Bigtable OAuth 范围

借助 OAuth 范围, Google Cloud Compute Engine 和 Dataflow 等服务可以对 Bigtable 进行身份验证并连接到 Bigtable。配置适当的范围可授予应用所需的特定数据和管理访问权限。

如需将资源(例如 Compute Engine 虚拟机实例)连接到 Bigtable,请在创建资源时指定适当的 OAuth 范围并启用对 Bigtable 的访问权限。请选择最严格且符合应用要求的范围,因为创建资源后,您无法更改范围。

Bigtable 支持以下范围:

gcloud 的范围 URI 说明
https://www.googleapis.com/auth/bigtable.admin bigtable.admin.instance 和 bigtable.admin.table 的别名。
https://www.googleapis.com/auth/bigtable.admin.instance 允许创建和管理 Bigtable 实例及集群。
https://www.googleapis.com/auth/bigtable.admin.table 允许创建和管理 Bigtable 表及其列族。
https://www.googleapis.com/auth/bigtable.data 允许对 Bigtable 表中存储的数据进行读写访问。
https://www.googleapis.com/auth/bigtable.data.readonly 允许对 Bigtable 表中存储的数据进行只读访问。
https://www.googleapis.com/auth/cloud-bigtable.data 允许对 Bigtable 表中存储的数据进行读写访问。
https://www.googleapis.com/auth/cloud-bigtable.data.readonly 允许对 Bigtable 表中存储的数据进行只读访问。
https://www.googleapis.com/auth/cloud-platform 可实现对所有 Google Cloud 产品(包括 Bigtable)的完整访问权限。
https://www.googleapis.com/auth/cloud-platform.readonly 允许对所有 Google Cloud 产品(包括 Bigtable)进行只读访问。