Escopo
resource
Permissões
1.084
Role ID
roles/compute.adminEsta é uma role privilegiada — concede capacidades de controle elevado. Aplique o princípio do menor privilégio e monitore atribuições via Cloud Audit Logs.
Admin
Administrative control over a service, may include IAM
Descrição
Full control of all Compute Engine resources. If the user will be managing virtual machine instances that are configured to run as a service account, you must also grant the roles/iam.serviceAccountUser role.
Recursos de menor nível onde esta role pode ser concedida
Lowest-level resources — documentação do Google
Disk
Image
Instance
Instance template
Node group
Node template
Snapshot
Permissions(1.084)
Carregando permissões…
Role Definition (JSON)
{
"name": "roles/compute.admin",
"title": "Compute Admin",
"description": "Full control of all Compute Engine resources. If the user will be managing virtual machine instances that are configured to run as a service account, you must also grant the roles/iam.serviceAccountUser role.",
"stage": "GA",
"includedPermissions": []
}Roles relacionadasCompute
Appengine Admin
Admin role for appengine
App Engine Admin
Read/Write/Modify access to all application configuration and settings. To deploy new versions, a principal must have the Service Account User (roles/iam.serviceAccountUser) role on the assigned App Engine service account, and the Cloud Build Editor (roles/cloudbuild.builds.editor), and Cloud Storage Object Admin (roles/storage.objectAdmin) roles on the project.
App Engine Creator
Ability to create the App Engine resource for the project.
App Engine Viewer
Read-only access to all application configuration and settings.
App Engine Code Viewer
Read-only access to all application configuration, settings, and deployed source code.