Permissões de papéis predefinidos para projetos

Esta referência detalha os papéis e permissões predefinidos disponíveis no Google Distributed Cloud (GDC) com isolamento físico. Estas informações são destinadas a públicos-alvo do grupo de operadores de aplicativos, como equipes de DevOps, ao gerenciar o acesso a recursos para envolvidos no projeto nas implantações. Para mais informações, consulte Públicos-alvo da documentação do GDC.

Sobre a tabela de papéis predefinidos

Um assunto pode ser vinculado a várias funções no servidor de API global. As permissões são puramente aditivas, e não há regras de negação.

A tabela de papéis fornece detalhes importantes sobre cada função no nível do projeto:

  • Nome e descrição da função:lista o nome da função predefinida exibida na interface do usuário (UI), o nome do recurso personalizado correspondente do Kubernetes e uma descrição da função.

    O mesmo nome de exibição da UI pode ser usado para funções diferentes. Essas funções são distintas, cada uma identificada exclusivamente pelo nome do recurso personalizado do Kubernetes e pelo conjunto de permissões. Isso acontece quando os papéis oferecem funcionalidades relacionadas ou diferentes níveis de acesso a um serviço.

  • Permissões:lista as operações específicas da API que a função concede. Os rótulos de escopo indicam onde essas operações podem ser realizadas, o que é determinado por qual servidor de API gerencia os recursos de destino:

    • Global:recursos gerenciados pelo servidor da API global.
    • Zonal:recursos gerenciados em uma zona específica pelo servidor da API de gerenciamento zonal.
    • Cluster do Kubernetes:recursos gerenciados em um cluster do Kubernetes pelo servidor da API dele.

    Para mais informações sobre como os recursos são gerenciados nesses escopos, consulte Recursos globais e zonais e Clusters do Kubernetes no GDC.

Todos os papéis listados têm o tipo IAMRole, que é um recurso personalizado do Kubernetes que define um conjunto de permissões. Para conceder essas permissões a um usuário ou grupo, crie um recurso IAMRoleBinding, que vincula o usuário ao IAMRole. Para informações sobre como configurar uma vinculação de função, consulte Conceder e revogar acesso.

Os recursos IAMRole e IAMRoleBinding são gerenciados no servidor global da API. Isso significa que eles são recursos globais e que as vinculações são aplicadas em todas as zonas da sua organização do GDC. Embora os papéis sejam definidos globalmente, as permissões concedidas são exercidas em um contexto específico, como um projeto. Por exemplo, uma "função para envolvidos no projeto" concede permissões a recursos dentro de um projeto. Esses recursos podem ser gerenciados no escopo global, zonal ou do cluster do Kubernetes.

Permissões e papéis para envolvidos no projeto

Os papéis a seguir são concedidos em um projeto específico.

Nome e descrição da função Permissões
Desenvolvedor do Gemini Flash de IA
(ai-gemini-flash-developer)

Executa solicitações de previsão e conclusão de chat em endpoints do modelo Gemini Flash.

Zonal
endpoints.gemini-flash.gdc.goog.chat-completions
endpoints.gemini-flash.gdc.goog.predict
Desenvolvedor de IA Large Gemini
(ai-large-gemini-developer)

Concede permissões para acessar o serviço Gemini grande no cluster do sistema.

Zonal
endpoints.large-gemini.gdc.goog.cancel-batch
endpoints.large-gemini.gdc.goog.chat-completions
endpoints.large-gemini.gdc.goog.create-batch
endpoints.large-gemini.gdc.goog.create-cached-content
endpoints.large-gemini.gdc.goog.delete-cached-content
endpoints.large-gemini.gdc.goog.generate-content
endpoints.large-gemini.gdc.goog.get-batch
endpoints.large-gemini.gdc.goog.get-cached-content
endpoints.large-gemini.gdc.goog.list-available-models
endpoints.large-gemini.gdc.goog.list-batches
endpoints.large-gemini.gdc.goog.list-cached-contents
endpoints.large-gemini.gdc.goog.stream-generate-content
endpoints.large-gemini.gdc.goog.update-cached-content
Desenvolvedor de OCR de IA
(ai-ocr-developer)

Acessa o serviço de OCR.

Zonal
annotators.vision.gdc.goog.*
Desenvolvedor do AI Speech Chirp
(ai-speech-chirp-developer)

Acessa o serviço Speech Chirp.

Zonal
recognizers.speech.gdc.goog.*
Desenvolvedor de IA de voz
(ai-speech-developer)

Acessa o serviço de fala.

Zonal
recognizers.speech.gdc.goog.*
Desenvolvedor de embeddings de texto de IA
(ai-text-embedding-developer)

Executa solicitações de previsão em endpoints de modelo de embedding de texto.

Zonal
endpoints.text-embedding.gdc.goog.predict
Desenvolvedor multilíngue de incorporação de texto de IA
(ai-text-embedding-multilingual-developer)

Realiza solicitações de previsão em endpoints de modelo multilíngue de embedding de texto.

Zonal
endpoints.text-embedding-multilingual.gdc.goog.predict
Desenvolvedor de tradução de IA
(ai-translation-developer)

Acessa o serviço de tradução.

Zonal
translators.translation.gdc.goog.*
Criador de backups
(backup-creator)

Cluster do Kubernetes
backupplans.backup.gdc.goog.get
backupplans.backup.gdc.goog.list
backupplans.backup.gdc.goog.watch
backups.backup.gdc.goog.get
backups.backup.gdc.goog.list
backups.backup.gdc.goog.watch
deletebackuprequests.backup.gdc.goog.get
deletebackuprequests.backup.gdc.goog.list
deletebackuprequests.backup.gdc.goog.watch
manualbackuprequests.backup.gdc.goog.create
manualbackuprequests.backup.gdc.goog.delete
manualbackuprequests.backup.gdc.goog.get
manualbackuprequests.backup.gdc.goog.list
manualbackuprequests.backup.gdc.goog.watch
manualrestorerequests.backup.gdc.goog.create
manualrestorerequests.backup.gdc.goog.delete
manualrestorerequests.backup.gdc.goog.get
manualrestorerequests.backup.gdc.goog.list
manualrestorerequests.backup.gdc.goog.watch
restoreplans.backup.gdc.goog.get
restoreplans.backup.gdc.goog.list
restoreplans.backup.gdc.goog.watch
restores.backup.gdc.goog.get
restores.backup.gdc.goog.list
restores.backup.gdc.goog.watch
volumebackups.backup.gdc.goog.get
volumebackups.backup.gdc.goog.list
volumebackups.backup.gdc.goog.watch
volumerestores.backup.gdc.goog.get
volumerestores.backup.gdc.goog.list
volumerestores.backup.gdc.goog.watch
Administrador da livraria
(bookstore-admin)

Zonal
shelves.bookstore-grpc.googleapis.com.create
shelves.bookstore-grpc.googleapis.com.get
shelves.cloudresourcemanager.googleapis.com.create
shelves.cloudresourcemanager.googleapis.com.get
Requerente do certificado de serviço de CA
(certificate-authority-service-certificate-requester)

Cria e visualiza solicitações de certificado e recupera certificados emitidos.

Zonal
certificaterequests.pki.security.gdc.goog.create
certificaterequests.pki.security.gdc.goog.get
certificaterequests.pki.security.gdc.goog.list
secrets.get
secrets.list
Gerente de operações de serviço de CA
(certificate-authority-service-operation-manager)

Gerencia autoridades certificadoras e revoga certificados.

Zonal
certificateauthorities.pki.security.gdc.goog.create
certificateauthorities.pki.security.gdc.goog.delete
certificateauthorities.pki.security.gdc.goog.get
certificateauthorities.pki.security.gdc.goog.list
certificateauthorities.pki.security.gdc.goog.patch
certificateauthorities.pki.security.gdc.goog.update
certificateauthorities.pki.security.gdc.goog.watch
certificaterequests.pki.security.gdc.goog.get
certificaterequests.pki.security.gdc.goog.list
certificaterequests.pki.security.gdc.goog.watch
revokecertificaterequests.pki.security.gdc.goog.create
revokecertificaterequests.pki.security.gdc.goog.delete
revokecertificaterequests.pki.security.gdc.goog.get
revokecertificaterequests.pki.security.gdc.goog.list
revokecertificaterequests.pki.security.gdc.goog.patch
revokecertificaterequests.pki.security.gdc.goog.update
revokecertificaterequests.pki.security.gdc.goog.watch
secrets.get
secrets.list
Administrador do Certificate Authority Service
(certificate-authority-service-admin)

Zonal
certificateauthorities.pki.security.gdc.goog.create
certificateauthorities.pki.security.gdc.goog.delete
certificateauthorities.pki.security.gdc.goog.get
certificateauthorities.pki.security.gdc.goog.list
certificateauthorities.pki.security.gdc.goog.patch
certificateauthorities.pki.security.gdc.goog.update
certificateauthorities.pki.security.gdc.goog.watch
certificaterequests.pki.security.gdc.goog.create
certificaterequests.pki.security.gdc.goog.delete
certificaterequests.pki.security.gdc.goog.get
certificaterequests.pki.security.gdc.goog.list
certificaterequests.pki.security.gdc.goog.patch
certificaterequests.pki.security.gdc.goog.update
certificaterequests.pki.security.gdc.goog.watch
revokecertificaterequests.pki.security.gdc.goog.create
revokecertificaterequests.pki.security.gdc.goog.delete
revokecertificaterequests.pki.security.gdc.goog.get
revokecertificaterequests.pki.security.gdc.goog.list
revokecertificaterequests.pki.security.gdc.goog.patch
revokecertificaterequests.pki.security.gdc.goog.update
revokecertificaterequests.pki.security.gdc.goog.watch
secrets.get
secrets.list
Administrador do serviço de certificados
(certificate-service-admin)

Zonal
certificateissuers.pki.security.gdc.goog.create
certificateissuers.pki.security.gdc.goog.delete
certificateissuers.pki.security.gdc.goog.get
certificateissuers.pki.security.gdc.goog.list
certificateissuers.pki.security.gdc.goog.patch
certificateissuers.pki.security.gdc.goog.update
certificateissuers.pki.security.gdc.goog.watch
certificates.pki.security.gdc.goog.create
certificates.pki.security.gdc.goog.delete
certificates.pki.security.gdc.goog.get
certificates.pki.security.gdc.goog.list
certificates.pki.security.gdc.goog.patch
certificates.pki.security.gdc.goog.update
certificates.pki.security.gdc.goog.watch
Desenvolvedor do Cloud NAT
(cloud-nat-developer)

Capacidade de CRUD dos recursos do CloudNAT no projeto.

Zonal
cloudnatgateways.networking.gdc.goog.create
cloudnatgateways.networking.gdc.goog.delete
cloudnatgateways.networking.gdc.goog.get
cloudnatgateways.networking.gdc.goog.list
cloudnatgateways.networking.gdc.goog.patch
cloudnatgateways.networking.gdc.goog.update
cloudnatgateways.networking.gdc.goog.watch
Gerenciador do Cloud NAT
(cloud-nat-manager)

Capacidade de CRUD dos recursos do CloudNAT no projeto.

Zonal
cloudnatgateways.networking.gdc.goog.create
cloudnatgateways.networking.gdc.goog.delete
cloudnatgateways.networking.gdc.goog.get
cloudnatgateways.networking.gdc.goog.list
cloudnatgateways.networking.gdc.goog.patch
cloudnatgateways.networking.gdc.goog.update
cloudnatgateways.networking.gdc.goog.watch
Leitor do Cloud NAT
(cloud-nat-viewer)

Capacidade de visualizar recursos/status do Cloud NAT no projeto

Zonal
cloudnatgateways.networking.gdc.goog.get
cloudnatgateways.networking.gdc.goog.list
cloudnatgateways.networking.gdc.goog.watch
Administrador do projeto com função personalizada
(custom-role-project-admin)

Global
customroles.iam.global.gdc.goog.create
customroles.iam.global.gdc.goog.delete
customroles.iam.global.gdc.goog.get
customroles.iam.global.gdc.goog.list
customroles.iam.global.gdc.goog.patch
customroles.iam.global.gdc.goog.update
customroles.iam.global.gdc.goog.watch
iamroles.iam.global.gdc.goog.get
iamroles.iam.global.gdc.goog.list
roles.rbac.authorization.k8s.io.get

Zonal
customroles.iam.gdc.goog.create
customroles.iam.gdc.goog.delete
customroles.iam.gdc.goog.get
customroles.iam.gdc.goog.list
customroles.iam.gdc.goog.patch
customroles.iam.gdc.goog.update
customroles.iam.gdc.goog.watch
projectroles.resourcemanager.gdc.goog.get
roles.rbac.authorization.k8s.io.get
Editor de painéis
(dashboard-editor)

Zonal
configmaps.create
configmaps.delete
configmaps.get
configmaps.list
configmaps.patch
configmaps.update
configmaps.watch
dashboards.observability.gdc.goog.delete
dashboards.observability.gdc.goog.get
dashboards.observability.gdc.goog.list
dashboards.observability.gdc.goog.patch
dashboards.observability.gdc.goog.update
dashboards.observability.gdc.goog.watch
Leitor do painel
(dashboard-viewer)

Zonal
dashboards.observability.gdc.goog.get
dashboards.observability.gdc.goog.list
dashboards.observability.gdc.goog.watch
Depuração do recurso personalizado AuditLoggingTarget
(auditloggingtarget-monitor)

Zonal
auditloggingtargets.logging.private.gdc.goog.get
auditloggingtargets.logging.private.gdc.goog.list
auditloggingtargets.logging.private.gdc.goog.update
dnsregistrations.network.private.gdc.goog.get
dnsregistrations.network.private.gdc.goog.list
Administrador do Discovery Engine
(vaisearch-admin)

Zonal
agents.conversationai.gdc.goog.create
agents.conversationai.gdc.goog.delete
agents.conversationai.gdc.goog.get
agents.conversationai.gdc.goog.list
agents.conversationai.gdc.goog.search
agents.conversationai.gdc.goog.update
conversations.conversationai.gdc.goog.converse
conversations.conversationai.gdc.goog.create
conversations.conversationai.gdc.goog.delete
conversations.conversationai.gdc.goog.get
conversations.conversationai.gdc.goog.list
conversations.conversationai.gdc.goog.update
datasets.conversationai.gdc.goog.create
datasets.conversationai.gdc.goog.delete
datasets.conversationai.gdc.goog.get
datasets.conversationai.gdc.goog.list
datastores.discoveryengine.gdc.goog.create
datastores.discoveryengine.gdc.goog.delete
datastores.discoveryengine.gdc.goog.get
datastores.discoveryengine.gdc.goog.list
datastores.discoveryengine.gdc.goog.search
datastores.discoveryengine.gdc.goog.update
documents.conversationai.gdc.goog.create
documents.conversationai.gdc.goog.delete
documents.conversationai.gdc.goog.get
documents.conversationai.gdc.goog.list
documents.conversationai.gdc.goog.update
documents.discoveryengine.gdc.goog.create
documents.discoveryengine.gdc.goog.delete
documents.discoveryengine.gdc.goog.get
documents.discoveryengine.gdc.goog.list
documents.discoveryengine.gdc.goog.update
operations.conversationai.gdc.goog.get
sessions.discoveryengine.gdc.goog.answer
sessions.discoveryengine.gdc.goog.create
sessions.discoveryengine.gdc.goog.delete
sessions.discoveryengine.gdc.goog.get
sessions.discoveryengine.gdc.goog.list
sessions.discoveryengine.gdc.goog.update
Desenvolvedor do Discovery Engine
(vaisearch-developer)

Zonal
agents.conversationai.gdc.goog.create
agents.conversationai.gdc.goog.delete
agents.conversationai.gdc.goog.get
agents.conversationai.gdc.goog.list
agents.conversationai.gdc.goog.search
agents.conversationai.gdc.goog.update
conversations.conversationai.gdc.goog.converse
conversations.conversationai.gdc.goog.create
conversations.conversationai.gdc.goog.delete
conversations.conversationai.gdc.goog.get
conversations.conversationai.gdc.goog.list
conversations.conversationai.gdc.goog.update
datasets.conversationai.gdc.goog.create
datasets.conversationai.gdc.goog.delete
datasets.conversationai.gdc.goog.get
datasets.conversationai.gdc.goog.list
datastores.discoveryengine.gdc.goog.create
datastores.discoveryengine.gdc.goog.delete
datastores.discoveryengine.gdc.goog.get
datastores.discoveryengine.gdc.goog.list
datastores.discoveryengine.gdc.goog.search
datastores.discoveryengine.gdc.goog.update
documents.conversationai.gdc.goog.create
documents.conversationai.gdc.goog.delete
documents.conversationai.gdc.goog.get
documents.conversationai.gdc.goog.list
documents.conversationai.gdc.goog.update
documents.discoveryengine.gdc.goog.create
documents.discoveryengine.gdc.goog.delete
documents.discoveryengine.gdc.goog.get
documents.discoveryengine.gdc.goog.list
documents.discoveryengine.gdc.goog.update
operations.conversationai.gdc.goog.get
sessions.discoveryengine.gdc.goog.answer
sessions.discoveryengine.gdc.goog.create
sessions.discoveryengine.gdc.goog.delete
sessions.discoveryengine.gdc.goog.get
sessions.discoveryengine.gdc.goog.list
sessions.discoveryengine.gdc.goog.update
Leitor do balanceador de carga externo
(external-load-balancer-viewer)

Mostra recursos de balanceador de carga externo em um projeto.

Global
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.watch
forwardingruleexternals.networking.global.gdc.goog.get
forwardingruleexternals.networking.global.gdc.goog.list
forwardingruleexternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.watch
forwardingruleexternals.networking.gdc.goog.get
forwardingruleexternals.networking.gdc.goog.list
forwardingruleexternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.watch
Administrador do balanceador de carga externo global
(external-load-balancer-admin)

Cria e gerencia recursos de balanceador de carga externo global em um projeto global.

Global
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
forwardingruleexternals.networking.global.gdc.goog.create
forwardingruleexternals.networking.global.gdc.goog.delete
forwardingruleexternals.networking.global.gdc.goog.get
forwardingruleexternals.networking.global.gdc.goog.list
forwardingruleexternals.networking.global.gdc.goog.patch
forwardingruleexternals.networking.global.gdc.goog.update
forwardingruleexternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
forwardingruleexternals.networking.gdc.goog.create
forwardingruleexternals.networking.gdc.goog.delete
forwardingruleexternals.networking.gdc.goog.get
forwardingruleexternals.networking.gdc.goog.list
forwardingruleexternals.networking.gdc.goog.patch
forwardingruleexternals.networking.gdc.goog.update
forwardingruleexternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
Administrador global do balanceador de carga interno
(internal-load-balancer-admin)

Cria e gerencia recursos de balanceador de carga interno global em um projeto global.

Global
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
forwardingruleinternals.networking.global.gdc.goog.create
forwardingruleinternals.networking.global.gdc.goog.delete
forwardingruleinternals.networking.global.gdc.goog.get
forwardingruleinternals.networking.global.gdc.goog.list
forwardingruleinternals.networking.global.gdc.goog.patch
forwardingruleinternals.networking.global.gdc.goog.update
forwardingruleinternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
forwardingruleinternals.networking.gdc.goog.create
forwardingruleinternals.networking.gdc.goog.delete
forwardingruleinternals.networking.gdc.goog.get
forwardingruleinternals.networking.gdc.goog.list
forwardingruleinternals.networking.gdc.goog.patch
forwardingruleinternals.networking.gdc.goog.update
forwardingruleinternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
Leitor do balanceador de carga interno global
(internal-load-balancer-viewer)

Mostra recursos globais do balanceador de carga interno em um projeto global.

Global
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.watch
forwardingruleinternals.networking.global.gdc.goog.get
forwardingruleinternals.networking.global.gdc.goog.list
forwardingruleinternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.watch
forwardingruleinternals.networking.gdc.goog.get
forwardingruleinternals.networking.gdc.goog.list
forwardingruleinternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.watch
Desenvolvedor do balanceador de carga global
(load-balancer-developer)

Cria e gerencia verificações de integridade e serviços de back-end do balanceador de carga global em um projeto global.

Global
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
Administrador da instância do Harbor
(harbor-instance-admin)

Zonal
harborinstancebackupplans.artifactregistry.gdc.goog.create
harborinstancebackupplans.artifactregistry.gdc.goog.delete
harborinstancebackupplans.artifactregistry.gdc.goog.get
harborinstancebackupplans.artifactregistry.gdc.goog.list
harborinstancebackupplans.artifactregistry.gdc.goog.patch
harborinstancebackupplans.artifactregistry.gdc.goog.update
harborinstancebackupplans.artifactregistry.gdc.goog.watch
harborinstancebackuprepositories.artifactregistry.gdc.goog.create
harborinstancebackuprepositories.artifactregistry.gdc.goog.delete
harborinstancebackuprepositories.artifactregistry.gdc.goog.get
harborinstancebackuprepositories.artifactregistry.gdc.goog.list
harborinstancebackuprepositories.artifactregistry.gdc.goog.patch
harborinstancebackuprepositories.artifactregistry.gdc.goog.update
harborinstancebackuprepositories.artifactregistry.gdc.goog.watch
harborinstancebackups.artifactregistry.gdc.goog.create
harborinstancebackups.artifactregistry.gdc.goog.delete
harborinstancebackups.artifactregistry.gdc.goog.get
harborinstancebackups.artifactregistry.gdc.goog.list
harborinstancebackups.artifactregistry.gdc.goog.patch
harborinstancebackups.artifactregistry.gdc.goog.update
harborinstancebackups.artifactregistry.gdc.goog.watch
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.create
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.delete
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.get
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.list
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.patch
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.update
harborinstancedatabasebackups.artifactregistry.private.gdc.goog.watch
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.create
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.delete
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.get
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.list
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.patch
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.update
harborinstancedatabaserestores.artifactregistry.private.gdc.goog.watch
harborinstanceprojects.artifactregistry.gdc.goog.create
harborinstanceprojects.artifactregistry.gdc.goog.get
harborinstanceprojects.artifactregistry.gdc.goog.patch
harborinstanceprojects.artifactregistry.gdc.goog.update
harborinstanceprojects.artifactregistry.gdc.goog.watch
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.create
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.delete
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.get
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.list
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.patch
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.update
harborinstanceregistrybackups.artifactregistry.private.gdc.goog.watch
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.create
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.delete
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.get
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.list
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.patch
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.update
harborinstanceregistryrestores.artifactregistry.private.gdc.goog.watch
harborinstancerestores.artifactregistry.gdc.goog.create
harborinstancerestores.artifactregistry.gdc.goog.delete
harborinstancerestores.artifactregistry.gdc.goog.get
harborinstancerestores.artifactregistry.gdc.goog.list
harborinstancerestores.artifactregistry.gdc.goog.patch
harborinstancerestores.artifactregistry.gdc.goog.update
harborinstancerestores.artifactregistry.gdc.goog.watch
harborinstances.artifactregistry.gdc.goog.create
harborinstances.artifactregistry.gdc.goog.delete
harborinstances.artifactregistry.gdc.goog.get
harborinstances.artifactregistry.gdc.goog.list
harborinstances.artifactregistry.gdc.goog.patch
harborinstances.artifactregistry.gdc.goog.update
harborinstances.artifactregistry.gdc.goog.watch
Leitor de instâncias do Harbor
(harbor-instance-viewer)

Zonal
harborinstancebackupplans.artifactregistry.gdc.goog.get
harborinstancebackupplans.artifactregistry.gdc.goog.list
harborinstancebackupplans.artifactregistry.gdc.goog.watch
harborinstancebackuprepositories.artifactregistry.gdc.goog.get
harborinstancebackuprepositories.artifactregistry.gdc.goog.list
harborinstancebackuprepositories.artifactregistry.gdc.goog.watch
harborinstancebackups.artifactregistry.gdc.goog.get
harborinstancebackups.artifactregistry.gdc.goog.list
harborinstancebackups.artifactregistry.gdc.goog.watch
harborinstanceprojects.artifactregistry.gdc.goog.get
harborinstanceprojects.artifactregistry.gdc.goog.watch
harborinstancerestores.artifactregistry.gdc.goog.get
harborinstancerestores.artifactregistry.gdc.goog.list
harborinstancerestores.artifactregistry.gdc.goog.watch
harborinstances.artifactregistry.gdc.goog.get
harborinstances.artifactregistry.gdc.goog.list
harborinstances.artifactregistry.gdc.goog.watch
Criador de projetos do Harbor
(harbor-project-creator)

Zonal
harborinstanceprojects.artifactregistry.gdc.goog.create
harborinstanceprojects.artifactregistry.gdc.goog.get
harborinstanceprojects.artifactregistry.gdc.goog.watch
Administrador de política de rede do K8S
(k8s-networkpolicy-admin)

Cluster do Kubernetes
networkpolicies.networking.k8s.io.*
Administrador do KMS
(kms-admin)

Gerencia chaves do KMS no projeto e lê KeyImports e KeyExports.

Zonal
aeadkeys.kms.gdc.goog.create
aeadkeys.kms.gdc.goog.decrypt
aeadkeys.kms.gdc.goog.delete
aeadkeys.kms.gdc.goog.encrypt
aeadkeys.kms.gdc.goog.generatedatakey
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.patch
aeadkeys.kms.gdc.goog.update
aeadkeys.kms.gdc.goog.watch
keyexports.kms.gdc.goog.get
keyexports.kms.gdc.goog.list
keyexports.kms.gdc.goog.watch
keyimports.kms.gdc.goog.get
keyimports.kms.gdc.goog.list
keyimports.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.create
signingkeys.kms.gdc.goog.delete
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.patch
signingkeys.kms.gdc.goog.sign
signingkeys.kms.gdc.goog.update
signingkeys.kms.gdc.goog.watch
Criador do KMS
(kms-creator)

Cria e lê chaves do KMS no projeto.

Zonal
aeadkeys.kms.gdc.goog.create
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.create
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.watch
Desenvolvedor do KMS
(kms-developer)

Executa operações criptográficas usando chaves do KMS no projeto.

Zonal
aeadkeys.kms.gdc.goog.decrypt
aeadkeys.kms.gdc.goog.encrypt
aeadkeys.kms.gdc.goog.generatedatakey
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.sign
signingkeys.kms.gdc.goog.watch
Administrador de exportação de chaves do KMS
(kms-keyexport-admin)

Exporta chaves do KMS no projeto como chaves encapsuladas do KMS.

Zonal
keyexports.kms.gdc.goog.*
Administrador da importação de chaves do KMS
(kms-keyimport-admin)

Importa chaves do KMS para o KMS como chaves encapsuladas no projeto.

Zonal
keyimports.kms.gdc.goog.*
Leitor do KMS
(kms-viewer)

Lê chaves do KMS no projeto.

Zonal
aeadkeys.kms.gdc.goog.get
aeadkeys.kms.gdc.goog.list
aeadkeys.kms.gdc.goog.watch
keyexports.kms.gdc.goog.get
keyexports.kms.gdc.goog.list
keyexports.kms.gdc.goog.watch
keyimports.kms.gdc.goog.get
keyimports.kms.gdc.goog.list
keyimports.kms.gdc.goog.watch
signingkeys.kms.gdc.goog.get
signingkeys.kms.gdc.goog.list
signingkeys.kms.gdc.goog.watch
Usuário do LibraryAgent
(libraryagent-user)

Permitir que os clientes usem APIs do serviço de demonstração do Libraryagent

Zonal
shelves.libraryagent.api.v1alpha1.get
shelves.libraryagent.api.v1alpha1.list
Administrador do balanceador de carga
(load-balancer-admin)

Administrador do Balanceador de Carga

Global
backendservicepolicies.networking.global.gdc.goog.create
backendservicepolicies.networking.global.gdc.goog.delete
backendservicepolicies.networking.global.gdc.goog.get
backendservicepolicies.networking.global.gdc.goog.list
backendservicepolicies.networking.global.gdc.goog.patch
backendservicepolicies.networking.global.gdc.goog.update
backendservicepolicies.networking.global.gdc.goog.watch
backendservices.networking.global.gdc.goog.create
backendservices.networking.global.gdc.goog.delete
backendservices.networking.global.gdc.goog.get
backendservices.networking.global.gdc.goog.list
backendservices.networking.global.gdc.goog.patch
backendservices.networking.global.gdc.goog.update
backendservices.networking.global.gdc.goog.watch
forwardingruleexternals.networking.global.gdc.goog.create
forwardingruleexternals.networking.global.gdc.goog.delete
forwardingruleexternals.networking.global.gdc.goog.get
forwardingruleexternals.networking.global.gdc.goog.list
forwardingruleexternals.networking.global.gdc.goog.patch
forwardingruleexternals.networking.global.gdc.goog.update
forwardingruleexternals.networking.global.gdc.goog.watch
forwardingruleinternals.networking.global.gdc.goog.create
forwardingruleinternals.networking.global.gdc.goog.delete
forwardingruleinternals.networking.global.gdc.goog.get
forwardingruleinternals.networking.global.gdc.goog.list
forwardingruleinternals.networking.global.gdc.goog.patch
forwardingruleinternals.networking.global.gdc.goog.update
forwardingruleinternals.networking.global.gdc.goog.watch
healthchecks.networking.global.gdc.goog.create
healthchecks.networking.global.gdc.goog.delete
healthchecks.networking.global.gdc.goog.get
healthchecks.networking.global.gdc.goog.list
healthchecks.networking.global.gdc.goog.patch
healthchecks.networking.global.gdc.goog.update
healthchecks.networking.global.gdc.goog.watch

Zonal
backends.networking.gdc.goog.create
backends.networking.gdc.goog.delete
backends.networking.gdc.goog.get
backends.networking.gdc.goog.list
backends.networking.gdc.goog.patch
backends.networking.gdc.goog.update
backends.networking.gdc.goog.watch
backendservicepolicies.networking.gdc.goog.create
backendservicepolicies.networking.gdc.goog.delete
backendservicepolicies.networking.gdc.goog.get
backendservicepolicies.networking.gdc.goog.list
backendservicepolicies.networking.gdc.goog.patch
backendservicepolicies.networking.gdc.goog.update
backendservicepolicies.networking.gdc.goog.watch
backendservices.networking.gdc.goog.create
backendservices.networking.gdc.goog.delete
backendservices.networking.gdc.goog.get
backendservices.networking.gdc.goog.list
backendservices.networking.gdc.goog.patch
backendservices.networking.gdc.goog.update
backendservices.networking.gdc.goog.watch
forwardingruleexternals.networking.gdc.goog.create
forwardingruleexternals.networking.gdc.goog.delete
forwardingruleexternals.networking.gdc.goog.get
forwardingruleexternals.networking.gdc.goog.list
forwardingruleexternals.networking.gdc.goog.patch
forwardingruleexternals.networking.gdc.goog.update
forwardingruleexternals.networking.gdc.goog.watch
forwardingruleinternals.networking.gdc.goog.create
forwardingruleinternals.networking.gdc.goog.delete
forwardingruleinternals.networking.gdc.goog.get
forwardingruleinternals.networking.gdc.goog.list
forwardingruleinternals.networking.gdc.goog.patch
forwardingruleinternals.networking.gdc.goog.update
forwardingruleinternals.networking.gdc.goog.watch
healthchecks.networking.gdc.goog.create
healthchecks.networking.gdc.goog.delete
healthchecks.networking.gdc.goog.get
healthchecks.networking.gdc.goog.list
healthchecks.networking.gdc.goog.patch
healthchecks.networking.gdc.goog.update
healthchecks.networking.gdc.goog.watch
Consultador de registros
(log-query-api-querier)

Acesse a API Log Query para consultar registros no projeto do AO.

Zonal
labels.goog.gdc.logging.v1.get
labels.goog.gdc.logging.v1.list
labelvalues.goog.gdc.logging.v1.get
labelvalues.goog.gdc.logging.v1.list
listlabelsrequests.goog.gdc.logging.v1.get
listlabelsrequests.goog.gdc.logging.v1.list
listlabelsresponses.goog.gdc.logging.v1.get
listlabelsresponses.goog.gdc.logging.v1.list
listlabelvaluesrequests.goog.gdc.logging.v1.get
listlabelvaluesrequests.goog.gdc.logging.v1.list
listlabelvaluesresponses.goog.gdc.logging.v1.get
listlabelvaluesresponses.goog.gdc.logging.v1.list
listlogsfilters.goog.gdc.logging.v1.get
listlogsfilters.goog.gdc.logging.v1.list
listlogsrequests.goog.gdc.logging.v1.get
listlogsrequests.goog.gdc.logging.v1.list
listlogsresponses.goog.gdc.logging.v1.get
listlogsresponses.goog.gdc.logging.v1.list
logs.goog.gdc.logging.v1.get
logs.goog.gdc.logging.v1.list
Criador de LoggingRule
(loggingrule-creator)

Zonal
loggingrules.logging.gdc.goog.create
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.watch
Editor de LoggingRule
(loggingrule-editor)

Zonal
loggingrules.logging.gdc.goog.delete
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.patch
loggingrules.logging.gdc.goog.update
loggingrules.logging.gdc.goog.watch
Leitor de LoggingRule
(loggingrule-viewer)

Zonal
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.watch
Criador de LoggingTarget
(loggingtarget-creator)

Zonal
loggingtargets.logging.gdc.goog.create
loggingtargets.logging.gdc.goog.get
loggingtargets.logging.gdc.goog.list
loggingtargets.logging.gdc.goog.watch
Editor de LoggingTarget
(loggingtarget-editor)

Zonal
loggingtargets.logging.gdc.goog.delete
loggingtargets.logging.gdc.goog.get
loggingtargets.logging.gdc.goog.list
loggingtargets.logging.gdc.goog.patch
loggingtargets.logging.gdc.goog.update
loggingtargets.logging.gdc.goog.watch
Leitor de LoggingTarget
(loggingtarget-viewer)

Zonal
loggingtargets.logging.gdc.goog.get
loggingtargets.logging.gdc.goog.list
loggingtargets.logging.gdc.goog.watch
Administrador do projeto de DNS gerenciado
(managed-dns-project-admin)

Global
manageddnszones.networking.global.gdc.goog.*
resourcerecordsets.networking.global.gdc.goog.*
Leitor do projeto de DNS gerenciado
(managed-dns-project-viewer)

Global
manageddnszones.networking.global.gdc.goog.get
manageddnszones.networking.global.gdc.goog.list
resourcerecordsets.networking.global.gdc.goog.get
resourcerecordsets.networking.global.gdc.goog.list
Editor do catálogo do Marketplace
(marketplace-catalog-editor)

Visualiza, lista, cria, atualiza e exclui catálogos de serviços.

Zonal
servicecatalogs.marketplace.global.gdc.goog.create
servicecatalogs.marketplace.global.gdc.goog.delete
servicecatalogs.marketplace.global.gdc.goog.get
servicecatalogs.marketplace.global.gdc.goog.list
servicecatalogs.marketplace.global.gdc.goog.patch
servicecatalogs.marketplace.global.gdc.goog.update
servicecatalogs.marketplace.global.gdc.goog.watch
Editor do Marketplace
(marketplace-editor)

Cria, atualiza e exclui instâncias de serviço.

Zonal
serviceinstances.marketplace.gdc.goog.create
serviceinstances.marketplace.gdc.goog.delete
serviceinstances.marketplace.gdc.goog.get
serviceinstances.marketplace.gdc.goog.list
serviceinstances.marketplace.gdc.goog.patch
serviceinstances.marketplace.gdc.goog.update
serviceinstances.marketplace.gdc.goog.watch
Consumidor de serviços do Marketplace
(marketplace-service-consumer)

Cria, atualiza e exclui instâncias de serviço.

Zonal
serviceinstances.marketplace.gdc.goog.create
serviceinstances.marketplace.gdc.goog.delete
serviceinstances.marketplace.gdc.goog.get
serviceinstances.marketplace.gdc.goog.list
serviceinstances.marketplace.gdc.goog.patch
serviceinstances.marketplace.gdc.goog.update
serviceinstances.marketplace.gdc.goog.watch
Editor de serviços do Marketplace
(marketplace-service-editor)

Visualiza, lista, cria, atualiza e exclui versões e descrições de serviços.

Zonal
servicedescriptions.marketplace.gdc.goog.create
servicedescriptions.marketplace.gdc.goog.delete
servicedescriptions.marketplace.gdc.goog.get
servicedescriptions.marketplace.gdc.goog.list
servicedescriptions.marketplace.gdc.goog.patch
servicedescriptions.marketplace.gdc.goog.update
servicedescriptions.marketplace.gdc.goog.watch
serviceversions.marketplace.gdc.goog.create
serviceversions.marketplace.gdc.goog.delete
serviceversions.marketplace.gdc.goog.get
serviceversions.marketplace.gdc.goog.list
serviceversions.marketplace.gdc.goog.patch
serviceversions.marketplace.gdc.goog.update
serviceversions.marketplace.gdc.goog.watch
Leitor de serviços do Marketplace
(marketplace-service-viewer)

Visualiza e lista versões, descrições, catálogos e pacotes de catálogos de serviços.

Zonal
catalogbundle.marketplaceview.gdc.goog.get
catalogbundle.marketplaceview.gdc.goog.list
catalogbundle.marketplaceview.gdc.goog.watch
servicecatalog.marketplace.global.gdc.goog.get
servicecatalog.marketplace.global.gdc.goog.list
servicecatalog.marketplace.global.gdc.goog.watch
servicedescription.marketplace.gdc.goog.get
servicedescription.marketplace.gdc.goog.list
servicedescription.marketplace.gdc.goog.watch
serviceversion.marketplace.gdc.goog.get
serviceversion.marketplace.gdc.goog.list
serviceversion.marketplace.gdc.goog.watch
Editor do MonitoringRule
(monitoringrule-editor)

Zonal
monitoringrules.monitoring.gdc.goog.delete
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.patch
monitoringrules.monitoring.gdc.goog.update
monitoringrules.monitoring.gdc.goog.watch
Leitor de MonitoringRule
(monitoringrule-viewer)

Zonal
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.watch
Editor do MonitoringTarget
(monitoringtarget-editor)

Zonal
monitoringtargets.monitoring.gdc.goog.delete
monitoringtargets.monitoring.gdc.goog.get
monitoringtargets.monitoring.gdc.goog.list
monitoringtargets.monitoring.gdc.goog.patch
monitoringtargets.monitoring.gdc.goog.update
monitoringtargets.monitoring.gdc.goog.watch
Leitor do MonitoringTarget
(monitoringtarget-viewer)

Zonal
monitoringtargets.monitoring.gdc.goog.get
monitoringtargets.monitoring.gdc.goog.list
monitoringtargets.monitoring.gdc.goog.watch
Leitor de NAT
(nat-viewer)

Cluster do Kubernetes
deployments.apps.get
deployments.apps.list
Administrador de namespace
(namespace-admin)

Gerencia todos os recursos no projeto.

Cluster do Kubernetes
*.*.*
Editor do ObservabilityPipeline
(observabilitypipeline-editor)

Zonal
observabilitypipelines.observability.gdc.goog.delete
observabilitypipelines.observability.gdc.goog.get
observabilitypipelines.observability.gdc.goog.list
observabilitypipelines.observability.gdc.goog.patch
observabilitypipelines.observability.gdc.goog.update
observabilitypipelines.observability.gdc.goog.watch
Leitor do ObservabilityPipeline
(observabilitypipeline-viewer)

Zonal
observabilitypipelines.observability.gdc.goog.get
observabilitypipelines.observability.gdc.goog.list
observabilitypipelines.observability.gdc.goog.watch
Administrador de buckets do projeto
(project-bucket-admin)

Global
bucketlocations.object.global.gdc.goog.get
bucketlocations.object.global.gdc.goog.list
buckets.object.global.gdc.goog.*

Zonal
bucketinfos.object.gdc.goog.get
bucketinfos.object.gdc.goog.list
bucketinfos.object.gdc.goog.patch
bucketinfos.object.gdc.goog.update
bucketinfos.object.gdc.goog.watch
buckets.object.gdc.goog.*
Administrador de objetos do bucket do projeto
(project-bucket-object-admin)

Global
buckets.object.global.gdc.goog.get
buckets.object.global.gdc.goog.list
buckets.object.global.gdc.goog.read-object
buckets.object.global.gdc.goog.watch
buckets.object.global.gdc.goog.write-object

Zonal
bucketinfos.object.gdc.goog.get
bucketinfos.object.gdc.goog.list
buckets.object.gdc.goog.get
buckets.object.gdc.goog.list
buckets.object.gdc.goog.read-object
buckets.object.gdc.goog.watch
buckets.object.gdc.goog.write-object
Leitor de objetos do bucket do projeto
(project-bucket-object-viewer)

Global
buckets.object.global.gdc.goog.get
buckets.object.global.gdc.goog.list
buckets.object.global.gdc.goog.read-object
buckets.object.global.gdc.goog.watch

Zonal
bucketinfos.object.gdc.goog.get
bucketinfos.object.gdc.goog.list
buckets.object.gdc.goog.get
buckets.object.gdc.goog.list
buckets.object.gdc.goog.read-object
buckets.object.gdc.goog.watch
Editor do Alertmanager do Project Cortex
(project-cortex-alertmanager-editor)

Zonal
${.ProjectNamespace}-cortex-system/cortex-alertmanager.istio.resourcemanager.gdc.goog.*
loggingrules.logging.gdc.goog.create
loggingrules.logging.gdc.goog.delete
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.logging.gdc.goog.patch
loggingrules.logging.gdc.goog.update
loggingrules.monitoring.gdc.goog.create
loggingrules.monitoring.gdc.goog.delete
loggingrules.monitoring.gdc.goog.get
loggingrules.monitoring.gdc.goog.list
loggingrules.monitoring.gdc.goog.patch
loggingrules.monitoring.gdc.goog.update
monitoringrules.monitoring.gdc.goog.create
monitoringrules.monitoring.gdc.goog.delete
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.patch
monitoringrules.monitoring.gdc.goog.update
Leitor do Alertmanager do Project Cortex
(project-cortex-alertmanager-viewer)

Zonal
${.ProjectNamespace}-cortex-system/cortex-alertmanager.istio.resourcemanager.gdc.goog.*
loggingrules.logging.gdc.goog.get
loggingrules.logging.gdc.goog.list
loggingrules.monitoring.gdc.goog.get
loggingrules.monitoring.gdc.goog.list
monitoringrules.monitoring.gdc.goog.get
monitoringrules.monitoring.gdc.goog.list
Leitor do Prometheus do Project Cortex
(project-cortex-prometheus-viewer)

Zonal
${.ProjectNamespace}-cortex-system/cortex-metrics.istio.resourcemanager.gdc.goog.*
${.ProjectNamespace}-cortex-system/cortex-prometheus.istio.resourcemanager.gdc.goog.*
Administrador de banco de dados do projeto
(project-db-admin)

Global
backupplans.alloydbomni.dbadmin.gdc.goog.create
backupplans.alloydbomni.dbadmin.gdc.goog.delete
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.patch
backupplans.alloydbomni.dbadmin.gdc.goog.update
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.create
backupplans.oracle.dbadmin.gdc.goog.delete
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.patch
backupplans.oracle.dbadmin.gdc.goog.update
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.create
backupplans.postgresql.dbadmin.gdc.goog.delete
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.patch
backupplans.postgresql.dbadmin.gdc.goog.update
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
configmaps.get
dbclusters.alloydbomni.dbadmin.gdc.goog.create
dbclusters.alloydbomni.dbadmin.gdc.goog.delete
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.create
dbclusters.oracle.dbadmin.gdc.goog.delete
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.create
dbclusters.postgresql.dbadmin.gdc.goog.delete
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.create
migrations.alloydbomni.dbadmin.gdc.goog.delete
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.create
migrations.postgresql.dbadmin.gdc.goog.delete
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.create
replications.postgresql.dbadmin.gdc.goog.delete
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.create
restores.alloydbomni.dbadmin.gdc.goog.delete
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.create
restores.oracle.dbadmin.gdc.goog.delete
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.create
restores.postgresql.dbadmin.gdc.goog.delete
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.get
secrets.update

Zonal
backupplans.alloydbomni.dbadmin.gdc.goog.create
backupplans.alloydbomni.dbadmin.gdc.goog.delete
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.patch
backupplans.alloydbomni.dbadmin.gdc.goog.update
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.create
backupplans.oracle.dbadmin.gdc.goog.delete
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.patch
backupplans.oracle.dbadmin.gdc.goog.update
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.create
backupplans.postgresql.dbadmin.gdc.goog.delete
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.patch
backupplans.postgresql.dbadmin.gdc.goog.update
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
configmaps.get
dbclusters.alloydbomni.dbadmin.gdc.goog.create
dbclusters.alloydbomni.dbadmin.gdc.goog.delete
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.create
dbclusters.oracle.dbadmin.gdc.goog.delete
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.create
dbclusters.postgresql.dbadmin.gdc.goog.delete
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.create
migrations.alloydbomni.dbadmin.gdc.goog.delete
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.create
migrations.postgresql.dbadmin.gdc.goog.delete
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.create
replications.postgresql.dbadmin.gdc.goog.delete
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.create
restores.alloydbomni.dbadmin.gdc.goog.delete
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.create
restores.oracle.dbadmin.gdc.goog.delete
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.create
restores.postgresql.dbadmin.gdc.goog.delete
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.get
secrets.update
Editor de banco de dados do projeto
(project-db-editor)

Global
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.update

Zonal
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.patch
dbclusters.alloydbomni.dbadmin.gdc.goog.update
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.patch
dbclusters.oracle.dbadmin.gdc.goog.update
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.patch
dbclusters.postgresql.dbadmin.gdc.goog.update
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.create
exports.alloydbomni.dbadmin.gdc.goog.delete
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.create
exports.oracle.dbadmin.gdc.goog.delete
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.create
exports.postgresql.dbadmin.gdc.goog.delete
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.create
externalservers.alloydbomni.dbadmin.gdc.goog.delete
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.patch
externalservers.alloydbomni.dbadmin.gdc.goog.update
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.create
externalservers.postgresql.dbadmin.gdc.goog.delete
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.patch
externalservers.postgresql.dbadmin.gdc.goog.update
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.create
failovers.fleet.dbadmin.gdc.goog.delete
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.create
imports.alloydbomni.dbadmin.gdc.goog.delete
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.create
imports.oracle.dbadmin.gdc.goog.delete
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.create
imports.postgresql.dbadmin.gdc.goog.delete
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.patch
migrations.alloydbomni.dbadmin.gdc.goog.update
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.patch
migrations.postgresql.dbadmin.gdc.goog.update
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.patch
replications.postgresql.dbadmin.gdc.goog.update
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
secrets.create
secrets.delete
secrets.update
Leitor de banco de dados do projeto
(project-db-viewer)

Global
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch

Zonal
backupplans.alloydbomni.dbadmin.gdc.goog.get
backupplans.alloydbomni.dbadmin.gdc.goog.list
backupplans.alloydbomni.dbadmin.gdc.goog.watch
backupplans.oracle.dbadmin.gdc.goog.get
backupplans.oracle.dbadmin.gdc.goog.list
backupplans.oracle.dbadmin.gdc.goog.watch
backupplans.postgresql.dbadmin.gdc.goog.get
backupplans.postgresql.dbadmin.gdc.goog.list
backupplans.postgresql.dbadmin.gdc.goog.watch
backups.alloydbomni.dbadmin.gdc.goog.get
backups.alloydbomni.dbadmin.gdc.goog.list
backups.alloydbomni.dbadmin.gdc.goog.watch
backups.oracle.dbadmin.gdc.goog.get
backups.oracle.dbadmin.gdc.goog.list
backups.oracle.dbadmin.gdc.goog.watch
backups.postgresql.dbadmin.gdc.goog.get
backups.postgresql.dbadmin.gdc.goog.list
backups.postgresql.dbadmin.gdc.goog.watch
dbclusters.alloydbomni.dbadmin.gdc.goog.get
dbclusters.alloydbomni.dbadmin.gdc.goog.list
dbclusters.alloydbomni.dbadmin.gdc.goog.watch
dbclusters.oracle.dbadmin.gdc.goog.get
dbclusters.oracle.dbadmin.gdc.goog.list
dbclusters.oracle.dbadmin.gdc.goog.watch
dbclusters.postgresql.dbadmin.gdc.goog.get
dbclusters.postgresql.dbadmin.gdc.goog.list
dbclusters.postgresql.dbadmin.gdc.goog.watch
exports.alloydbomni.dbadmin.gdc.goog.get
exports.alloydbomni.dbadmin.gdc.goog.list
exports.alloydbomni.dbadmin.gdc.goog.watch
exports.oracle.dbadmin.gdc.goog.get
exports.oracle.dbadmin.gdc.goog.list
exports.oracle.dbadmin.gdc.goog.watch
exports.postgresql.dbadmin.gdc.goog.get
exports.postgresql.dbadmin.gdc.goog.list
exports.postgresql.dbadmin.gdc.goog.watch
externalservers.alloydbomni.dbadmin.gdc.goog.get
externalservers.alloydbomni.dbadmin.gdc.goog.list
externalservers.alloydbomni.dbadmin.gdc.goog.watch
externalservers.postgresql.dbadmin.gdc.goog.get
externalservers.postgresql.dbadmin.gdc.goog.list
externalservers.postgresql.dbadmin.gdc.goog.watch
failovers.fleet.dbadmin.gdc.goog.get
failovers.fleet.dbadmin.gdc.goog.list
failovers.fleet.dbadmin.gdc.goog.watch
imports.alloydbomni.dbadmin.gdc.goog.get
imports.alloydbomni.dbadmin.gdc.goog.list
imports.alloydbomni.dbadmin.gdc.goog.watch
imports.oracle.dbadmin.gdc.goog.get
imports.oracle.dbadmin.gdc.goog.list
imports.oracle.dbadmin.gdc.goog.watch
imports.postgresql.dbadmin.gdc.goog.get
imports.postgresql.dbadmin.gdc.goog.list
imports.postgresql.dbadmin.gdc.goog.watch
migrations.alloydbomni.dbadmin.gdc.goog.get
migrations.alloydbomni.dbadmin.gdc.goog.list
migrations.alloydbomni.dbadmin.gdc.goog.watch
migrations.postgresql.dbadmin.gdc.goog.get
migrations.postgresql.dbadmin.gdc.goog.list
migrations.postgresql.dbadmin.gdc.goog.watch
replications.postgresql.dbadmin.gdc.goog.get
replications.postgresql.dbadmin.gdc.goog.list
replications.postgresql.dbadmin.gdc.goog.watch
restores.alloydbomni.dbadmin.gdc.goog.get
restores.alloydbomni.dbadmin.gdc.goog.list
restores.alloydbomni.dbadmin.gdc.goog.watch
restores.oracle.dbadmin.gdc.goog.get
restores.oracle.dbadmin.gdc.goog.list
restores.oracle.dbadmin.gdc.goog.watch
restores.postgresql.dbadmin.gdc.goog.get
restores.postgresql.dbadmin.gdc.goog.list
restores.postgresql.dbadmin.gdc.goog.watch
Administrador de compartilhamento de arquivos do projeto
(project-fileshare-admin)

Zonal
exportgroupbindings.file.gdc.goog.create
exportgroupbindings.file.gdc.goog.delete
exportgroupbindings.file.gdc.goog.get
exportgroupbindings.file.gdc.goog.list
exportgroupbindings.file.gdc.goog.patch
exportgroupbindings.file.gdc.goog.update
exportgroupbindings.file.gdc.goog.watch
exportgroups.file.gdc.goog.create
exportgroups.file.gdc.goog.delete
exportgroups.file.gdc.goog.get
exportgroups.file.gdc.goog.list
exportgroups.file.gdc.goog.patch
exportgroups.file.gdc.goog.update
exportgroups.file.gdc.goog.watch
fileshares.file.gdc.goog.create
fileshares.file.gdc.goog.delete
fileshares.file.gdc.goog.get
fileshares.file.gdc.goog.list
fileshares.file.gdc.goog.patch
fileshares.file.gdc.goog.update
fileshares.file.gdc.goog.watch
Leitor do Grafana do projeto
(project-grafana-viewer)

Zonal
${.ProjectNamespace}-grafana-system/grafana.istio.resourcemanager.gdc.goog.*
Administrador de projetos do IAM
(project-iam-admin)

Gerencia permissões para projetos.

Global
customroles.iam.global.gdc.goog.create
customroles.iam.global.gdc.goog.delete
customroles.iam.global.gdc.goog.get
customroles.iam.global.gdc.goog.list
customroles.iam.global.gdc.goog.patch
customroles.iam.global.gdc.goog.update
customroles.iam.global.gdc.goog.watch
iamrolebindings.iam.global.gdc.goog.create
iamrolebindings.iam.global.gdc.goog.delete
iamrolebindings.iam.global.gdc.goog.get
iamrolebindings.iam.global.gdc.goog.list
iamrolebindings.iam.global.gdc.goog.patch
iamrolebindings.iam.global.gdc.goog.update
iamrolebindings.iam.global.gdc.goog.watch
iamroles.iam.global.gdc.goog.create
iamroles.iam.global.gdc.goog.delete
iamroles.iam.global.gdc.goog.get
iamroles.iam.global.gdc.goog.list
iamroles.iam.global.gdc.goog.patch
iamroles.iam.global.gdc.goog.update
iamroles.iam.global.gdc.goog.watch
projectserviceaccounts.resourcemanager.global.gdc.goog.create
projectserviceaccounts.resourcemanager.global.gdc.goog.delete
projectserviceaccounts.resourcemanager.global.gdc.goog.get
projectserviceaccounts.resourcemanager.global.gdc.goog.list
projectserviceaccounts.resourcemanager.global.gdc.goog.patch
projectserviceaccounts.resourcemanager.global.gdc.goog.update
rolebindings.rbac.authorization.k8s.io.create
rolebindings.rbac.authorization.k8s.io.delete
rolebindings.rbac.authorization.k8s.io.get
rolebindings.rbac.authorization.k8s.io.list
rolebindings.rbac.authorization.k8s.io.patch
rolebindings.rbac.authorization.k8s.io.update
rolebindings.rbac.authorization.k8s.io.watch
roles.rbac.authorization.k8s.io.create
roles.rbac.authorization.k8s.io.delete
roles.rbac.authorization.k8s.io.get
roles.rbac.authorization.k8s.io.list
roles.rbac.authorization.k8s.io.patch
roles.rbac.authorization.k8s.io.update
roles.rbac.authorization.k8s.io.watch

Zonal
*.visibility.resourcemanager.gdc.goog.get
customroles.iam.gdc.goog.create
customroles.iam.gdc.goog.delete
customroles.iam.gdc.goog.get
customroles.iam.gdc.goog.list
customroles.iam.gdc.goog.patch
customroles.iam.gdc.goog.update
customroles.iam.gdc.goog.watch
projectrolebindings.resourcemanager.gdc.goog.create
projectrolebindings.resourcemanager.gdc.goog.delete
projectrolebindings.resourcemanager.gdc.goog.get
projectrolebindings.resourcemanager.gdc.goog.list
projectrolebindings.resourcemanager.gdc.goog.patch
projectrolebindings.resourcemanager.gdc.goog.update
projectrolebindings.resourcemanager.gdc.goog.watch
projectroles.resourcemanager.gdc.goog.create
projectroles.resourcemanager.gdc.goog.delete
projectroles.resourcemanager.gdc.goog.get
projectroles.resourcemanager.gdc.goog.list
projectroles.resourcemanager.gdc.goog.patch
projectroles.resourcemanager.gdc.goog.update
projectroles.resourcemanager.gdc.goog.watch
projectserviceaccounts.resourcemanager.gdc.goog.create
projectserviceaccounts.resourcemanager.gdc.goog.delete
projectserviceaccounts.resourcemanager.gdc.goog.get
projectserviceaccounts.resourcemanager.gdc.goog.list
projectserviceaccounts.resourcemanager.gdc.goog.patch
projectserviceaccounts.resourcemanager.gdc.goog.update
projectserviceaccounts.resourcemanager.gdc.goog.watch
rolebindings.rbac.authorization.k8s.io.create
rolebindings.rbac.authorization.k8s.io.delete
rolebindings.rbac.authorization.k8s.io.get
rolebindings.rbac.authorization.k8s.io.list
rolebindings.rbac.authorization.k8s.io.patch
rolebindings.rbac.authorization.k8s.io.update
rolebindings.rbac.authorization.k8s.io.watch
roles.rbac.authorization.k8s.io.create
roles.rbac.authorization.k8s.io.delete
roles.rbac.authorization.k8s.io.get
roles.rbac.authorization.k8s.io.list
roles.rbac.authorization.k8s.io.patch
roles.rbac.authorization.k8s.io.update
roles.rbac.authorization.k8s.io.watch
standardclusterrolebindings.iam.gdc.goog.create
standardclusterrolebindings.iam.gdc.goog.delete
standardclusterrolebindings.iam.gdc.goog.get
standardclusterrolebindings.iam.gdc.goog.list
standardclusterrolebindings.iam.gdc.goog.patch
standardclusterrolebindings.iam.gdc.goog.update
standardclusterrolebindings.iam.gdc.goog.watch
standardclusterroles.iam.gdc.goog.create
standardclusterroles.iam.gdc.goog.delete
standardclusterroles.iam.gdc.goog.get
standardclusterroles.iam.gdc.goog.list
standardclusterroles.iam.gdc.goog.patch
standardclusterroles.iam.gdc.goog.update
standardclusterroles.iam.gdc.goog.watch
Administrador da política de manutenção do projeto
(project-mp-admin)

Zonal
maintenancepolicies.maintenance.goog.create
maintenancepolicies.maintenance.goog.delete
maintenancepolicies.maintenance.goog.get
maintenancepolicies.maintenance.goog.list
maintenancepolicies.maintenance.goog.patch
maintenancepolicies.maintenance.goog.update
maintenancepolicies.maintenance.goog.watch
maintenancepolicybindings.maintenance.goog.create
maintenancepolicybindings.maintenance.goog.delete
maintenancepolicybindings.maintenance.goog.get
maintenancepolicybindings.maintenance.goog.list
maintenancepolicybindings.maintenance.goog.patch
maintenancepolicybindings.maintenance.goog.update
maintenancepolicybindings.maintenance.goog.watch
Editor de vinculação da política de manutenção do projeto
(project-mpb-editor)

Zonal
maintenancepolicybindings.maintenance.goog.create
maintenancepolicybindings.maintenance.goog.delete
maintenancepolicybindings.maintenance.goog.get
maintenancepolicybindings.maintenance.goog.list
maintenancepolicybindings.maintenance.goog.patch
maintenancepolicybindings.maintenance.goog.update
maintenancepolicybindings.maintenance.goog.watch
Leitor de vinculação da política de manutenção do projeto
(project-mpb-viewer)

Zonal
maintenancepolicybindings.maintenance.goog.get
maintenancepolicybindings.maintenance.goog.list
maintenancepolicybindings.maintenance.goog.watch
Editor da política de manutenção do projeto
(project-mp-editor)

Zonal
maintenancepolicies.maintenance.goog.create
maintenancepolicies.maintenance.goog.delete
maintenancepolicies.maintenance.goog.get
maintenancepolicies.maintenance.goog.list
maintenancepolicies.maintenance.goog.patch
maintenancepolicies.maintenance.goog.update
maintenancepolicies.maintenance.goog.watch
Leitor da política de manutenção do projeto
(project-mp-viewer)

Zonal
maintenancepolicies.maintenance.goog.get
maintenancepolicies.maintenance.goog.list
maintenancepolicies.maintenance.goog.watch
Administrador de políticas de rede do projeto
(project-networkpolicy-admin)

Global
projectnetworkpolicies.networking.global.gdc.goog.create
projectnetworkpolicies.networking.global.gdc.goog.delete
projectnetworkpolicies.networking.global.gdc.goog.get
projectnetworkpolicies.networking.global.gdc.goog.list
projectnetworkpolicies.networking.global.gdc.goog.patch
projectnetworkpolicies.networking.global.gdc.goog.update
projectnetworkpolicies.networking.global.gdc.goog.watch
projectnetworkpolicyreplicas.networking.global.gdc.goog.create
projectnetworkpolicyreplicas.networking.global.gdc.goog.delete
projectnetworkpolicyreplicas.networking.global.gdc.goog.get
projectnetworkpolicyreplicas.networking.global.gdc.goog.list
projectnetworkpolicyreplicas.networking.global.gdc.goog.patch
projectnetworkpolicyreplicas.networking.global.gdc.goog.update
projectnetworkpolicyreplicas.networking.global.gdc.goog.watch

Zonal
projectnetworkpolicies.networking.gdc.goog.create
projectnetworkpolicies.networking.gdc.goog.delete
projectnetworkpolicies.networking.gdc.goog.get
projectnetworkpolicies.networking.gdc.goog.list
projectnetworkpolicies.networking.gdc.goog.patch
projectnetworkpolicies.networking.gdc.goog.update
projectnetworkpolicies.networking.gdc.goog.watch
Administrador de cotas do projeto
(zonal-project-quota-admin)

Gerencia recursos de cota no nível do projeto zonal de uma organização.

Zonal
quotavaluereplicas.quotamanagement.global.gdc.goog.create
quotavaluereplicas.quotamanagement.global.gdc.goog.delete
quotavaluereplicas.quotamanagement.global.gdc.goog.get
quotavaluereplicas.quotamanagement.global.gdc.goog.list
quotavaluereplicas.quotamanagement.global.gdc.goog.patch
quotavaluereplicas.quotamanagement.global.gdc.goog.update
quotavaluereplicas.quotamanagement.global.gdc.goog.watch
Administrador de cotas do projeto
(project-quota-admin)

Gerencia recursos de cota global no nível do projeto para uma organização.

Global
quotavalues.quotamanagement.global.gdc.goog.create
quotavalues.quotamanagement.global.gdc.goog.delete
quotavalues.quotamanagement.global.gdc.goog.get
quotavalues.quotamanagement.global.gdc.goog.list
quotavalues.quotamanagement.global.gdc.goog.patch
quotavalues.quotamanagement.global.gdc.goog.update
quotavalues.quotamanagement.global.gdc.goog.watch
Leitor de projetos
(project-viewer)

Zonal
*.visibility.resourcemanager.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.list
clusterinfos.resourcemanager.private.gdc.goog.watch
customresourcedefinitions.apiextensions.k8s.io.get
customresourcedefinitions.apiextensions.k8s.io.list
customresourcedefinitions.apiextensions.k8s.io.watch
projectrolebindings.resourcemanager.gdc.goog.get
projectrolebindings.resourcemanager.gdc.goog.list
projectrolebindings.resourcemanager.gdc.goog.watch
projectroles.resourcemanager.gdc.goog.get
projectroles.resourcemanager.gdc.goog.list
projectroles.resourcemanager.gdc.goog.watch
rolebindings.rbac.authorization.k8s.io.get
rolebindings.rbac.authorization.k8s.io.list
rolebindings.rbac.authorization.k8s.io.watch
roles.rbac.authorization.k8s.io.get
roles.rbac.authorization.k8s.io.list
roles.rbac.authorization.k8s.io.watch
Administrador de máquinas virtuais do projeto
(project-vm-admin)

Gerencia VMs no namespace do projeto.

Global
virtualmachineimages.virtualmachine.global.gdc.goog.get
virtualmachineimages.virtualmachine.global.gdc.goog.list
virtualmachineimages.virtualmachine.global.gdc.goog.watch
volumereplicationrelationships.storage.global.gdc.goog.create
volumereplicationrelationships.storage.global.gdc.goog.delete
volumereplicationrelationships.storage.global.gdc.goog.get
volumereplicationrelationships.storage.global.gdc.goog.list
volumereplicationrelationships.storage.global.gdc.goog.patch
volumereplicationrelationships.storage.global.gdc.goog.update
volumereplicationrelationships.storage.global.gdc.goog.watch

Zonal
virtualmachineaccessrequests.virtualmachine.gdc.goog.create
virtualmachineaccessrequests.virtualmachine.gdc.goog.delete
virtualmachineaccessrequests.virtualmachine.gdc.goog.get
virtualmachineaccessrequests.virtualmachine.gdc.goog.list
virtualmachineaccessrequests.virtualmachine.gdc.goog.patch
virtualmachineaccessrequests.virtualmachine.gdc.goog.update
virtualmachineaccessrequests.virtualmachine.gdc.goog.watch
virtualmachinebackupplans.virtualmachine.gdc.goog.delete
virtualmachinebackupplans.virtualmachine.gdc.goog.get
virtualmachinebackupplans.virtualmachine.gdc.goog.list
virtualmachinebackupplans.virtualmachine.gdc.goog.watch
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.create
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.delete
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.get
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.list
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.patch
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.update
virtualmachinebackupplantemplates.virtualmachine.gdc.goog.watch
virtualmachinebackuprequests.virtualmachine.gdc.goog.create
virtualmachinebackuprequests.virtualmachine.gdc.goog.delete
virtualmachinebackuprequests.virtualmachine.gdc.goog.get
virtualmachinebackuprequests.virtualmachine.gdc.goog.list
virtualmachinebackuprequests.virtualmachine.gdc.goog.watch
virtualmachinebackups.virtualmachine.gdc.goog.get
virtualmachinebackups.virtualmachine.gdc.goog.list
virtualmachinebackups.virtualmachine.gdc.goog.watch
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.create
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.delete
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.get
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.list
virtualmachinedeletebackuprequests.virtualmachine.gdc.goog.watch
virtualmachinedisks.virtualmachine.gdc.goog.create
virtualmachinedisks.virtualmachine.gdc.goog.delete
virtualmachinedisks.virtualmachine.gdc.goog.get
virtualmachinedisks.virtualmachine.gdc.goog.list
virtualmachinedisks.virtualmachine.gdc.goog.patch
virtualmachinedisks.virtualmachine.gdc.goog.update
virtualmachinedisks.virtualmachine.gdc.goog.watch
virtualmachineexternalaccesses.virtualmachine.gdc.goog.create
virtualmachineexternalaccesses.virtualmachine.gdc.goog.delete
virtualmachineexternalaccesses.virtualmachine.gdc.goog.get
virtualmachineexternalaccesses.virtualmachine.gdc.goog.list
virtualmachineexternalaccesses.virtualmachine.gdc.goog.patch
virtualmachineexternalaccesses.virtualmachine.gdc.goog.update
virtualmachineexternalaccesses.virtualmachine.gdc.goog.watch
virtualmachineimages.virtualmachine.gdc.goog.get
virtualmachineimages.virtualmachine.gdc.goog.list
virtualmachineimages.virtualmachine.gdc.goog.watch
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.create
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.delete
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.get
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.list
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.patch
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.update
virtualmachinepasswordresetrequests.virtualmachine.gdc.goog.watch
virtualmachinerestorerequests.virtualmachine.gdc.goog.create
virtualmachinerestorerequests.virtualmachine.gdc.goog.delete
virtualmachinerestorerequests.virtualmachine.gdc.goog.get
virtualmachinerestorerequests.virtualmachine.gdc.goog.list
virtualmachinerestorerequests.virtualmachine.gdc.goog.watch
virtualmachinerestores.virtualmachine.gdc.goog.delete
virtualmachinerestores.virtualmachine.gdc.goog.get
virtualmachinerestores.virtualmachine.gdc.goog.list
virtualmachinerestores.virtualmachine.gdc.goog.watch
virtualmachines.virtualmachine.gdc.goog.console
virtualmachines.virtualmachine.gdc.goog.create
virtualmachines.virtualmachine.gdc.goog.delete
virtualmachines.virtualmachine.gdc.goog.get
virtualmachines.virtualmachine.gdc.goog.getmetadata
virtualmachines.virtualmachine.gdc.goog.list
virtualmachines.virtualmachine.gdc.goog.patch
virtualmachines.virtualmachine.gdc.goog.setmetadata
virtualmachines.virtualmachine.gdc.goog.update
virtualmachines.virtualmachine.gdc.goog.watch
virtualmachines/restart.virtualmachineoperations.gdc.goog.update
Administrador de imagens de máquinas virtuais do projeto
(project-vm-image-admin)

Gerencia imagens de VM no namespace do projeto.

Global
virtualmachineimages.virtualmachine.global.gdc.goog.get
virtualmachineimages.virtualmachine.global.gdc.goog.list
virtualmachineimages.virtualmachine.global.gdc.goog.watch

Zonal
buckets.object.gdc.goog.create
buckets.object.gdc.goog.delete
buckets.object.gdc.goog.get
buckets.object.gdc.goog.list
buckets.object.gdc.goog.patch
buckets.object.gdc.goog.read-object
buckets.object.gdc.goog.update
buckets.object.gdc.goog.watch
buckets.object.gdc.goog.write-object
virtualmachineimage.virtualmachineview.gdc.goog.get
virtualmachineimage.virtualmachineview.gdc.goog.list
virtualmachineimage.virtualmachineview.gdc.goog.watch
virtualmachineimageimports.virtualmachine.gdc.goog.create
virtualmachineimageimports.virtualmachine.gdc.goog.delete
virtualmachineimageimports.virtualmachine.gdc.goog.get
virtualmachineimageimports.virtualmachine.gdc.goog.list
virtualmachineimageimports.virtualmachine.gdc.goog.patch
virtualmachineimageimports.virtualmachine.gdc.goog.update
virtualmachineimageimports.virtualmachine.gdc.goog.watch
virtualmachineimages.virtualmachine.gdc.goog.get
virtualmachineimages.virtualmachine.gdc.goog.list
virtualmachineimages.virtualmachine.gdc.goog.watch
Criador da organização de exportação do SIEM
(siemexport-org-creator)

Zonal
secrets.create
secrets.get
secrets.list
secrets.watch
siemorgforwarders.logging.gdc.goog.create
siemorgforwarders.logging.gdc.goog.get
siemorgforwarders.logging.gdc.goog.list
siemorgforwarders.logging.gdc.goog.watch
Editor da organização de exportação do SIEM
(siemexport-org-editor)

Zonal
secrets.delete
secrets.get
secrets.list
secrets.patch
secrets.update
secrets.watch
siemorgforwarders.logging.gdc.goog.delete
siemorgforwarders.logging.gdc.goog.get
siemorgforwarders.logging.gdc.goog.list
siemorgforwarders.logging.gdc.goog.patch
siemorgforwarders.logging.gdc.goog.update
siemorgforwarders.logging.gdc.goog.watch
Leitor da organização de exportação do SIEM
(siemexport-org-viewer)

Zonal
secrets.get
secrets.list
secrets.watch
siemorgforwarders.logging.gdc.goog.get
siemorgforwarders.logging.gdc.goog.list
siemorgforwarders.logging.gdc.goog.watch
Administrador de secrets
(secret-admin)

Global
secrets.create
secrets.delete
secrets.get
secrets.list
secrets.patch
secrets.update

Zonal
secrets.create
secrets.delete
secrets.get
secrets.list
secrets.patch
secrets.update
secrets.watch
Leitor de secrets
(secret-viewer)

Global
secrets.get
secrets.list
secrets.watch

Zonal
secrets.get
secrets.list
secrets.watch
Administrador de cluster padrão
(standard-cluster-admin)

Gerencia a criação e a atualização de clusters padrão.

Zonal
*.visibility.resourcemanager.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.list
clusterinfos.resourcemanager.private.gdc.goog.watch
clusters.cluster.gdc.goog.create
clusters.cluster.gdc.goog.delete
clusters.cluster.gdc.goog.get
clusters.cluster.gdc.goog.list
clusters.cluster.gdc.goog.patch
clusters.cluster.gdc.goog.update
clusters.cluster.gdc.goog.watch
projectbindings.resourcemanager.gdc.goog.create
projectbindings.resourcemanager.gdc.goog.delete
projectbindings.resourcemanager.gdc.goog.get
projectbindings.resourcemanager.gdc.goog.list
projectbindings.resourcemanager.gdc.goog.watch
projects.resourcemanager.gdc.goog.get
projects.resourcemanager.gdc.goog.list
projects.resourcemanager.gdc.goog.watch
userclusterupgraderequests.cluster.gdc.goog.create
userclusterupgraderequests.cluster.gdc.goog.delete
userclusterupgraderequests.cluster.gdc.goog.get
userclusterupgraderequests.cluster.gdc.goog.list
userclusterupgraderequests.cluster.gdc.goog.patch
userclusterupgraderequests.cluster.gdc.goog.update
userclusterupgraderequests.cluster.gdc.goog.watch
userclusterupgrades.upgrade.private.gdc.goog.create
userclusterupgrades.upgrade.private.gdc.goog.delete
userclusterupgrades.upgrade.private.gdc.goog.get
userclusterupgrades.upgrade.private.gdc.goog.list
userclusterupgrades.upgrade.private.gdc.goog.patch
userclusterupgrades.upgrade.private.gdc.goog.update
userclusterupgrades.upgrade.private.gdc.goog.watch
Administrador de projetos de sub-rede
(subnet-project-admin)

Global
subnets.ipam.global.gdc.goog.create
subnets.ipam.global.gdc.goog.delete
subnets.ipam.global.gdc.goog.get
subnets.ipam.global.gdc.goog.list
subnets.ipam.global.gdc.goog.patch
subnets.ipam.global.gdc.goog.update
subnets.ipam.global.gdc.goog.watch

Zonal
subnets.ipam.gdc.goog.create
subnets.ipam.gdc.goog.customized-allocate
subnets.ipam.gdc.goog.delete
subnets.ipam.gdc.goog.get
subnets.ipam.gdc.goog.list
subnets.ipam.gdc.goog.patch
subnets.ipam.gdc.goog.update
subnets.ipam.gdc.goog.watch
Operador de projetos de sub-rede
(subnet-project-operator)

Zonal
subnets.ipam.gdc.goog.create
subnets.ipam.gdc.goog.delete
subnets.ipam.gdc.goog.get
subnets.ipam.gdc.goog.list
subnets.ipam.gdc.goog.patch
subnets.ipam.gdc.goog.update
subnets.ipam.gdc.goog.watch
Usuário da Previsão da Vertex AI
(vertex-ai-prediction-user)

Realiza solicitações de previsão e explicação em endpoints do AI Platform.

Zonal
endpoints.aiplatform.googleapis.com.explain
endpoints.aiplatform.googleapis.com.predict
Administrador de notebooks do Workbench
(workbench-notebooks-admin)

Criar, ler e excluir o acesso aos notebooks do Workbench. Acesso de leitura a ClusterInfos

Zonal
clusterinfos.resourcemanager.private.gdc.goog.get
clusterinfos.resourcemanager.private.gdc.goog.list
notebook/notebook-root.istio.resourcemanager.gdc.goog.*
notebooks.aiplatform.gdc.goog.create
notebooks.aiplatform.gdc.goog.delete
notebooks.aiplatform.gdc.goog.deletecollection
notebooks.aiplatform.gdc.goog.get
notebooks.aiplatform.gdc.goog.list
notebooks.aiplatform.gdc.goog.patch
notebooks.aiplatform.gdc.goog.update
notebooks.aiplatform.gdc.goog.watch
notebooks/status.aiplatform.gdc.goog.get
notebooks/status.aiplatform.gdc.goog.list
Leitor de notebooks do Workbench
(workbench-notebooks-viewer)

Acesso de leitura aos notebooks do Workbench

Zonal
notebook/notebook-root.istio.resourcemanager.gdc.goog.*
notebooks.aiplatform.gdc.goog.get
notebooks.aiplatform.gdc.goog.list
notebooks/status.aiplatform.gdc.goog.get
notebooks/status.aiplatform.gdc.goog.list
Leitor de cargas de trabalho
(workload-viewer)

Cluster do Kubernetes
deployments.apps.get
deployments.apps.list
deployments.apps.watch
pods.get
pods.list
pods.watch