workload Manager Insights Writer
beta
(roles/workloadmanager.insightWriter)
Ruolo utilizzato per scrivere dati nel data warehouse del gestore workload.
workloadmanager.insights.write
Workload Manager Viewer
beta
(roles/workloadmanager.viewer)
Accesso in sola lettura a tutte le risorse del gestore workload.
orgpolicy.policy.get
resourcemanager.projects.get
resourcemanager.projects.list
workloadmanager.actuations.get
workloadmanager.actuations.list
workloadmanager.deployments.get
workloadmanager.deployments.list
workloadmanager.discoveredprofiles.*
workloadmanager.evaluations.get
workloadmanager.evaluations.list
workloadmanager.executions.get
workloadmanager.executions.list
workloadmanager.results.list
workloadmanager.rules.list
Workload Manager Worker
beta
(roles/workloadmanager.worker)
Il ruolo utilizzato dai runner dell'applicazione Gestore workload per leggere e aggiornare i workload.
orgpolicy.policy.get
resourcemanager.projects.get
resourcemanager.projects.list
workloadmanager.actuations.*
workloadmanager.deployments.*
workloadmanager.discoveredprofiles.*
workloadmanager.evaluations.*
workloadmanager.executions.*
workloadmanager.insights.write
workloadmanager.results.list
workloadmanager.rules.list
Workload Manager Workload Viewer
beta
(roles/workloadmanager.workloadViewer)
Ruolo utilizzato per visualizzare i dati relativi ai workload.
resourcemanager.projects.get
resourcemanager.projects.list
workloadmanager.discoveredprofiles.*
Workload Manager Service Agent
(roles/workloadmanager.serviceAgent)
Concede all'agente di servizio Gestore workload l'accesso alle funzioni di esportazione CAI e a Cloud Monitoring.
[[["Facile da capire","easyToUnderstand","thumb-up"],["Il problema è stato risolto","solvedMyProblem","thumb-up"],["Altra","otherUp","thumb-up"]],[["Difficile da capire","hardToUnderstand","thumb-down"],["Informazioni o codice di esempio errati","incorrectInformationOrSampleCode","thumb-down"],["Mancano le informazioni o gli esempi di cui ho bisogno","missingTheInformationSamplesINeed","thumb-down"],["Problema di traduzione","translationIssue","thumb-down"],["Altra","otherDown","thumb-down"]],["Ultimo aggiornamento 2025-01-24 UTC."],[],[]]