-
Notifications
You must be signed in to change notification settings - Fork 177
Roles
Johannes Passing edited this page Jul 27, 2023
·
5 revisions
|
📝 This Wiki page has moved. For the latest content, see Configure IAP in your project on the IAP Desktop documentation page. |
|---|
The IAM roles required to use IAP Desktop depend on the feature set that you use.
Note: You can use custom roles instead of predefined IAM roles.
Required roles (on project):
Required roles (on project or instance):
- IAP-secured Tunnel User
- Compute OS (Admin) Login role
- Service Account User (only if the VM has an attached service account)
Required roles (on project or instance):
- IAP-secured Tunnel User
- Compute Instance Admin
- Service Account User (only if the VM has an attached service account)
Required roles (on project or instance):
Required roles (on project or instance):
Required roles (on project or instance):
- Compute Instance Admin
- Service Account User (only if the VM has an attached service account)
Required roles (on project):
Required roles (on project or instance):
Required roles (on project):
- Compute Viewer
- Logs Viewer
- Storage Object Viewer (optional, to access audit logs exported to Cloud Storage)
IAP Desktop is an open-source project and not an officially supported Google product.