- NAME
-
- gcloud storage service-agent - manage a project's Cloud Storage service agent, which is used to perform Cloud KMS operations
- SYNOPSIS
-
-
gcloud storage service-agent[--authorize-cmek=AUTHORIZE_CMEK] [GCLOUD_WIDE_FLAG …]
-
- DESCRIPTION
-
gcloud storage service-agentdisplays the Cloud Storage service agent, which is used to perform Cloud KMS operations against your a default or supplied project. If the project does not yet have a service agent,gcloud storage service-agentcreates one. - EXAMPLES
-
To show the service agent for your default project:
gcloud storage service-agentTo show the service account for
:my-projectgcloud storage service-agent --project=my-projectTo authorize your default project to use a Cloud KMS key:
gcloud storage service-agent --authorize-cmek=projects/key-project/locations/us-east1/keyRings/key-ring/cryptoKeys/my-key - FLAGS
-
- Adds appropriate encrypt/decrypt permissions to the specified Cloud KMS key. This allows the Cloud Storage service agent to write and read Cloud KMS-encrypted objects in buckets associated with the service agent's project.
- GCLOUD WIDE FLAGS
-
These flags are available to all commands:
--access-token-file,--account,--billing-project,--configuration,--flags-file,--flatten,--format,--help,--impersonate-service-account,--log-http,--project,--quiet,--trace-token,--user-output-enabled,--verbosity.Run
$ gcloud helpfor details. - NOTES
-
This variant is also available:
gcloud alpha storage service-agent
gcloud storage service-agent
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2025-05-07 UTC.