- HTTP request
- Path parameters
- Request body
- Response body
- Authorization scopes
- IAM Permissions
- Try it!
Returns permissions that a caller has on the specified resource.
HTTP request
POST https://compute.googleapis.com/compute/beta/projects/{project}/regions/{region}/instanceGroups/{resource}/testIamPermissions
The URL uses gRPC Transcoding syntax. To know more about valid error responses that can be thrown by this HTTP request, please refer to the service error catalog
Path parameters
| Parameters | |
|---|---|
| project | 
 Project ID for this request. | 
| region | 
 The name of the region for this request. | 
| resource | 
 Name or id of the resource for this request. | 
Request body
The request body contains data with the following structure:
| JSON representation | 
|---|
| { "permissions": [ string ] } | 
| Fields | |
|---|---|
| permissions[] | 
 The set of permissions to check for the 'resource'. Permissions with wildcards (such as '*' or 'storage.*') are not allowed. | 
Response body
If successful, the response body contains data with the following structure:
| JSON representation | 
|---|
| { "permissions": [ string ] } | 
| Fields | |
|---|---|
| permissions[] | 
 A subset of  | 
Authorization scopes
Requires one of the following OAuth scopes:
- https://www.googleapis.com/auth/compute.readonly
- https://www.googleapis.com/auth/compute
- https://www.googleapis.com/auth/cloud-platform
For more information, see the Authentication Overview.
IAM Permissions
In addition to any permissions specified on the fields above, authorization requires one or more of the following IAM permissions:
- compute.instanceGroups.list
To find predefined roles that contain those permissions, see Compute Engine IAM Roles.