תפקידים והרשאות של IAM עבור Integration Connectors
תפקידים מוגדרים מראש מאפשרים גישה פרטנית למשאבים ספציפיים ב-Google Cloud. Google היא זו שיוצרת את התפקידים האלה ומעדכנת אוטומטית את ההרשאות שלהם לפי הצורך. Google מעדכנת אוטומטית את ההרשאות שלהם לפי הצורך, למשל כשנוספים ל-Google Cloud תכונות או שירותים חדשים.
בטבלה הבאה מפורטים כל התפקידים המוגדרים מראש ב-IAM עבור Integration Connectors:| Role | Permissions |
|---|---|
Connector Admin( Full access to all resources of Connectors Service. |
|
Connectors Editor( Editor role for connectors |
|
Connectors Viewer( Read-only access to Connectors all resources. |
|
Custom Connectors Admin( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Admin access to Custom Connector resources |
|
Custom Connector Viewer( Custom Connector is a global resource which creates custom connector within the given target project. This role grants Read-only access to Custom Connector & Custom Connector Version resources. |
|
Connectors Endpoint Attachment Admin( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Admin access to Connectors Endpoint Attachment resources. |
|
Connectors Endpoint Attachment Viewer( Endpoint Attachment is a regional resource which creates PSC connection endpoint for the given PSC Service Attachment. This role grants Read-only access to Connectors Endpoint Attachment resources |
|
Connectors Event Subscriptions Admin( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Admin access to Connectors Subscription resources |
|
Connectors Event Subscriptions Viewer( Event Subscription is a regional resource which creates subscriptions on events for a given connection within the given target project. This role grants Read-only access to Event Subscription resources. |
|
Connector Invoker( Full Access to invoke all operations on Connections. |
|
Connector Event Listener( Full Access to listen events by connections. |
|
Connectors Managed Zone Admin( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Admin access to Connectors Managed Zone resources |
|
Connectors Managed Zone Viewer( Managed Zone is a global resource which creates Cloud DNS Peering Zone with the given target project. This role grants Read-only access to Connectors Managed Zone resources. |
|
Service agent roles
Service agent roles should only be granted to service agents.
| Role | Permissions |
|---|---|
Connectors Platform Service Agent( Grants Connectors Platform service account to manage customer resources |
|
מידע נוסף על תפקידים מוגדרים מראש זמין במאמר תפקידים והרשאות. לא בטוחים איזה תפקיד מוגדר מראש לתת? תוכלו להיעזר במאמר בחירת תפקידים מוגדרים מראש.