Google משתמשת בטכנולוגיית AI כדי לתרגם תוכן לשפה המועדפת עליך. בתרגומים כאלו עשויות להיות שגיאות.
שליחת משוב
תפקידים והרשאות
קל לארגן דפים בעזרת אוספים
אפשר לשמור ולסווג תוכן על סמך ההעדפות שלך.
בדף הזה מפורטים התפקידים וההרשאות של IAM עבור Agent Registry.
מעניקים תפקידי IAM מתאימים של Agent Registry למשתמשים או לקבוצות שינהלו או יצפו בסוכנים ב-Agent Registry. כדי להקצות תפקידים, אפשר להשתמש בדף IAM במסוף Google Cloud או ב-Google Cloud CLI. הוראות מפורטות מופיעות במאמר ניהול הגישה לפרויקטים, לתיקיות ולארגונים .
תפקידים ב-Agent Registry
בטבלה הבאה מתוארים תפקידי ה-IAM של Agent Registry והאחריות האופיינית שלהם:
זהירות: כדאי להקצות את התפקידים אדמין של Agent Registry API (roles/agentregistry.admin) או עריכה של Agent Registry API (roles/agentregistry.editor) רק לאדמינים מהימנים שנדרשות להם הרשאות לניהול המאגר, ולהימנע מהקצאת התפקידים האלה ישירות לסוכנים. התפקידים האלה מכילים הרשאות ליצור, למחוק ולעדכן שירותים, כולל שינוי של מטא-נתונים קריטיים של סוכנים והערות על כלים כמו readOnlyHint או destructiveHint. שינויים זדוניים במטא-נתונים ובהערות יכולים לגרום להשלכות לא מכוונות והרסניות כשכלי מתוקן נמצא בשימוש של כלי תזמור. בנוסף, סוכן עם ההרשאות האלה יכול לרשום במפורש סוכן זדוני של צד שלישי במאגר.
תפקיד
תיאור
מטרה
Agent Registry API Admin
ביצוע כל הפעולות, כולל רישום ידני של סוכנים ועדכון של
מטא-נתונים.
רישום וניהול של סוכנים ושרתי MCP.
עדכון ההגדרות של כלי ונקודות קצה.
Agent Registry API Editor
עריכת הגישה למשאבים של Agent Registry.
רישום וניהול של סוכנים ושרתי MCP.
עדכון ההגדרות ונקודות הקצה של כלי.
Agent Registry API Viewer
צפייה בסוכנים, בכלים ובמאפיינים שלהם.
לגלות אילו סוכנים ושרתי MCP זמינים.
צפייה במיומנויות A2A, במיומנויות עצמאיות ובנקודות קצה לשילוב.
משתמש ב-Agent Registry
יצירה, עדכון ומחיקה של מיומנויות וגרסאות של מיומנויות.
ניהול סקילים עצמאיים של סוכנים במאגר הסוכנים.
לשמור את ניהול הגרסאות של שינויים בסקילים ולנהל באופן מרכזי את המצבים הפעילים של הסקילים.
הרשאות של Agent Registry
בטבלה הבאה מפורטות ההרשאות של כל תפקיד IAM ב-Agent Registry:
Agent Registry API Admin
בטא
(roles/ agentregistry.admin)
גישה מלאה למשאבי Agent Registry API.
agentregistry.*
agentregistry.agents.get
agentregistry.agents.list
agentregistry.agents.search
agentregistry.bindings.create
agentregistry.bindings.delete
agentregistry. bindings. fetchAvailable
agentregistry.bindings.get
agentregistry.bindings.list
agentregistry.bindings.update
agentregistry.endpoints.get
agentregistry.endpoints.list
agentregistry.locations.get
agentregistry.locations.list
agentregistry.mcpServers.get
agentregistry.mcpServers.list
agentregistry. mcpServers. search
agentregistry. operations. cancel
agentregistry. operations. delete
agentregistry.operations.get
agentregistry.operations.list
agentregistry.publishers.get
agentregistry.publishers.list
agentregistry.services.create
agentregistry.services.delete
agentregistry.services.get
agentregistry.services.list
agentregistry.services.update
agentregistry. skillRevisions. create
agentregistry. skillRevisions. delete
agentregistry. skillRevisions. get
agentregistry. skillRevisions. list
agentregistry.skills.create
agentregistry.skills.delete
agentregistry.skills.get
agentregistry.skills.list
agentregistry.skills.search
agentregistry.skills.update
Agent Registry API Editor
Beta
(roles/ agentregistry.editor)
עריכת הגישה למשאבי Agent Registry API.
agentregistry.agents.*
agentregistry.agents.get
agentregistry.agents.list
agentregistry.agents.search
agentregistry. bindings. fetchAvailable
agentregistry.bindings.get
agentregistry.bindings.list
agentregistry.endpoints.*
agentregistry.endpoints.get
agentregistry.endpoints.list
agentregistry.locations.*
agentregistry.locations.get
agentregistry.locations.list
agentregistry.mcpServers.*
agentregistry.mcpServers.get
agentregistry.mcpServers.list
agentregistry. mcpServers. search
agentregistry.operations.*
agentregistry. operations. cancel
agentregistry. operations. delete
agentregistry.operations.get
agentregistry.operations.list
agentregistry.publishers.*
agentregistry.publishers.get
agentregistry.publishers.list
agentregistry.services.*
agentregistry.services.create
agentregistry.services.delete
agentregistry.services.get
agentregistry.services.list
agentregistry.services.update
agentregistry.skillRevisions.*
agentregistry. skillRevisions. create
agentregistry. skillRevisions. delete
agentregistry. skillRevisions. get
agentregistry. skillRevisions. list
agentregistry.skills.*
agentregistry.skills.create
agentregistry.skills.delete
agentregistry.skills.get
agentregistry.skills.list
agentregistry.skills.search
agentregistry.skills.update
Agent Registry API Viewer
גרסת בטא
(roles/ agentregistry.viewer)
גישה לקריאה בלבד למשאבים של Agent Registry API.
agentregistry.agents.*
agentregistry.agents.get
agentregistry.agents.list
agentregistry.agents.search
agentregistry. bindings. fetchAvailable
agentregistry.bindings.get
agentregistry.bindings.list
agentregistry.endpoints.*
agentregistry.endpoints.get
agentregistry.endpoints.list
agentregistry.locations.*
agentregistry.locations.get
agentregistry.locations.list
agentregistry.mcpServers.*
agentregistry.mcpServers.get
agentregistry.mcpServers.list
agentregistry. mcpServers. search
agentregistry.operations.get
agentregistry.operations.list
agentregistry.publishers.*
agentregistry.publishers.get
agentregistry.publishers.list
agentregistry.services.get
agentregistry.services.list
agentregistry. skillRevisions. get
agentregistry. skillRevisions. list
agentregistry.skills.get
agentregistry.skills.list
agentregistry.skills.search
Agent Registry User
Beta
(roles/ agentregistry.user)
יצירה, עדכון ומחיקה של סקילים וגרסאות של סקילים.
agentregistry.agents.*
agentregistry.agents.get
agentregistry.agents.list
agentregistry.agents.search
agentregistry. bindings. fetchAvailable
agentregistry.bindings.get
agentregistry.bindings.list
agentregistry.endpoints.*
agentregistry.endpoints.get
agentregistry.endpoints.list
agentregistry.locations.*
agentregistry.locations.get
agentregistry.locations.list
agentregistry.mcpServers.*
agentregistry.mcpServers.get
agentregistry.mcpServers.list
agentregistry. mcpServers. search
agentregistry.operations.get
agentregistry.operations.list
agentregistry.publishers.*
agentregistry.publishers.get
agentregistry.publishers.list
agentregistry.services.get
agentregistry.services.list
agentregistry.skillRevisions.*
agentregistry. skillRevisions. create
agentregistry. skillRevisions. delete
agentregistry. skillRevisions. get
agentregistry. skillRevisions. list
agentregistry.skills.*
agentregistry.skills.create
agentregistry.skills.delete
agentregistry.skills.get
agentregistry.skills.list
agentregistry.skills.search
agentregistry.skills.update
מידע נוסף על הרשאות IAM זמין במאמרים איך מוצאים את התפקידים המוגדרים מראש שמתאימים לכם ואינדקס של תפקידים והרשאות ב-IAM .
בקרת גישה למשאבים רשומים
תפקידים ב-Agent Registry קובעים מי יכול לנהל ולגלות משאבים ב-Agent Registry עצמו. כדי לקבוע אילו סוכנים יכולים לתקשר עם שירותים, נקודות קצה ושרתי MCP רשומים דרך Agent Gateway , משתמשים במדיניות יציאה של Identity-Aware Proxy :
הוראות מפורטות להגדרת מדיניות יציאה של IAP מופיעות במאמר הגדרת מדיניות של סוכן IAM .
שליחת משוב
אלא אם צוין אחרת, התוכן של דף זה הוא ברישיון Creative Commons Attribution 4.0 ודוגמאות הקוד הן ברישיון Apache 2.0 . לפרטים, ניתן לעיין במדיניות האתר Google Developers . Java הוא סימן מסחרי רשום של חברת Oracle ו/או של השותפים העצמאיים שלה.
עדכון אחרון: 2026-09-25 (שעון UTC).
רוצה לתת לנו משוב?
[[["התוכן קל להבנה","easyToUnderstand","thumb-up"],["התוכן עזר לי לפתור בעיה","solvedMyProblem","thumb-up"],["סיבה אחרת","otherUp","thumb-up"]],[["התוכן קשה להבנה","hardToUnderstand","thumb-down"],["שגיאות בקוד לדוגמה או במידע","incorrectInformationOrSampleCode","thumb-down"],["חסרים לי פרטים או דוגמאות","missingTheInformationSamplesINeed","thumb-down"],["בעיה בתרגום","translationIssue","thumb-down"],["סיבה אחרת","otherDown","thumb-down"]],["עדכון אחרון: 2026-09-25 (שעון UTC)."],[],[]]