O'Reilly logo

Google Cloud Platform Cookbook by Legorie Rajan PS

Stay ahead with the world's most comprehensive technology and business learning platform.

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, tutorials, and more.

Start Free Trial

No credit card required

How to do it...

Our requirement is to create a storage reviewer role for compute resource, who reviews the work of a Compute Storage Admin. To start with, we can take the predefined role of roles/compute.storageAdmin as a base and fine-tune the permissions for the reviewer role:

  1. Log in to the console and launch the Google Cloud Shell:
  2. Let's find out the permissions assigned to the roles/compute.storageAdmin from its metadata:
$ gcloud beta iam roles describe roles/compute.storageAdmindescription: Full control of Compute Engine storage resources.etag: AA==includedPermissions:- compute.diskTypes.get- compute.diskTypes.list- compute.disks.create- compute.disks.createSnapshot- compute.disks.delete- compute.disks.get- compute.disks.getIamPolicy ...

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, interactive tutorials, and more.

Start Free Trial

No credit card required