-
Notifications
You must be signed in to change notification settings - Fork 177
Installation
To install IAP Desktop, you'll need:
- Windows 8, Windows Server 2012 or higher
- Internet access (at least to Google APIs), either directly, via NAT, or via a HTTP proxy
You do not need admin rights unless you are installing on Windows Server.
To use IAP Desktop, you'll also need:
-
A Google Cloud project. If you are a Project Owner of the project, you have all permissions needed to use IAP Desktop. Otherwise, you need a combination of the following roles:
- Compute Viewer (to list and access VM instances)
- IAP-secured Tunnel User (to use IAP TCP forwarding)
-
A firewall rule that permits access from Identity-Aware-Proxy to VM instances. You can create such a firewall rule by using the following command:
gcloud compute firewall-rules create allow-rdp-ingress-from-iap \ --direction=INGRESS \ --action=allow \ --rules=tcp:3389,tcp:22 \ --source-ranges=35.235.240.0/20For further details setting up permissions and firewall rules, see Preparing your project for IAP TCP forwarding.
To install IAP Desktop on your computer, follow these steps:
-
Double-click the downloaded installer package

-
Follow the instructions of the installer. Once you reach the Completed IAP Desktop Setup Wizard step, click Finish to launch IAP Desktop:

You now set up IAP Desktop for first use:
-
On the Sign-in dialog, click Sign in with Google:

-
Follow the instructions in the browser to authorize IAP Desktop to access your Google Cloud project.
-
In the Add project dialog, select the Google Cloud project that contains the instances that yout want to connect to, then click Add project.

-
Notice that the project and all Windows VM instances are added to the Project Explorer window:

This completes the installation of IAP Desktop.
- Learn how to connecting to a Windows VM by using Remote Desktop
- See how you can connect to Linux VMs by using SSH
- Review how IAP Desktop protects your privacy and stores your credentials
IAP Desktop is an open-source project and not an officially supported Google product.