プロジェクトの事前定義ロールの権限

このリファレンスでは、Google Distributed Cloud(GDC)エアギャップで使用できる事前定義ロールと権限について詳しく説明します。この情報は、デプロイ内のプロジェクト レベルのリソースへのアクセスを管理する際に、DevOps チームなどのアプリケーション オペレーター グループ内のユーザーを対象としています。詳細については、GDC のユーザー向けドキュメントをご覧ください。

事前定義ロールの表について

1 つのサブジェクトをグローバル API サーバーの複数のロールにバインドできます。権限は純粋に付加的なものであり、拒否ルールはありません。

ロールテーブルには、プロジェクト レベルの各ロールに関する重要な詳細情報が表示されます。

  • ロール名と説明: ユーザー インターフェース(UI)に表示される事前定義ロール名、対応する Kubernetes カスタム リソースの名前、ロールの説明が一覧表示されます。

    異なるロールに同じ UI 表示名が使用されている場合があります。これらのロールはそれぞれ異なり、Kubernetes カスタム リソース名と権限セットによって一意に識別されます。これは、ロールが関連する機能を提供する場合や、サービスへのアクセスレベルが異なる場合に発生します。

  • 権限: ロールが付与する特定の API オペレーションを一覧表示します。スコープ ラベルは、これらのオペレーションを実行できる場所を示します。これは、ターゲット リソースを管理する API サーバーによって決まります。

    • グローバル: グローバル API サーバーによって管理されるリソース。
    • ゾーン: ゾーン管理 API サーバーによって特定のゾーン内で管理されるリソース。
    • Kubernetes クラスタ: Kubernetes API サーバーによって Kubernetes クラスタ内で管理されるリソース。

    これらのスコープ内でリソースがどのように管理されるかについては、グローバル リソースとゾーンリソースGDC の Kubernetes クラスタをご覧ください。

リストされているすべてのロールには、ロールタイプ IAMRole があります。これは、一連の権限を定義する Kubernetes カスタム リソースです。これらの権限をユーザーまたはグループに付与するには、ユーザーを IAMRole にリンクする IAMRoleBinding リソースを作成します。ロール バインディングの設定方法については、アクセス権の付与と取り消しをご覧ください。

IAMRole リソースと IAMRoleBinding リソースはどちらもグローバル API サーバー内で管理されます。つまり、これらはグローバル リソースであり、バインディングは GDC 組織内のすべてのゾーンに適用されます。ロールはグローバルに定義されますが、付与される権限はプロジェクトなどの特定のコンテキスト内で実行されます。たとえば、「プロジェクト レベルのロール」は、プロジェクト内のリソースに権限を付与します。このようなリソースは、グローバル、ゾーン、Kubernetes クラスタのスコープで管理される場合があります。

プロジェクト レベルのロールと権限

次のロールは、特定のプロジェクト内で付与されます。

役割の名前と説明 権限
AI Gemini Flash デベロッパー
ai-gemini-flash-developer

Gemini Flash モデルのエンドポイントに対して予測リクエストとチャット補完リクエストを実行します。

Zonal
endpoints.gemini-flash.gdc.goog.chat-completions
endpoints.gemini-flash.gdc.goog.predict
AI Large Gemini デベロッパー
ai-large-gemini-developer

システム クラスタ内の大規模な Gemini サービスにアクセスする権限を付与します。

Zonal
endpoints.large-gemini.gdc.goog.cancel-batch
endpoints.large-gemini.gdc.goog.chat-completions
endpoints.large-gemini.gdc.goog.create-batch
endpoints.large-gemini.gdc.goog.create-cached-content
endpoints.large-gemini.gdc.goog.delete-cached-content
endpoints.large-gemini.gdc.goog.generate-content
endpoints.large-gemini.gdc.goog.get-batch
endpoints.large-gemini.gdc.goog.get-cached-content
endpoints.large-gemini.gdc.goog.list-available-models
endpoints.large-gemini.gdc.goog.list-batches
endpoints.large-gemini.gdc.goog.list-cached-contents
endpoints.large-gemini.gdc.goog.stream-generate-content
endpoints.large-gemini.gdc.goog.update-cached-content
AI Ocr デベロッパー
ai-ocr-developer

OCR サービスにアクセスします。

Zonal
annotators.vision.gdc.goog.*
AI Speech Chirp デベロッパー
ai-speech-chirp-developer

Speech Chirp サービスにアクセスします。

Zonal
recognizers.speech.gdc.goog.*
AI Speech デベロッパー
ai-speech-developer

Speech サービスにアクセスします。

Zonal
recognizers.speech.gdc.goog.*
AI テキスト エンベディング デベロッパー
ai-text-embedding-developer

テキスト エンベディング モデル エンドポイントで予測リクエストを実行します。

Zonal
endpoints.text-embedding.gdc.goog.predict
AI テキスト エンベディング多言語デベロッパー
ai-text-embedding-multilingual-developer

Text Embedding Multilingual モデル エンドポイントで予測リクエストを実行します。

Zonal
endpoints.text-embedding-multilingual.gdc.goog.predict
AI Translation デベロッパー
ai-translation-developer

翻訳サービスにアクセスします。

Zonal
translators.translation.gdc.goog.*
バックアップ作成者
backup-creator

Kubernetes クラスタ
backupplans.backup.gdc.goog.get
backupplans.backup.gdc.goog.list
backupplans.backup.gdc.goog.watch
backups.backup.gdc.goog.get
backups.backup.gdc.goog.list
backups.backup.gdc.goog.watch
deletebackuprequests.backup.gdc.goog.get
deletebackuprequests.backup.gdc.goog.list
deletebackuprequests.backup.gdc.goog.watch
manualbackuprequests.backup.gdc.goog.create
manualbackuprequests.backup.gdc.goog.delete
manualbackuprequests.backup.gdc.goog.get
manualbackuprequests.backup.gdc.goog.list
manualbackuprequests.backup.gdc.goog.watch
manualrestorerequests.backup.gdc.goog.create
manualrestorerequests.backup.gdc.goog.delete
manualrestorerequests.backup.gdc.goog.get
manualrestorerequests.backup.gdc.goog.list
manualrestorerequests.backup.gdc.goog.watch
restoreplans.backup.gdc.goog.get
restoreplans.backup.gdc.goog.list
restoreplans.backup.gdc.goog.watch
restores.backup.gdc.goog.get
restores.backup.gdc.goog.list
restores.backup.gdc.goog.watch
volumebackups.backup.gdc.goog.get
volumebackups.backup.gdc.goog.list
volumebackups.backup.gdc.goog.watch
volumerestores.backup.gdc.goog.get
volumerestores.backup.gdc.goog.list
volumerestores.backup.gdc.goog.watch
Bookstore 管理者
bookstore-admin

Zonal
shelves.bookstore-grpc.googleapis.com.create
shelves.bookstore-grpc.googleapis.com.get
shelves.cloudresourcemanager.googleapis.com.create
shelves.cloudresourcemanager.googleapis.com.get
CA サービス証明書リクエスト元
certificate-authority-service-certificate-requester

証明書リクエストを作成して表示し、発行された証明書を取得します。

Zonal
certificaterequests.pki.security.gdc.goog.create
certificaterequests.pki.security.gdc.goog.get
certificaterequests.pki.security.gdc.goog.list
secrets.get
secrets.list
CA サービス オペレーション マネージャー
certificate-authority-service-operation-manager

認証局を管理し、証明書を取り消します。

Zonal
certificateauthorities.pki.security.gdc.goog.create
certificateauthorities.pki.security.gdc.goog.delete
certificateauthorities.pki.security.gdc.goog.get
certificateauthorities.pki.security.gdc.goog.list
certificateauthorities.pki.security.gdc.goog.patch
certificateauthorities.pki.security.gdc.goog.update
certificateauthorities.pki.security.gdc.goog.watch
certificaterequests.pki.security.gdc.goog.get
certificaterequests.pki.security.gdc.goog.list
certificaterequests.pki.security.gdc.goog.watch
revokecertificaterequests.pki.security.gdc.goog.create
revokecertificaterequests.pki.security.gdc.goog.delete
revokecertificaterequests.pki.security.gdc.goog.get
revokecertificaterequests.pki.security.gdc.goog.list
revokecertificaterequests.pki.security.gdc.goog.patch
revokecertificaterequests.pki.security.gdc.goog.update
revokecertificaterequests.pki.security.gdc.goog.watch
secrets.get
secrets.list
Certificate Authority Service 管理者
certificate-authority-service-admin

Zonal
certificateauthorities.pki.security.gdc.goog.create
certificateauthorities.pki.security.gdc.goog.delete
certificateauthorities.pki.security.gdc.goog.get
certificateauthorities.pki.security.gdc.goog.list
certificateauthorities.pki.security.gdc.goog.patch
certificateauthorities.pki.security.gdc.goog.update
certificateauthorities.pki.security.gdc.goog.watch
certificaterequests.pki.security.gdc.goog.create
certificaterequests.pki.security.gdc.goog.delete
certificaterequests.pki.security.gdc.goog.get
certificaterequests.pki.security.gdc.goog.list
certificaterequests.pki.security.gdc.goog.patch
certificaterequests.pki.security.gdc.goog.update
certificaterequests.pki.security.gdc.goog.watch
revokecertificaterequests.pki.security.gdc.goog.create
revokecertificaterequests.pki.security.gdc.goog.delete
revokecertificaterequests.pki.security.gdc.goog.get
revokecertificaterequests.pki.security.gdc.goog.list
revokecertificaterequests.pki.security.gdc.goog.patch
revokecertificaterequests.pki.security.gdc.goog.update
revokecertificaterequests.pki.security.gdc.goog.watch
secrets.get
secrets.list
Certificate Service 管理者
certificate-service-admin

Zonal
certificateissuers.pki.security.gdc.goog.create
certificateissuers.pki.security.gdc.goog.delete
certificateissuers.pki.security.gdc.goog.get
certificateissuers.pki.security.gdc.goog.list
certificateissuers.pki.security.gdc.goog.patch
certificateissuers.pki.security.gdc.goog.update
certificateissuers.pki.security.gdc.goog.watch
certificates.pki.security.gdc.goog.create
certificates.pki.security.gdc.goog.delete
certificates.pki.security.gdc.goog.get
certificates.pki.security.gdc.goog.list
certificates.pki.security.gdc.goog.patch
certificates.pki.security.gdc.goog.update
certificates.pki.security.gdc.goog.watch
Cloud NAT デベロッパー
cloud-nat-developer

プロジェクト内の Cloud NAT リソースに対して CRUD オペレーションを実行できます。

Zonal
cloudnatgateways.networking.gdc.goog.create
cloudnatgateways.networking.gdc.goog.delete
cloudnatgateways.networking.gdc.goog.get
cloudnatgateways.networking.gdc.goog.list
cloudnatgateways.networking.gdc.goog.patch
cloudnatgateways.networking.gdc.goog.update
cloudnatgateways.networking.gdc.goog.watch
Cloud NAT Manager
cloud-nat-manager

プロジェクト内の Cloud NAT リソースに対して CRUD オペレーションを実行できます。

Zonal
cloudnatgateways.networking.gdc.goog.create
cloudnatgateways.networking.gdc.goog.delete
cloudnatgateways.networking.gdc.goog.get
cloudnatgateways.networking.gdc.goog.list
cloudnatgateways.networking.gdc.goog.patch
cloudnatgateways.networking.gdc.goog.update
cloudnatgateways.networking.gdc.goog.watch
Cloud NAT 閲覧者
cloud-nat-viewer

プロジェクト内の CloudNAT リソース/ステータスを表示できる

Zonal
cloudnatgateways.networking.gdc.goog.get
cloudnatgateways.networking.gdc.goog.list
cloudnatgateways.networking.gdc.goog.watch
カスタムロール プロジェクト管理者
custom-role-project-admin

グローバル
customroles.iam.global.gdc.goog.create
customroles.iam.global.gdc.goog.delete
customroles.iam.global.gdc.goog.get
customroles.iam.global.gdc.goog.list
customroles.iam.global.gdc.goog.patch
customroles.iam.global.gdc.goog.update
customroles.iam.global.gdc.goog.watch
iamroles.iam.global.gdc.goog.get
iamroles.iam.global.gdc.goog.list
roles.rbac.authorization.k8s.io.get

Zonal
customroles.iam.gdc.goog.create
customroles.iam.gdc.goog.delete
customroles.iam.gdc.goog.get
customroles.iam.gdc.goog.list
customroles.iam.gdc.goog.patch
customroles.iam.gdc.goog.update
customroles.iam.gdc.goog.watch
projectroles.resourcemanager.gdc.goog.get
roles.rbac.authorization.k8s.io.get
ダッシュボード編集者
dashboard-editor

Zonal
configmaps.create
configmaps.delete
configmaps.get
configmaps.list
configmaps.patch
configmaps.update
configmaps.watch
dashboards.observability.gdc.goog.delete
dashboards.observability.gdc.goog.get
dashboards.observability.gdc.goog.list
dashboards.observability.gdc.goog.patch
dashboards.observability.gdc.goog.update
dashboards.observability.gdc.goog.watch
ダッシュボード閲覧者
dashboard-viewer

Zonal
dashboards.observability.gdc.goog.get
dashboards.observability.gdc.goog.list
dashboards.observability.gdc.goog.watch
AuditLoggingTarget カスタム リソースのデバッグ
auditloggingtarget-monitor

Zonal
auditloggingtargets.logging.private.gdc.goog.get
auditloggingtargets.logging.private.gdc.goog.list
auditloggingtargets.logging.private.gdc.goog.update
dnsregistrations.network.private.gdc.goog.get
dnsregistrations.network.private.gdc.goog.list
Discovery Engine 管理者
vaisearch-admin

Zonal
agents.conversationai.gdc.goog.create
agents.conversationai.gdc.goog.delete
agents.conversationai.gdc.goog.get
agents.conversationai.gdc.goog.list
agents.conversationai.gdc.goog.search
agents.conversationai.gdc.goog.update
conversations.conversationai.gdc.goog.converse
conversations.conversationai.gdc.goog.create
conversations.conversationai.gdc.goog.delete
conversations.conversationai.gdc.goog.get
conversations.conversationai.gdc.goog.list
conversations.conversationai.gdc.goog.update
datasets.conversationai.gdc.goog.create
datasets.conversationai.gdc.goog.delete
datasets.conversationai.gdc.goog.get
datasets.conversationai.gdc.goog.list
datastores.discoveryengine.gdc.goog.create
datastores.discoveryengine.gdc.goog.delete
datastores.discoveryengine.gdc.goog.get
datastores.discoveryengine.gdc.goog.list
datastores.discoveryengine.gdc.goog.search
datastores.discoveryengine.gdc.goog.update
documents.conversationai.gdc.goog.create
documents.conversationai.gdc.goog.delete
documents.conversationai.gdc.goog.get
documents.conversationai.gdc.goog.list
documents.conversationai.gdc.goog.update
documents.discoveryengine.gdc.goog.create
documents.discoveryengine.gdc.goog.delete
documents.discoveryengine.gdc.goog.get
documents.discoveryengine.gdc.goog.list
documents.discoveryengine.gdc.goog.update
operations.conversationai.gdc.goog.get
sessions.discoveryengine.gdc.goog.answer
sessions.discoveryengine.gdc.goog.create
sessions.discoveryengine.gdc.goog.delete
sessions.discoveryengine.gdc.goog.get
sessions.discoveryengine.gdc.goog.list
sessions.discoveryengine.gdc.goog.update
ディスカバリ エンジン デベロッパー
vaisearch-developer

Zonal
agents.conversationai.gdc.goog.create
agents.conversationai.gdc.goog.delete
agents.conversationai.gdc.goog.get
agents.conversationai.gdc.goog.list
agents.conversationai.gdc.goog.search
agents.conversationai.gdc.goog.update
conversations.conversationai.gdc.goog.converse
conversations.conversationai.gdc.goog.create
conversations.conversationai.gdc.goog.delete
conversations.conversationai.gdc.goog.get
conversations.conversationai.gdc.goog.list
conversations.conversationai.gdc.goog.update
datasets.conversationai.gdc.goog.create
datasets.conversationai.gdc.goog.delete
datasets.conversationai.gdc.goog.get
datasets.conversationai.gdc.goog.list
datastores.discoveryengine.gdc.goog.create
datastores.discoveryengine.gdc.goog.delete
datastores.discoveryengine.gdc.goog.get
datastores.discoveryengine.gdc.goog.list
datastores.discoveryengine.gdc.goog.search
datastores.discoveryengine.gdc.goog.update
documents.conversationai.gdc.goog.create
documents.conversationai.gdc.goog.delete
documents.conversationai.gdc.goog.get
documents.conversationai.gdc.goog.list
documents.conversationai.gdc.goog.update
documents.discoveryengine.gdc.goog.create
documents.discoveryengine.gdc.goog.delete
documents.discoveryengine.gdc.goog.get
documents.discoveryengine.gdc.goog.list
documents.discoveryengine.gdc.goog.update
operations.conversationai.gdc.goog.get
sessions.discoveryengine.gdc.goog.answer
sessions.discoveryengine.gdc.goog.create
sessions.discoveryengine.gdc.goog.delete
sessions.discoveryengine.gdc.goog.get
sessions.discoveryengine.gdc.goog.list
sessions.discoveryengine.gdc.goog.update
外部ロードバランサ閲覧者
external-load-balancer-viewer

プロジェクト内の外部ロードバランサ リソースを表示します。

グローバル
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.watch
forwardingruleexternals.networking.global.gdc.goog.get
forwardingruleexternals.networking.global.gdc.goog.list
forwardingruleexternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.watch
forwardingruleexternals.networking.gdc.goog.get
forwardingruleexternals.networking.gdc.goog.list
forwardingruleexternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.watch
グローバル外部ロードバランサ管理者
external-load-balancer-admin

グローバル プロジェクト内でグローバル外部ロードバランサ リソースを作成して管理します。

グローバル
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
forwardingruleexternals.networking.global.gdc.goog.create
forwardingruleexternals.networking.global.gdc.goog.delete
forwardingruleexternals.networking.global.gdc.goog.get
forwardingruleexternals.networking.global.gdc.goog.list
forwardingruleexternals.networking.global.gdc.goog.patch
forwardingruleexternals.networking.global.gdc.goog.update
forwardingruleexternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
forwardingruleexternals.networking.gdc.goog.create
forwardingruleexternals.networking.gdc.goog.delete
forwardingruleexternals.networking.gdc.goog.get
forwardingruleexternals.networking.gdc.goog.list
forwardingruleexternals.networking.gdc.goog.patch
forwardingruleexternals.networking.gdc.goog.update
forwardingruleexternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
グローバル内部ロードバランサ管理者
internal-load-balancer-admin

グローバル プロジェクト内でグローバル内部ロードバランサ リソースを作成して管理します。

グローバル
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
forwardingruleinternals.networking.global.gdc.goog.create
forwardingruleinternals.networking.global.gdc.goog.delete
forwardingruleinternals.networking.global.gdc.goog.get
forwardingruleinternals.networking.global.gdc.goog.list
forwardingruleinternals.networking.global.gdc.goog.patch
forwardingruleinternals.networking.global.gdc.goog.update
forwardingruleinternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
forwardingruleinternals.networking.gdc.goog.create
forwardingruleinternals.networking.gdc.goog.delete
forwardingruleinternals.networking.gdc.goog.get
forwardingruleinternals.networking.gdc.goog.list
forwardingruleinternals.networking.gdc.goog.patch
forwardingruleinternals.networking.gdc.goog.update
forwardingruleinternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
グローバル内部ロードバランサ閲覧者
internal-load-balancer-viewer

グローバル プロジェクト内のグローバル内部ロードバランサ リソースを表示します。

グローバル
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.watch
forwardingruleinternals.networking.global.gdc.goog.get
forwardingruleinternals.networking.global.gdc.goog.list
forwardingruleinternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.watch
forwardingruleinternals.networking.gdc.goog.get
forwardingruleinternals.networking.gdc.goog.list
forwardingruleinternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.watch
グローバル ロードバランサ デベロッパー
load-balancer-developer

グローバル プロジェクト内でグローバル ロードバランサのヘルスチェックとバックエンド サービスを作成して管理します。

グローバル
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
Harbor インスタンス管理者
harbor-instance-admin

Zonal
harborinstancebackupplans.artifactregistry.gdc.goog.create
harborinstancebackupplans.artifactregistry.gdc.goog.delete
harborinstancebackupplans.artifactregistry.gdc.goog.get
harborinstancebackupplans.artifactregistry.gdc.goog.list
harborinstancebackupplans.artifactregistry.gdc.goog.patch
harborinstancebackupplans.artifactregistry.gdc.goog.update
harborinstancebackupplans.artifactregistry.gdc.goog.watch
harborinstancebackuprepositories.artifactregistry.gdc.goog.create
harborinstancebackuprepositories.artifactregistry.gdc.goog.delete
harborinstancebackuprepositories.artifactregistry.gdc.goog.get
harborinstancebackuprepositories.artifactregistry.gdc.goog.list
harborinstancebackuprepositories.artifactregistry.gdc.goog.patch
harborinstancebackuprepositories.artifactregistry.gdc.goog.update
harborinstancebackuprepositories.artifactregistry.gdc.goog.watch
harborinstancebackups.artifactregistry.gdc.goog.create
harborinstancebackups.artifactregistry.gdc.goog.delete
harborinstancebackups.artifactregistry.gdc.goog.get
harborinstancebackups.artifactregistry.gdc.goog.list
harborinstancebackups.artifactregistry.gdc.goog.patch
harborinstancebackups.artifactregistry.gdc.goog.update
harborinstancebackups.artifactregistry.gdc.goog.watch
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.create
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.delete
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.get
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.list
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.patch
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.update
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.watch
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.create
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.delete
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.get
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.list
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.patch
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.update
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.watch
harborinstanceprojects.artifactregistry.gdc.goog.create
harborinstanceprojects.artifactregistry.gdc.goog.get
harborinstanceprojects.artifactregistry.gdc.goog.patch
harborinstanceprojects.artifactregistry.gdc.goog.update
harborinstanceprojects.artifactregistry.gdc.goog.watch
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.create
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.delete
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.get
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.list
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.patch
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.update
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.watch
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.create
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.delete
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.get
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.list
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.patch
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.update
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.watch
harborinstancerestores.artifactregistry.gdc.goog.create
harborinstancerestores.artifactregistry.gdc.goog.delete
harborinstancerestores.artifactregistry.gdc.goog.get
harborinstancerestores.artifactregistry.gdc.goog.list
harborinstancerestores.artifactregistry.gdc.goog.patch
harborinstancerestores.artifactregistry.gdc.goog.update
harborinstancerestores.artifactregistry.gdc.goog.watch
harborinstances.artifactregistry.gdc.goog.create
harborinstances.artifactregistry.gdc.goog.delete
harborinstances.artifactregistry.gdc.goog.get
harborinstances.artifactregistry.gdc.goog.list
harborinstances.artifactregistry.gdc.goog.patch
harborinstances.artifactregistry.gdc.goog.update
harborinstances.artifactregistry.gdc.goog.watch
Harbor インスタンス閲覧者
harbor-instance-viewer

Zonal
harborinstancebackupplans.artifactregistry.gdc.goog.get
harborinstancebackupplans.artifactregistry.gdc.goog.list
harborinstancebackupplans.artifactregistry.gdc.goog.watch
harborinstancebackuprepositories.artifactregistry.gdc.goog.get
harborinstancebackuprepositories.artifactregistry.gdc.goog.list
harborinstancebackuprepositories.artifactregistry.gdc.goog.watch
harborinstancebackups.artifactregistry.gdc.goog.get
harborinstancebackups.artifactregistry.gdc.goog.list
harborinstancebackups.artifactregistry.gdc.goog.watch
harborinstanceprojects.artifactregistry.gdc.goog.get
harborinstanceprojects.artifactregistry.gdc.goog.watch
harborinstancerestores.artifactregistry.gdc.goog.get
harborinstancerestores.artifactregistry.gdc.goog.list
harborinstancerestores.artifactregistry.gdc.goog.watch
harborinstances.artifactregistry.gdc.goog.get
harborinstances.artifactregistry.gdc.goog.list
harborinstances.artifactregistry.gdc.goog.watch
Harbor プロジェクト作成者
harbor-project-creator

Zonal
harborinstanceprojects.artifactregistry.gdc.goog.create
harborinstanceprojects.artifactregistry.gdc.goog.get
harborinstanceprojects.artifactregistry.gdc.goog.watch
K8S ネットワーク ポリシー管理者
k8s-networkpolicy-admin

Kubernetes クラスタ
networkpolicies.networking.k8s.io.*
KMS 管理者
kms-admin

プロジェクト内の KMS 鍵を管理し、KeyImports と KeyExports を読み取ります。

Zonal
aeadkeys.kms.gdc.goog.create
aeadkeys.kms.gdc.goog.decrypt
aeadkeys.kms.gdc.goog.delete
aeadkeys.kms.gdc.goog.encrypt
aeadkeys.kms.gdc.goog.generatedatakey
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.patch
aeadkeys.kms.gdc.goog.update
aeadkeys.kms.gdc.goog.watch
keyexports.kms.gdc.goog.get
keyexports.kms.gdc.goog.list
keyexports.kms.gdc.goog.watch
keyimports.kms.gdc.goog.get
keyimports.kms.gdc.goog.list
keyimports.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.create
signingkeys.kms.gdc.goog.delete
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.patch
signingkeys.kms.gdc.goog.sign
signingkeys.kms.gdc.goog.update
signingkeys.kms.gdc.goog.watch
KMS 作成者
kms-creator

プロジェクトで KMS 鍵を作成して読み取ります。

Zonal
aeadkeys.kms.gdc.goog.create
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.create
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.watch
KMS デベロッパー
kms-developer

プロジェクト内の KMS 鍵を使用して暗号オペレーションを実行します。

Zonal
aeadkeys.kms.gdc.goog.decrypt
aeadkeys.kms.gdc.goog.encrypt
aeadkeys.kms.gdc.goog.generatedatakey
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.sign
signingkeys.kms.gdc.goog.watch
KMS キー エクスポート管理者
kms-keyexport-admin

プロジェクト内の KMS 鍵を KMS からラップされた鍵としてエクスポートします。

Zonal
keyexports.kms.gdc.goog.*
KMS 鍵インポート管理者
kms-keyimport-admin

KMS 鍵を、プロジェクト内のラップされた鍵として KMS にインポートします。

Zonal
keyimports.kms.gdc.goog.*
KMS 閲覧者
kms-viewer

プロジェクト内の KMS 鍵を読み取ります。

Zonal
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.watch
keyexports.kms.gdc.goog.get
keyexports.kms.gdc.goog.list
keyexports.kms.gdc.goog.watch
keyimports.kms.gdc.goog.get
keyimports.kms.gdc.goog.list
keyimports.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.watch
LibraryAgent ユーザー
libraryagent-user

お客様が Libraryagent デモサービスの API を使用できるようにする

Zonal
shelves.libraryagent.api.v1alpha1.get
shelves.libraryagent.api.v1alpha1.list
ロードバランサ管理者
load-balancer-admin

ロードバランサ管理者

グローバル
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
forwardingruleexternals.networking.global.gdc.goog.create
forwardingruleexternals.networking.global.gdc.goog.delete
forwardingruleexternals.networking.global.gdc.goog.get
forwardingruleexternals.networking.global.gdc.goog.list
forwardingruleexternals.networking.global.gdc.goog.patch
forwardingruleexternals.networking.global.gdc.goog.update
forwardingruleexternals.networking.global.gdc.goog.watch
forwardingruleinternals.networking.global.gdc.goog.create
forwardingruleinternals.networking.global.gdc.goog.delete
forwardingruleinternals.networking.global.gdc.goog.get
forwardingruleinternals.networking.global.gdc.goog.list
forwardingruleinternals.networking.global.gdc.goog.patch
forwardingruleinternals.networking.global.gdc.goog.update
forwardingruleinternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
forwardingruleexternals.networking.gdc.goog.create
forwardingruleexternals.networking.gdc.goog.delete
forwardingruleexternals.networking.gdc.goog.get
forwardingruleexternals.networking.gdc.goog.list
forwardingruleexternals.networking.gdc.goog.patch
forwardingruleexternals.networking.gdc.goog.update
forwardingruleexternals.networking.gdc.goog.watch
forwardingruleinternals.networking.gdc.goog.create
forwardingruleinternals.networking.gdc.goog.delete
forwardingruleinternals.networking.gdc.goog.get
forwardingruleinternals.networking.gdc.goog.list
forwardingruleinternals.networking.gdc.goog.patch
forwardingruleinternals.networking.gdc.goog.update
forwardingruleinternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
ログクエリ
log-query-api-querier

AO プロジェクトのログをクエリするために Log Query API にアクセスします。

Zonal
labels.goog.gdc.logging.v1.get
labels.goog.gdc.logging.v1.list
labelvalues.goog.gdc.logging.v1.get
labelvalues.goog.gdc.logging.v1.list
listlabelsrequests.goog.gdc.logging.v1.get
listlabelsrequests.goog.gdc.logging.v1.list
listlabelsresponses.goog.gdc.logging.v1.get
listlabelsresponses.goog.gdc.logging.v1.list
listlabelvaluesrequests.goog.gdc.logging.v1.get
listlabelvaluesrequests.goog.gdc.logging.v1.list
listlabelvaluesresponses.goog.gdc.logging.v1.get
listlabelvaluesresponses.goog.gdc.logging.v1.list
listlogsfilters.goog.gdc.logging.v1.get
listlogsfilters.goog.gdc.logging.v1.list
listlogsrequests.goog.gdc.logging.v1.get
listlogsrequests.goog.gdc.logging.v1.list
listlogsresponses.goog.gdc.logging.v1.get
listlogsresponses.goog.gdc.logging.v1.list
logs.goog.gdc.logging.v1.get
logs.goog.gdc.logging.v1.list
LoggingRule 作成者
loggingrule-creator

Zonal
loggingrules.logging.gdc.goog.create
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.watch
LoggingRule 編集者
loggingrule-editor

Zonal
loggingrules.logging.gdc.goog.delete
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.patch
loggingrules.logging.gdc.goog.update
loggingrules.logging.gdc.goog.watch
LoggingRule 閲覧者
loggingrule-viewer

Zonal
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.watch
LoggingTarget 作成者
loggingtarget-creator

Zonal
loggingtargets.logging.gdc.goog.create
loggingtargets.logging.gdc.goog.get
loggingtargets.logging.gdc.goog.list
loggingtargets.logging.gdc.goog.watch
LoggingTarget 編集者
loggingtarget-editor

Zonal
loggingtargets.logging.gdc.goog.delete
loggingtargets.logging.gdc.goog.get
loggingtargets.logging.gdc.goog.list
loggingtargets.logging.gdc.goog.patch
loggingtargets.logging.gdc.goog.update
loggingtargets.logging.gdc.goog.watch
LoggingTarget 閲覧者
loggingtarget-viewer

Zonal
loggingtargets.logging.gdc.goog.get
loggingtargets.logging.gdc.goog.list
loggingtargets.logging.gdc.goog.watch
マネージド DNS プロジェクト管理者
managed-dns-project-admin

グローバル
manageddnszones.networking.global.gdc.goog.*
resourcerecordsets.networking.global.gdc.goog.*
マネージド DNS プロジェクト閲覧者
managed-dns-project-viewer

グローバル
manageddnszones.networking.global.gdc.goog.get
manageddnszones.networking.global.gdc.goog.list
resourcerecordsets.networking.global.gdc.goog.get
resourcerecordsets.networking.global.gdc.goog.list
Marketplace カタログ編集者
marketplace-catalog-editor

サービス カタログの表示、一覧表示、作成、更新、削除を行います。

Zonal
servicecatalogs.marketplace.global.gdc.goog.create
servicecatalogs.marketplace.global.gdc.goog.delete
servicecatalogs.marketplace.global.gdc.goog.get
servicecatalogs.marketplace.global.gdc.goog.list
servicecatalogs.marketplace.global.gdc.goog.patch
servicecatalogs.marketplace.global.gdc.goog.update
servicecatalogs.marketplace.global.gdc.goog.watch
Marketplace 編集者
marketplace-editor

サービス インスタンスの作成、更新、削除を行います。

Zonal
serviceinstances.marketplace.gdc.goog.create
serviceinstances.marketplace.gdc.goog.delete
serviceinstances.marketplace.gdc.goog.get
serviceinstances.marketplace.gdc.goog.list
serviceinstances.marketplace.gdc.goog.patch
serviceinstances.marketplace.gdc.goog.update
serviceinstances.marketplace.gdc.goog.watch
Marketplace サービス ユーザー
marketplace-service-consumer

サービス インスタンスの作成、更新、削除を行います。

Zonal
serviceinstances.marketplace.gdc.goog.create
serviceinstances.marketplace.gdc.goog.delete
serviceinstances.marketplace.gdc.goog.get
serviceinstances.marketplace.gdc.goog.list
serviceinstances.marketplace.gdc.goog.patch
serviceinstances.marketplace.gdc.goog.update
serviceinstances.marketplace.gdc.goog.watch
Marketplace サービス編集者
marketplace-service-editor

サービス バージョンとサービスの説明の表示、一覧表示、作成、更新、削除を行います。

Zonal
servicedescriptions.marketplace.gdc.goog.create
servicedescriptions.marketplace.gdc.goog.delete
servicedescriptions.marketplace.gdc.goog.get
servicedescriptions.marketplace.gdc.goog.list
servicedescriptions.marketplace.gdc.goog.patch
servicedescriptions.marketplace.gdc.goog.update
servicedescriptions.marketplace.gdc.goog.watch
serviceversions.marketplace.gdc.goog.create
serviceversions.marketplace.gdc.goog.delete
serviceversions.marketplace.gdc.goog.get
serviceversions.marketplace.gdc.goog.list
serviceversions.marketplace.gdc.goog.patch
serviceversions.marketplace.gdc.goog.update
serviceversions.marketplace.gdc.goog.watch
Marketplace サービス閲覧者
marketplace-service-viewer

サービス バージョン、サービスの説明、サービス カタログ、カタログバンドルを表示して一覧表示します。

Zonal
catalogbundle.marketplaceview.gdc.goog.get
catalogbundle.marketplaceview.gdc.goog.list
catalogbundle.marketplaceview.gdc.goog.watch
servicecatalog.marketplace.global.gdc.goog.get
servicecatalog.marketplace.global.gdc.goog.list
servicecatalog.marketplace.global.gdc.goog.watch
servicedescription.marketplace.gdc.goog.get
servicedescription.marketplace.gdc.goog.list
servicedescription.marketplace.gdc.goog.watch
serviceversion.marketplace.gdc.goog.get
serviceversion.marketplace.gdc.goog.list
serviceversion.marketplace.gdc.goog.watch
MonitoringRule 編集者
monitoringrule-editor

Zonal
monitoringrules.monitoring.gdc.goog.delete
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.patch
monitoringrules.monitoring.gdc.goog.update
monitoringrules.monitoring.gdc.goog.watch
MonitoringRule 閲覧者
monitoringrule-viewer

Zonal
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.watch
MonitoringTarget 編集者
monitoringtarget-editor

Zonal
monitoringtargets.monitoring.gdc.goog.delete
monitoringtargets.monitoring.gdc.goog.get
monitoringtargets.monitoring.gdc.goog.list
monitoringtargets.monitoring.gdc.goog.patch
monitoringtargets.monitoring.gdc.goog.update
monitoringtargets.monitoring.gdc.goog.watch
MonitoringTarget 閲覧者
monitoringtarget-viewer

Zonal
monitoringtargets.monitoring.gdc.goog.get
monitoringtargets.monitoring.gdc.goog.list
monitoringtargets.monitoring.gdc.goog.watch
NAT 閲覧者
nat-viewer

Kubernetes クラスタ
deployments.apps.get
deployments.apps.list
Namespace 管理者
namespace-admin

プロジェクト内のすべてのリソースを管理する

Kubernetes クラスタ
*.*.*
ObservabilityPipeline 編集者
observabilitypipeline-editor

Zonal
observabilitypipelines.observability.gdc.goog.delete
observabilitypipelines.observability.gdc.goog.get
observabilitypipelines.observability.gdc.goog.list
observabilitypipelines.observability.gdc.goog.patch
observabilitypipelines.observability.gdc.goog.update
observabilitypipelines.observability.gdc.goog.watch
ObservabilityPipeline 閲覧者
observabilitypipeline-viewer

Zonal
observabilitypipelines.observability.gdc.goog.get
observabilitypipelines.observability.gdc.goog.list
observabilitypipelines.observability.gdc.goog.watch
プロジェクト バケット管理者
project-bucket-admin

グローバル
bucketlocations.object.global.gdc.goog.get
bucketlocations.object.global.gdc.goog.list
buckets.object.global.gdc.goog.*

Zonal
bucketinfos.object.gdc.goog.get
bucketinfos.object.gdc.goog.list
bucketinfos.object.gdc.goog.patch
bucketinfos.object.gdc.goog.update
bucketinfos.object.gdc.goog.watch
buckets.object.gdc.goog.*
プロジェクト バケット オブジェクト管理者
project-bucket-object-admin

グローバル
buckets.object.global.gdc.goog.get
buckets.object.global.gdc.goog.list
buckets.object.global.gdc.goog.read-object
buckets.object.global.gdc.goog.watch
buckets.object.global.gdc.goog.write-object

Zonal
bucketinfos.object.gdc.goog.get
bucketinfos.object.gdc.goog.list
buckets.object.gdc.goog.get
buckets.object.gdc.goog.list
buckets.object.gdc.goog.read-object
buckets.object.gdc.goog.watch
buckets.object.gdc.goog.write-object
プロジェクト バケット オブジェクト閲覧者
project-bucket-object-viewer

グローバル
buckets.object.global.gdc.goog.get
buckets.object.global.gdc.goog.list
buckets.object.global.gdc.goog.read-object
buckets.object.global.gdc.goog.watch

Zonal
bucketinfos.object.gdc.goog.get
bucketinfos.object.gdc.goog.list
buckets.object.gdc.goog.get
buckets.object.gdc.goog.list
buckets.object.gdc.goog.read-object
buckets.object.gdc.goog.watch
Project Cortex Alertmanager 編集者
project-cortex-alertmanager-editor

Zonal
${.ProjectNamespace}-cortex-system/cortex-alertmanager.istio.resourcemanager.gdc.goog.*
loggingrules.logging.gdc.goog.create
loggingrules.logging.gdc.goog.delete
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.patch
loggingrules.logging.gdc.goog.update
loggingrules.monitoring.gdc.goog.create
loggingrules.monitoring.gdc.goog.delete
loggingrules.monitoring.gdc.goog.get
loggingrules.monitoring.gdc.goog.list
loggingrules.monitoring.gdc.goog.patch
loggingrules.monitoring.gdc.goog.update
monitoringrules.monitoring.gdc.goog.create
monitoringrules.monitoring.gdc.goog.delete
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.patch
monitoringrules.monitoring.gdc.goog.update
Project Cortex Alertmanager 閲覧者
project-cortex-alertmanager-viewer

Zonal
${.ProjectNamespace}-cortex-system/cortex-alertmanager.istio.resourcemanager.gdc.goog.*
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.monitoring.gdc.goog.get
loggingrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
Project Cortex Prometheus 閲覧者
project-cortex-prometheus-viewer

Zonal
${.ProjectNamespace}-cortex-system/cortex-metrics.istio.resourcemanager.gdc.goog.*
${.ProjectNamespace}-cortex-system/cortex-prometheus.istio.resourcemanager.gdc.goog.*
プロジェクト データベース管理者
project-db-admin

グローバル
backupplans.alloydbomni.dbadmin.gdc.goog.create
backupplans.alloydbomni.dbadmin.gdc.goog.delete
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.patch
backupplans.alloydbomni.dbadmin.gdc.goog.update
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.create
backupplans.oracle.dbadmin.gdc.goog.delete
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.patch
backupplans.oracle.dbadmin.gdc.goog.update
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.create
backupplans.postgresql.dbadmin.gdc.goog.delete
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.patch
backupplans.postgresql.dbadmin.gdc.goog.update
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
configmaps.get
dbclusters.alloydbomni.dbadmin.gdc.goog.create
dbclusters.alloydbomni.dbadmin.gdc.goog.delete
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.create
dbclusters.oracle.dbadmin.gdc.goog.delete
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.create
dbclusters.postgresql.dbadmin.gdc.goog.delete
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.create
migrations.alloydbomni.dbadmin.gdc.goog.delete
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.create
migrations.postgresql.dbadmin.gdc.goog.delete
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.create
replications.postgresql.dbadmin.gdc.goog.delete
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.create
restores.alloydbomni.dbadmin.gdc.goog.delete
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.create
restores.oracle.dbadmin.gdc.goog.delete
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.create
restores.postgresql.dbadmin.gdc.goog.delete
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.get
secrets.update

Zonal
backupplans.alloydbomni.dbadmin.gdc.goog.create
backupplans.alloydbomni.dbadmin.gdc.goog.delete
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.patch
backupplans.alloydbomni.dbadmin.gdc.goog.update
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.create
backupplans.oracle.dbadmin.gdc.goog.delete
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.patch
backupplans.oracle.dbadmin.gdc.goog.update
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.create
backupplans.postgresql.dbadmin.gdc.goog.delete
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.patch
backupplans.postgresql.dbadmin.gdc.goog.update
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
configmaps.get
dbclusters.alloydbomni.dbadmin.gdc.goog.create
dbclusters.alloydbomni.dbadmin.gdc.goog.delete
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.create
dbclusters.oracle.dbadmin.gdc.goog.delete
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.create
dbclusters.postgresql.dbadmin.gdc.goog.delete
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.create
migrations.alloydbomni.dbadmin.gdc.goog.delete
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.create
migrations.postgresql.dbadmin.gdc.goog.delete
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.create
replications.postgresql.dbadmin.gdc.goog.delete
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.create
restores.alloydbomni.dbadmin.gdc.goog.delete
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.create
restores.oracle.dbadmin.gdc.goog.delete
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.create
restores.postgresql.dbadmin.gdc.goog.delete
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.get
secrets.update
プロジェクト DB 編集者
project-db-editor

グローバル
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.update

Zonal
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.update
プロジェクト DB 閲覧者
project-db-viewer

グローバル
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch

Zonal
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
プロジェクト FileShare 管理者
project-fileshare-admin

Zonal
exportgroupbindings.file.gdc.goog.create
exportgroupbindings.file.gdc.goog.delete
exportgroupbindings.file.gdc.goog.get
exportgroupbindings.file.gdc.goog.list
exportgroupbindings.file.gdc.goog.patch
exportgroupbindings.file.gdc.goog.update
exportgroupbindings.file.gdc.goog.watch
exportgroups.file.gdc.goog.create
exportgroups.file.gdc.goog.delete
exportgroups.file.gdc.goog.get
exportgroups.file.gdc.goog.list
exportgroups.file.gdc.goog.patch
exportgroups.file.gdc.goog.update
exportgroups.file.gdc.goog.watch
fileshares.file.gdc.goog.create
fileshares.file.gdc.goog.delete
fileshares.file.gdc.goog.get
fileshares.file.gdc.goog.list
fileshares.file.gdc.goog.patch
fileshares.file.gdc.goog.update
fileshares.file.gdc.goog.watch
プロジェクト Grafana 閲覧者
project-grafana-viewer

Zonal
${.ProjectNamespace}-grafana-system/grafana.istio.resourcemanager.gdc.goog.*
プロジェクト IAM 管理者
project-iam-admin

プロジェクトの権限を管理します

グローバル
customroles.iam.global.gdc.goog.create
customroles.iam.global.gdc.goog.delete
customroles.iam.global.gdc.goog.get
customroles.iam.global.gdc.goog.list
customroles.iam.global.gdc.goog.patch
customroles.iam.global.gdc.goog.update
customroles.iam.global.gdc.goog.watch
iamrolebindings.iam.global.gdc.goog.create
iamrolebindings.iam.global.gdc.goog.delete
iamrolebindings.iam.global.gdc.goog.get
iamrolebindings.iam.global.gdc.goog.list
iamrolebindings.iam.global.gdc.goog.patch
iamrolebindings.iam.global.gdc.goog.update
iamrolebindings.iam.global.gdc.goog.watch
iamroles.iam.global.gdc.goog.create
iamroles.iam.global.gdc.goog.delete
iamroles.iam.global.gdc.goog.get
iamroles.iam.global.gdc.goog.list
iamroles.iam.global.gdc.goog.patch
iamroles.iam.global.gdc.goog.update
iamroles.iam.global.gdc.goog.watch
projectserviceaccounts.resourcemanager.global.gdc.goog.create
projectserviceaccounts.resourcemanager.global.gdc.goog.delete
projectserviceaccounts.resourcemanager.global.gdc.goog.get
projectserviceaccounts.resourcemanager.global.gdc.goog.list
projectserviceaccounts.resourcemanager.global.gdc.goog.patch
projectserviceaccounts.resourcemanager.global.gdc.goog.update
rolebindings.rbac.authorization.k8s.io.create
rolebindings.rbac.authorization.k8s.io.delete
rolebindings.rbac.authorization.k8s.io.get
rolebindings.rbac.authorization.k8s.io.list
rolebindings.rbac.authorization.k8s.io.patch
rolebindings.rbac.authorization.k8s.io.update
rolebindings.rbac.authorization.k8s.io.watch
roles.rbac.authorization.k8s.io.create
roles.rbac.authorization.k8s.io.delete
roles.rbac.authorization.k8s.io.get
roles.rbac.authorization.k8s.io.list
roles.rbac.authorization.k8s.io.patch
roles.rbac.authorization.k8s.io.update
roles.rbac.authorization.k8s.io.watch

Zonal
*.visibility.resourcemanager.gdc.goog.get
customroles.iam.gdc.goog.create
customroles.iam.gdc.goog.delete
customroles.iam.gdc.goog.get
customroles.iam.gdc.goog.list
customroles.iam.gdc.goog.patch
customroles.iam.gdc.goog.update
customroles.iam.gdc.goog.watch
projectrolebindings.resourcemanager.gdc.goog.create
projectrolebindings.resourcemanager.gdc.goog.delete
projectrolebindings.resourcemanager.gdc.goog.get
projectrolebindings.resourcemanager.gdc.goog.list
projectrolebindings.resourcemanager.gdc.goog.patch
projectrolebindings.resourcemanager.gdc.goog.update
projectrolebindings.resourcemanager.gdc.goog.watch
projectroles.resourcemanager.gdc.goog.create
projectroles.resourcemanager.gdc.goog.delete
projectroles.resourcemanager.gdc.goog.get
projectroles.resourcemanager.gdc.goog.list
projectroles.resourcemanager.gdc.goog.patch
projectroles.resourcemanager.gdc.goog.update
projectroles.resourcemanager.gdc.goog.watch
projectserviceaccounts.resourcemanager.gdc.goog.create
projectserviceaccounts.resourcemanager.gdc.goog.delete
projectserviceaccounts.resourcemanager.gdc.goog.get
projectserviceaccounts.resourcemanager.gdc.goog.list
projectserviceaccounts.resourcemanager.gdc.goog.patch
projectserviceaccounts.resourcemanager.gdc.goog.update
projectserviceaccounts.resourcemanager.gdc.goog.watch
rolebindings.rbac.authorization.k8s.io.create
rolebindings.rbac.authorization.k8s.io.delete
rolebindings.rbac.authorization.k8s.io.get
rolebindings.rbac.authorization.k8s.io.list
rolebindings.rbac.authorization.k8s.io.patch
rolebindings.rbac.authorization.k8s.io.update
rolebindings.rbac.authorization.k8s.io.watch
roles.rbac.authorization.k8s.io.create
roles.rbac.authorization.k8s.io.delete
roles.rbac.authorization.k8s.io.get
roles.rbac.authorization.k8s.io.list
roles.rbac.authorization.k8s.io.patch
roles.rbac.authorization.k8s.io.update
roles.rbac.authorization.k8s.io.watch
standardclusterrolebindings.iam.gdc.goog.create
standardclusterrolebindings.iam.gdc.goog.delete
standardclusterrolebindings.iam.gdc.goog.get
standardclusterrolebindings.iam.gdc.goog.list
standardclusterrolebindings.iam.gdc.goog.patch
standardclusterrolebindings.iam.gdc.goog.update
standardclusterrolebindings.iam.gdc.goog.watch
standardclusterroles.iam.gdc.goog.create
standardclusterroles.iam.gdc.goog.delete
standardclusterroles.iam.gdc.goog.get
standardclusterroles.iam.gdc.goog.list
standardclusterroles.iam.gdc.goog.patch
standardclusterroles.iam.gdc.goog.update
standardclusterroles.iam.gdc.goog.watch
プロジェクト メンテナンス ポリシー管理者
project-mp-admin

Zonal
maintenancepolicies.maintenance.goog.create
maintenancepolicies.maintenance.goog.delete
maintenancepolicies.maintenance.goog.get
maintenancepolicies.maintenance.goog.list
maintenancepolicies.maintenance.goog.patch
maintenancepolicies.maintenance.goog.update
maintenancepolicies.maintenance.goog.watch
maintenancepolicybindings.maintenance.goog.create
maintenancepolicybindings.maintenance.goog.delete
maintenancepolicybindings.maintenance.goog.get
maintenancepolicybindings.maintenance.goog.list
maintenancepolicybindings.maintenance.goog.patch
maintenancepolicybindings.maintenance.goog.update
maintenancepolicybindings.maintenance.goog.watch
プロジェクト メンテナンス ポリシー バインディング編集者
project-mpb-editor

Zonal
maintenancepolicybindings.maintenance.goog.create
maintenancepolicybindings.maintenance.goog.delete
maintenancepolicybindings.maintenance.goog.get
maintenancepolicybindings.maintenance.goog.list
maintenancepolicybindings.maintenance.goog.patch
maintenancepolicybindings.maintenance.goog.update
maintenancepolicybindings.maintenance.goog.watch
プロジェクト メンテナンス ポリシー バインディング閲覧者
project-mpb-viewer

Zonal
maintenancepolicybindings.maintenance.goog.get
maintenancepolicybindings.maintenance.goog.list
maintenancepolicybindings.maintenance.goog.watch
プロジェクト メンテナンス ポリシー編集者
project-mp-editor

Zonal
maintenancepolicies.maintenance.goog.create
maintenancepolicies.maintenance.goog.delete
maintenancepolicies.maintenance.goog.get
maintenancepolicies.maintenance.goog.list
maintenancepolicies.maintenance.goog.patch
maintenancepolicies.maintenance.goog.update
maintenancepolicies.maintenance.goog.watch
プロジェクト メンテナンス ポリシー閲覧者
project-mp-viewer

Zonal
maintenancepolicies.maintenance.goog.get
maintenancepolicies.maintenance.goog.list
maintenancepolicies.maintenance.goog.watch
プロジェクト ネットワーク ポリシー管理者
project-networkpolicy-admin

グローバル
projectnetworkpolicies.networking.global.gdc.goog.create
projectnetworkpolicies.networking.global.gdc.goog.delete
projectnetworkpolicies.networking.global.gdc.goog.get
projectnetworkpolicies.networking.global.gdc.goog.list
projectnetworkpolicies.networking.global.gdc.goog.patch
projectnetworkpolicies.networking.global.gdc.goog.update
projectnetworkpolicies.networking.global.gdc.goog.watch
projectnetworkpolicyreplicas.networking.global.gdc.goog.create
projectnetworkpolicyreplicas.networking.global.gdc.goog.delete
projectnetworkpolicyreplicas.networking.global.gdc.goog.get
projectnetworkpolicyreplicas.networking.global.gdc.goog.list
projectnetworkpolicyreplicas.networking.global.gdc.goog.patch
projectnetworkpolicyreplicas.networking.global.gdc.goog.update
projectnetworkpolicyreplicas.networking.global.gdc.goog.watch

Zonal
projectnetworkpolicies.networking.gdc.goog.create
projectnetworkpolicies.networking.gdc.goog.delete
projectnetworkpolicies.networking.gdc.goog.get
projectnetworkpolicies.networking.gdc.goog.list
projectnetworkpolicies.networking.gdc.goog.patch
projectnetworkpolicies.networking.gdc.goog.update
projectnetworkpolicies.networking.gdc.goog.watch
プロジェクト割り当て管理者
zonal-project-quota-admin

組織のゾーン プロジェクト レベルの割り当てリソースを管理します

Zonal
quotavaluereplicas.quotamanagement.global.gdc.goog.create
quotavaluereplicas.quotamanagement.global.gdc.goog.delete
quotavaluereplicas.quotamanagement.global.gdc.goog.get
quotavaluereplicas.quotamanagement.global.gdc.goog.list
quotavaluereplicas.quotamanagement.global.gdc.goog.patch
quotavaluereplicas.quotamanagement.global.gdc.goog.update
quotavaluereplicas.quotamanagement.global.gdc.goog.watch
プロジェクト割り当て管理者
project-quota-admin

組織のグローバル プロジェクト レベルの割り当てリソースを管理します

グローバル
quotavalues.quotamanagement.global.gdc.goog.create
quotavalues.quotamanagement.global.gdc.goog.delete
quotavalues.quotamanagement.global.gdc.goog.get
quotavalues.quotamanagement.global.gdc.goog.list
quotavalues.quotamanagement.global.gdc.goog.patch
quotavalues.quotamanagement.global.gdc.goog.update
quotavalues.quotamanagement.global.gdc.goog.watch
プロジェクト閲覧者
project-viewer

Zonal
*.visibility.resourcemanager.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.list
clusterinfos.resourcemanager.private.gdc.goog.watch
customresourcedefinitions.apiextensions.k8s.io.get
customresourcedefinitions.apiextensions.k8s.io.list
customresourcedefinitions.apiextensions.k8s.io.watch
projectrolebindings.resourcemanager.gdc.goog.get
projectrolebindings.resourcemanager.gdc.goog.list
projectrolebindings.resourcemanager.gdc.goog.watch
projectroles.resourcemanager.gdc.goog.get
projectroles.resourcemanager.gdc.goog.list
projectroles.resourcemanager.gdc.goog.watch
rolebindings.rbac.authorization.k8s.io.get
rolebindings.rbac.authorization.k8s.io.list
rolebindings.rbac.authorization.k8s.io.watch
roles.rbac.authorization.k8s.io.get
roles.rbac.authorization.k8s.io.list
roles.rbac.authorization.k8s.io.watch
プロジェクト仮想マシン管理者
project-vm-admin

プロジェクトの Namespace 内の VM を管理します。

グローバル
virtualmachineimages.virtualmachine.global.gdc.goog.get
virtualmachineimages.virtualmachine.global.gdc.goog.list
virtualmachineimages.virtualmachine.global.gdc.goog.watch
volumereplicationrelationships.storage.global.gdc.goog.create
volumereplicationrelationships.storage.global.gdc.goog.delete
volumereplicationrelationships.storage.global.gdc.goog.get
volumereplicationrelationships.storage.global.gdc.goog.list
volumereplicationrelationships.storage.global.gdc.goog.patch
volumereplicationrelationships.storage.global.gdc.goog.update
volumereplicationrelationships.storage.global.gdc.goog.watch

Zonal
virtualmachineaccessrequests.virtualmachine.gdc.goog.create
virtualmachineaccessrequests.virtualmachine.gdc.goog.delete
virtualmachineaccessrequests.virtualmachine.gdc.goog.get
virtualmachineaccessrequests.virtualmachine.gdc.goog.list
virtualmachineaccessrequests.virtualmachine.gdc.goog.patch
virtualmachineaccessrequests.virtualmachine.gdc.goog.update
virtualmachineaccessrequests.virtualmachine.gdc.goog.watch
virtualmachinebackupplans.virtualmachine.gdc.goog.delete
virtualmachinebackupplans.virtualmachine.gdc.goog.get
virtualmachinebackupplans.virtualmachine.gdc.goog.list
virtualmachinebackupplans.virtualmachine.gdc.goog.watch
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.create
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.delete
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.get
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.list
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.patch
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.update
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.watch
virtualmachinebackuprequests.virtualmachine.gdc.goog.create
virtualmachinebackuprequests.virtualmachine.gdc.goog.delete
virtualmachinebackuprequests.virtualmachine.gdc.goog.get
virtualmachinebackuprequests.virtualmachine.gdc.goog.list
virtualmachinebackuprequests.virtualmachine.gdc.goog.watch
virtualmachinebackups.virtualmachine.gdc.goog.get
virtualmachinebackups.virtualmachine.gdc.goog.list
virtualmachinebackups.virtualmachine.gdc.goog.watch
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.create
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.delete
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.get
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.list
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.watch
virtualmachinedisks.virtualmachine.gdc.goog.create
virtualmachinedisks.virtualmachine.gdc.goog.delete
virtualmachinedisks.virtualmachine.gdc.goog.get
virtualmachinedisks.virtualmachine.gdc.goog.list
virtualmachinedisks.virtualmachine.gdc.goog.patch
virtualmachinedisks.virtualmachine.gdc.goog.update
virtualmachinedisks.virtualmachine.gdc.goog.watch
virtualmachineexternalaccesses.virtualmachine.gdc.goog.create
virtualmachineexternalaccesses.virtualmachine.gdc.goog.delete
virtualmachineexternalaccesses.virtualmachine.gdc.goog.get
virtualmachineexternalaccesses.virtualmachine.gdc.goog.list
virtualmachineexternalaccesses.virtualmachine.gdc.goog.patch
virtualmachineexternalaccesses.virtualmachine.gdc.goog.update
virtualmachineexternalaccesses.virtualmachine.gdc.goog.watch
virtualmachineimages.virtualmachine.gdc.goog.get
virtualmachineimages.virtualmachine.gdc.goog.list
virtualmachineimages.virtualmachine.gdc.goog.watch
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.create
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.delete
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.get
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.list
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.patch
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.update
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.watch
virtualmachinerestorerequests.virtualmachine.gdc.goog.create
virtualmachinerestorerequests.virtualmachine.gdc.goog.delete
virtualmachinerestorerequests.virtualmachine.gdc.goog.get
virtualmachinerestorerequests.virtualmachine.gdc.goog.list
virtualmachinerestorerequests.virtualmachine.gdc.goog.watch
virtualmachinerestores.virtualmachine.gdc.goog.delete
virtualmachinerestores.virtualmachine.gdc.goog.get
virtualmachinerestores.virtualmachine.gdc.goog.list
virtualmachinerestores.virtualmachine.gdc.goog.watch
virtualmachines.virtualmachine.gdc.goog.console
virtualmachines.virtualmachine.gdc.goog.create
virtualmachines.virtualmachine.gdc.goog.delete
virtualmachines.virtualmachine.gdc.goog.get
virtualmachines.virtualmachine.gdc.goog.getmetadata
virtualmachines.virtualmachine.gdc.goog.list
virtualmachines.virtualmachine.gdc.goog.patch
virtualmachines.virtualmachine.gdc.goog.setmetadata
virtualmachines.virtualmachine.gdc.goog.update
virtualmachines.virtualmachine.gdc.goog.watch
virtualmachines/restart.virtualmachineoperations.gdc.goog.update
プロジェクト VirtualMachine イメージ管理者
project-vm-image-admin

プロジェクト Namespace の VM イメージを管理します。

グローバル
virtualmachineimages.virtualmachine.global.gdc.goog.get
virtualmachineimages.virtualmachine.global.gdc.goog.list
virtualmachineimages.virtualmachine.global.gdc.goog.watch

Zonal
buckets.object.gdc.goog.create
buckets.object.gdc.goog.delete
buckets.object.gdc.goog.get
buckets.object.gdc.goog.list
buckets.object.gdc.goog.patch
buckets.object.gdc.goog.read-object
buckets.object.gdc.goog.update
buckets.object.gdc.goog.watch
buckets.object.gdc.goog.write-object
virtualmachineimage.virtualmachineview.gdc.goog.get
virtualmachineimage.virtualmachineview.gdc.goog.list
virtualmachineimage.virtualmachineview.gdc.goog.watch
virtualmachineimageimports.virtualmachine.gdc.goog.create
virtualmachineimageimports.virtualmachine.gdc.goog.delete
virtualmachineimageimports.virtualmachine.gdc.goog.get
virtualmachineimageimports.virtualmachine.gdc.goog.list
virtualmachineimageimports.virtualmachine.gdc.goog.patch
virtualmachineimageimports.virtualmachine.gdc.goog.update
virtualmachineimageimports.virtualmachine.gdc.goog.watch
virtualmachineimages.virtualmachine.gdc.goog.get
virtualmachineimages.virtualmachine.gdc.goog.list
virtualmachineimages.virtualmachine.gdc.goog.watch
SIEM エクスポート組織の作成者
siemexport-org-creator

Zonal
secrets.create
secrets.get
secrets.list
secrets.watch
siemorgforwarders.logging.gdc.goog.create
siemorgforwarders.logging.gdc.goog.get
siemorgforwarders.logging.gdc.goog.list
siemorgforwarders.logging.gdc.goog.watch
SIEM エクスポート組織編集者
siemexport-org-editor

Zonal
secrets.delete
secrets.get
secrets.list
secrets.patch
secrets.update
secrets.watch
siemorgforwarders.logging.gdc.goog.delete
siemorgforwarders.logging.gdc.goog.get
siemorgforwarders.logging.gdc.goog.list
siemorgforwarders.logging.gdc.goog.patch
siemorgforwarders.logging.gdc.goog.update
siemorgforwarders.logging.gdc.goog.watch
SIEM エクスポート組織閲覧者
siemexport-org-viewer

Zonal
secrets.get
secrets.list
secrets.watch
siemorgforwarders.logging.gdc.goog.get
siemorgforwarders.logging.gdc.goog.list
siemorgforwarders.logging.gdc.goog.watch
シークレット管理者
secret-admin

グローバル
secrets.create
secrets.delete
secrets.get
secrets.list
secrets.patch
secrets.update

Zonal
secrets.create
secrets.delete
secrets.get
secrets.list
secrets.patch
secrets.update
secrets.watch
シークレット閲覧者
secret-viewer

グローバル
secrets.get
secrets.list
secrets.watch

Zonal
secrets.get
secrets.list
secrets.watch
標準クラスタ管理者
standard-cluster-admin

Standard クラスタの作成と更新を管理します

Zonal
*.visibility.resourcemanager.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.list
clusterinfos.resourcemanager.private.gdc.goog.watch
clusters.cluster.gdc.goog.create
clusters.cluster.gdc.goog.delete
clusters.cluster.gdc.goog.get
clusters.cluster.gdc.goog.list
clusters.cluster.gdc.goog.patch
clusters.cluster.gdc.goog.update
clusters.cluster.gdc.goog.watch
projectbindings.resourcemanager.gdc.goog.create
projectbindings.resourcemanager.gdc.goog.delete
projectbindings.resourcemanager.gdc.goog.get
projectbindings.resourcemanager.gdc.goog.list
projectbindings.resourcemanager.gdc.goog.watch
projects.resourcemanager.gdc.goog.get
projects.resourcemanager.gdc.goog.list
projects.resourcemanager.gdc.goog.watch
userclusterupgraderequests.cluster.gdc.goog.create
userclusterupgraderequests.cluster.gdc.goog.delete
userclusterupgraderequests.cluster.gdc.goog.get
userclusterupgraderequests.cluster.gdc.goog.list
userclusterupgraderequests.cluster.gdc.goog.patch
userclusterupgraderequests.cluster.gdc.goog.update
userclusterupgraderequests.cluster.gdc.goog.watch
userclusterupgrades.upgrade.private.gdc.goog.create
userclusterupgrades.upgrade.private.gdc.goog.delete
userclusterupgrades.upgrade.private.gdc.goog.get
userclusterupgrades.upgrade.private.gdc.goog.list
userclusterupgrades.upgrade.private.gdc.goog.patch
userclusterupgrades.upgrade.private.gdc.goog.update
userclusterupgrades.upgrade.private.gdc.goog.watch
サブネット プロジェクト管理者
subnet-project-admin

グローバル
subnets.ipam.global.gdc.goog.create
subnets.ipam.global.gdc.goog.delete
subnets.ipam.global.gdc.goog.get
subnets.ipam.global.gdc.goog.list
subnets.ipam.global.gdc.goog.patch
subnets.ipam.global.gdc.goog.update
subnets.ipam.global.gdc.goog.watch

Zonal
subnets.ipam.gdc.goog.create
subnets.ipam.gdc.goog.customized-allocate
subnets.ipam.gdc.goog.delete
subnets.ipam.gdc.goog.get
subnets.ipam.gdc.goog.list
subnets.ipam.gdc.goog.patch
subnets.ipam.gdc.goog.update
subnets.ipam.gdc.goog.watch
サブネット プロジェクト オペレータ
subnet-project-operator

Zonal
subnets.ipam.gdc.goog.create
subnets.ipam.gdc.goog.delete
subnets.ipam.gdc.goog.get
subnets.ipam.gdc.goog.list
subnets.ipam.gdc.goog.patch
subnets.ipam.gdc.goog.update
subnets.ipam.gdc.goog.watch
Vertex AI 予測ユーザー
vertex-ai-prediction-user

AI Platform エンドポイントで予測リクエストと説明リクエストを実行します。

Zonal
endpoints.aiplatform.googleapis.com.explain
endpoints.aiplatform.googleapis.com.predict
Workbench Notebooks 管理者
workbench-notebooks-admin

Workbench ノートブックの作成、読み取り、削除アクセス権。ClusterInfos に対する読み取りアクセス権

Zonal
clusterinfos.resourcemanager.private.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.list
notebook/notebook-root.istio.resourcemanager.gdc.goog.*
notebooks.aiplatform.gdc.goog.create
notebooks.aiplatform.gdc.goog.delete
notebooks.aiplatform.gdc.goog.deletecollection
notebooks.aiplatform.gdc.goog.get
notebooks.aiplatform.gdc.goog.list
notebooks.aiplatform.gdc.goog.patch
notebooks.aiplatform.gdc.goog.update
notebooks.aiplatform.gdc.goog.watch
notebooks/status.aiplatform.gdc.goog.get
notebooks/status.aiplatform.gdc.goog.list
Workbench Notebooks 閲覧者
workbench-notebooks-viewer

Workbench ノートブックに対する読み取りアクセス権

Zonal
notebook/notebook-root.istio.resourcemanager.gdc.goog.*
notebooks.aiplatform.gdc.goog.get
notebooks.aiplatform.gdc.goog.list
notebooks/status.aiplatform.gdc.goog.get
notebooks/status.aiplatform.gdc.goog.list
ワークロード閲覧者
workload-viewer

Kubernetes クラスタ
deployments.apps.get
deployments.apps.list
deployments.apps.watch
pods.get
pods.list
pods.watch