Escopo
resource
Permissões
153
Role ID
roles/compute.storageAdminEsta é uma role privilegiada — concede capacidades de controle elevado. Aplique o princípio do menor privilégio e monitore atribuições via Cloud Audit Logs.
Admin
Administrative control over a service, may include IAM
Descrição
Permissions to create, modify, and delete disks, images, and snapshots. For example, if your company has someone who manages project images and you don't want them to have the editor role on the project, then grant this role to their account on the project.
Recursos de menor nível onde esta role pode ser concedida
Lowest-level resources — documentação do Google
Disk
Image
Snapshot
Permissions(153)
Carregando permissões…
Role Definition (JSON)
{
"name": "roles/compute.storageAdmin",
"title": "Compute Storage Admin",
"description": "Permissions to create, modify, and delete disks, images, and snapshots. For example, if your company has someone who manages project images and you don't want them to have the editor role on the project, then grant this role to their account on the project.",
"stage": "GA",
"includedPermissions": []
}Roles relacionadasCompute
Appengine Admin
Admin role for appengine
App Engine Admin
Read/Write/Modify access to all application configuration and settings. To deploy new versions, a principal must have the Service Account User (roles/iam.serviceAccountUser) role on the assigned App Engine service account, and the Cloud Build Editor (roles/cloudbuild.builds.editor), and Cloud Storage Object Admin (roles/storage.objectAdmin) roles on the project.
App Engine Creator
Ability to create the App Engine resource for the project.
App Engine Viewer
Read-only access to all application configuration and settings.
App Engine Code Viewer
Read-only access to all application configuration, settings, and deployed source code.