Compute Security Admin

GCP IAM · Compute · Admin

Compute Security Admin

Privilegiada
AdminIAM ScopeCompute

Dado verificado em · Fonte

Escopo
resource
Permissões
170
Role IDroles/compute.securityAdmin

Esta é uma role privilegiada — concede capacidades de controle elevado. Aplique o princípio do menor privilégio e monitore atribuições via Cloud Audit Logs.

Admin

Administrative control over a service, may include IAM

Descrição

Permissions to create, modify, and delete firewall rules and SSL certificates, and also to configure Shielded VM settings. For example, if your company has a security team that manages firewalls and SSL certificates and a networking team that manages the rest of the networking resources, then grant this role to the security team's group.

Recursos de menor nível onde esta role pode ser concedida

Lowest-level resources — documentação do Google

Instance

Permissions(170)

Carregando permissões…

Role Definition (JSON)

{
  "name": "roles/compute.securityAdmin",
  "title": "Compute Security Admin",
  "description": "Permissions to create, modify, and delete firewall rules and SSL certificates, and also to configure Shielded VM settings. For example, if your company has a security team that manages firewalls and SSL certificates and a networking team that manages the rest of the networking resources, then grant this role to the security team's group.",
  "stage": "GA",
  "includedPermissions": []
}