Skip to content

Releases: darkbitio/gcp-iam-role-permissions

Release 2024-10-11-01-27-11

11 Oct 01:27
Compare
Choose a tag to compare

GCP IAM Update 2024-10-11-01-27-11

 gcp_roles_cai.json                                 | 72 +++++++++++-----------
 roles/backupdr.backupvaultAccessor                 |  2 +-
 roles/backupdr.backupvaultViewer                   |  2 +-
 roles/cloudcontrolspartner.admin                   |  2 +
 roles/cloudcontrolspartner.supportCaseServiceAgent |  2 +-
 roles/cloudfunctions.admin                         | 30 +++++++++
 roles/cloudmigration.inframanager                  |  1 -
 roles/cloudtpu.serviceAgent                        |  3 -
 roles/compute.admin                                |  5 --
 roles/compute.instanceAdmin                        |  2 -
 roles/compute.instanceAdmin.v1                     |  3 -
 roles/compute.loadBalancerAdmin                    |  2 -
 roles/compute.securityAdmin                        |  2 -
 roles/compute.viewer                               |  2 -
 roles/container.cloudKmsKeyUser                    |  2 +-
 roles/dataflow.serviceAgent                        |  6 +-
 roles/dataprep.serviceAgent                        |  2 -
 roles/dataprocrm.nodeServiceAgent                  |  2 +-
 roles/eventarc.admin                               | 30 +++++++++
 roles/eventarc.messageBusAdmin                     | 12 +++-
 roles/eventarc.serviceAgent                        |  1 +
 roles/eventarc.viewer                              | 13 ++++
 roles/firebase.admin                               | 30 +++++++++
 roles/firebase.developAdmin                        | 30 +++++++++
 roles/firebase.developViewer                       | 13 ++++
 roles/firebase.viewer                              | 13 ++++
 roles/integrations.integrationViewer               |  3 +
 roles/logging.sqlAlertWriter                       |  6 +-
 roles/notebooks.admin                              |  2 -
 roles/notebooks.legacyAdmin                        |  5 --
 roles/notebooks.runner                             |  2 -
 roles/notebooks.serviceAgent                       |  4 --
 roles/notebooks.viewer                             |  2 -
 roles/oracledatabase.cloudVmClusterAdmin           |  3 +
 roles/owner                                        | 47 ++++++++++++--
 roles/run.sourceDeveloper                          | 18 ++++++
 roles/viewer                                       | 18 +++++-
 37 files changed, 304 insertions(+), 90 deletions(-)

Release 2024-10-10-13-14-43

10 Oct 13:14
Compare
Choose a tag to compare

GCP IAM Update 2024-10-10-13-14-43

 gcp_roles_cai.json                   | 70 ++++++++++++++++++------------------
 roles/backupdr.backupvaultAdmin      |  2 +-
 roles/batch.serviceAgent             |  2 --
 roles/cloudcontrolspartner.admin     |  2 --
 roles/cloudcontrolspartner.editor    |  2 ++
 roles/cloudfunctions.admin           | 30 ----------------
 roles/cloudfunctions.developer       | 18 ++++++++++
 roles/cloudfunctions.serviceAgent    | 18 ++++++++++
 roles/cloudfunctions.viewer          | 13 +++++++
 roles/cloudtpu.serviceAgent          |  3 ++
 roles/compute.admin                  |  5 +++
 roles/compute.instanceAdmin          |  2 ++
 roles/compute.instanceAdmin.v1       |  3 ++
 roles/dataproc.serviceAgent          |  2 --
 roles/dataprocrm.nodeServiceAgent    |  2 +-
 roles/eventarc.developer             | 18 ++++++++++
 roles/eventarc.messageBusAdmin       | 12 +------
 roles/eventarc.messageBusUser        |  8 ++++-
 roles/eventarc.serviceAgent          |  1 -
 roles/firebase.developViewer         | 13 -------
 roles/genomics.serviceAgent          |  3 --
 roles/iam.securityAdmin              | 17 ++++++---
 roles/iam.securityReviewer           | 11 ++++--
 roles/integrations.integrationAdmin  |  8 +++++
 roles/integrations.integrationViewer |  3 --
 roles/logging.admin                  |  2 ++
 roles/logging.configWriter           |  2 ++
 roles/logging.sqlAlertWriter         |  6 +---
 roles/notebooks.legacyAdmin          |  5 +++
 roles/notebooks.runner               |  2 ++
 roles/notebooks.serviceAgent         |  4 +++
 roles/notebooks.viewer               |  2 ++
 roles/owner                          | 47 +++---------------------
 roles/run.sourceDeveloper            | 18 ----------
 roles/run.sourceViewer               | 13 +++++++
 roles/viewer                         | 18 ++--------
 36 files changed, 195 insertions(+), 192 deletions(-)

Release 2024-10-10-01-27-34

10 Oct 01:27
Compare
Choose a tag to compare

GCP IAM Update 2024-10-10-01-27-34

 gcp_roles_cai.json                                 | 62 ++++++++++++----------
 roles/backupdr.backupvaultLister                   |  2 +-
 roles/chronicle.soarServiceAgent                   |  2 +
 roles/cloudcontrolspartner.admin                   |  2 +
 ...udcontrolspartner.supportCaseServiceAgent (new) | 10 ++++
 roles/cloudfunctions.admin                         | 30 +++++++++++
 roles/cloudtpu.serviceAgent                        |  3 --
 roles/composer.serviceAgent                        |  6 +--
 roles/compute.admin                                |  5 --
 roles/compute.instanceAdmin                        |  2 -
 roles/compute.instanceAdmin.v1                     |  3 --
 roles/compute.orgSecurityPolicyAdmin               |  2 -
 roles/compute.storageAdmin                         |  1 -
 roles/container.serviceAgent                       |  5 --
 roles/dataprocrm.nodeServiceAgent (new)            | 20 +++++++
 roles/editor                                       | 41 ++++++++++++--
 roles/eventarc.messageBusAdmin (new)               | 17 ++++++
 roles/eventarc.messageBusUser (new)                |  7 +++
 roles/eventarc.serviceAgent                        |  1 +
 roles/firebase.developViewer                       | 13 +++++
 roles/integrations.integrationEditor               |  8 +++
 roles/integrations.integrationInvoker              |  4 ++
 roles/integrations.integrationViewer               |  3 ++
 roles/lifesciences.serviceAgent                    |  3 --
 roles/logging.sqlAlertWriter                       |  6 ++-
 roles/notebooks.legacyAdmin                        |  5 --
 roles/notebooks.legacyViewer                       |  2 -
 roles/notebooks.runner                             |  2 -
 roles/notebooks.serviceAgent                       |  4 --
 roles/notebooks.viewer                             |  2 -
 roles/oci.serviceAgent                             |  6 +--
 roles/owner                                        | 47 ++++++++++++++--
 roles/run.sourceDeveloper                          | 18 +++++++
 roles/viewer                                       | 18 ++++++-
 34 files changed, 276 insertions(+), 86 deletions(-)

Release 2024-10-05-01-28-41

05 Oct 01:28
Compare
Choose a tag to compare

GCP IAM Update 2024-10-05-01-28-41

 gcp_roles_cai.json                               |  13 ++-
 roles/aiplatform.extensionCustomCodeServiceAgent |   5 +
 roles/billing.admin                              |   5 +
 roles/dlp.orgdriver                              | 141 +++++++++++++++++++++++
 roles/firebase.developAdmin                      |   5 +
 roles/firebase.sdkAdminServiceAgent              |   5 +
 roles/logging.sqlAlertWriter (new)               |   7 ++
 roles/notebooks.runner                           |   3 -
 8 files changed, 175 insertions(+), 9 deletions(-)

Release 2024-10-04-13-27-22

04 Oct 13:27
Compare
Choose a tag to compare

GCP IAM Update 2024-10-04-13-27-22

 gcp_roles_cai.json                              |  96 ++++++++--------
 roles/aiplatform.customCodeServiceAgent         |   5 +
 roles/aiplatform.user                           |   5 +
 roles/bigquerymigration.orchestrator            |   1 +
 roles/billing.admin                             |   5 -
 roles/cloudjobdiscovery.jobsEditor              |   2 +-
 roles/cloudjobdiscovery.profilesViewer          |   2 +-
 roles/cloudsql.editor                           |   6 +
 roles/cloudtpu.serviceAgent                     |   1 -
 roles/cloudtrace.user                           |   5 +
 roles/composer.environmentAndStorageObjectAdmin |   5 +
 roles/composer.worker                           |   5 +
 roles/compute.admin                             |   8 --
 roles/compute.networkAdmin                      |   1 -
 roles/compute.viewer                            |   3 -
 roles/dataflow.serviceAgent                     |  10 +-
 roles/datafusion.serviceAgent                   |   5 +
 roles/datamigration.serviceAgent                |   1 +
 roles/datapipelines.serviceAgent                |   5 +
 roles/dataplex.serviceAgent                     |   5 +
 roles/dataproc.serviceAgent                     |   5 +
 roles/dialogflow.serviceAgent                   |   4 +
 roles/dlp.orgdriver                             | 141 ------------------------
 roles/dlp.projectdriver                         | 141 ++++++++++++++++++++++++
 roles/editor                                    |  54 +++++++--
 roles/firebase.admin                            |   5 +
 roles/iam.securityReviewer                      |  11 +-
 roles/logging.configWriter                      |   4 +
 roles/ml.serviceAgent                           |   5 +
 roles/multiclusteringress.serviceAgent          |   1 -
 roles/networksecurity.mirroringDeploymentUser   |   7 +-
 roles/networksecurity.mirroringDeploymentViewer |   6 +-
 roles/notebooks.admin                           |   3 -
 roles/notebooks.legacyAdmin                     |   8 --
 roles/notebooks.runner                          |   3 +
 roles/notebooks.viewer                          |   3 -
 roles/owner                                     |  58 ++++++++--
 roles/resourcemanager.tagViewer                 |   2 +
 roles/run.builder                               |   2 +-
 roles/run.sourceViewer                          |   2 +
 roles/serverless.serviceAgent                   |   2 +
 roles/storage.admin                             |   5 +
 roles/storage.folderAdmin                       |   5 +
 roles/storage.legacyBucketOwner                 |   5 +
 roles/storage.legacyBucketWriter                |   5 +
 roles/storage.objectCreator                     |   1 +
 roles/storage.objectUser                        |   5 +
 roles/viewer                                    |  24 +++-
 roles/vmwareengine.vmwareengineViewer           |   1 +
 49 files changed, 446 insertions(+), 248 deletions(-)

Release 2024-10-04-01-27-15

04 Oct 01:27
Compare
Choose a tag to compare

GCP IAM Update 2024-10-04-01-27-15

 gcp_roles_cai.json                               |  76 ++++++------
 roles/aiplatform.admin                           |   5 +
 roles/aiplatform.serviceAgent                    |   5 +
 roles/aiplatform.viewer                          |   2 +
 roles/billing.admin                              |   5 +
 roles/cloudbuild.serviceAgent                    |   1 +
 roles/cloudjobdiscovery.admin                    |   2 +-
 roles/cloudjobdiscovery.jobsViewer               |   2 +-
 roles/cloudjobdiscovery.profilesEditor           |   2 +-
 roles/cloudsql.admin                             |   7 ++
 roles/cloudsql.viewer                            |   4 +
 roles/cloudtrace.admin                           |   5 +
 roles/composer.environmentAndStorageObjectUser   |   2 +
 roles/composer.environmentAndStorageObjectViewer |   2 +
 roles/composer.serviceAgent                      |  17 ++-
 roles/compute.loadBalancerAdmin                  |   1 -
 roles/container.cloudKmsKeyUser (new)            |  16 +++
 roles/container.serviceAgent                     |   1 -
 roles/dataprep.serviceAgent                      |   8 +-
 roles/dataproc.worker                            |   5 +
 roles/dlp.orgdriver                              | 141 +++++++++++++++++++++++
 roles/dlp.serviceAgent                           |   5 +
 roles/iam.securityAdmin                          |  12 +-
 roles/logging.admin                              |   4 +
 roles/networksecurity.mirroringDeploymentAdmin   |  13 ++-
 roles/networksecurity.mirroringEndpointAdmin     |  13 ++-
 roles/networksecurity.mirroringEndpointUser      |   7 +-
 roles/networksecurity.mirroringEndpointViewer    |   6 +-
 roles/notebooks.legacyViewer                     |   3 -
 roles/notebooks.runner                           |   3 -
 roles/notebooks.serviceAgent                     |   3 -
 roles/oci.serviceAgent (new)                     | 102 ++++++++++++++++
 roles/resourcemanager.tagUser                    |   4 +
 roles/run.serviceAgent                           |   2 +
 roles/run.sourceDeveloper                        |   3 +
 roles/storage.legacyBucketReader                 |   2 +
 roles/storage.objectAdmin                        |   5 +
 roles/storage.objectViewer                       |   2 +
 roles/visualinspection.serviceAgent              |  10 ++
 roles/vmwareengine.vmwareengineAdmin             |   1 +
 40 files changed, 447 insertions(+), 62 deletions(-)

Release 2024-10-02-13-13-55

02 Oct 13:13
Compare
Choose a tag to compare

GCP IAM Update 2024-10-02-13-13-55

 gcp_roles_cai.json        | 2 +-
 roles/spanner.backupAdmin | 5 +++++
 2 files changed, 6 insertions(+), 1 deletion(-)

Release 2024-10-02-01-26-56

02 Oct 01:26
Compare
Choose a tag to compare

GCP IAM Update 2024-10-02-01-26-56

 gcp_roles_cai.json                                    |  9 ++++++++-
 roles/networksecurity.mirroringDeploymentAdmin (new)  | 11 +++++++++++
 roles/networksecurity.mirroringDeploymentUser (new)   |  7 +++++++
 roles/networksecurity.mirroringDeploymentViewer (new) | 11 +++++++++++
 roles/networksecurity.mirroringEndpointAdmin (new)    | 11 +++++++++++
 roles/networksecurity.mirroringEndpointUser (new)     |  7 +++++++
 roles/networksecurity.mirroringEndpointViewer (new)   | 11 +++++++++++
 roles/run.builder (new)                               | 15 +++++++++++++++
 roles/spanner.backupAdmin                             |  5 -----
 9 files changed, 81 insertions(+), 6 deletions(-)

Release 2024-10-01-13-16-00

01 Oct 13:16
Compare
Choose a tag to compare

GCP IAM Update 2024-10-01-13-16-00

 gcp_roles_cai.json         | 4 ++--
 roles/spanner.backupAdmin  | 5 +++++
 roles/spanner.backupWriter | 3 +++
 3 files changed, 10 insertions(+), 2 deletions(-)

Release 2024-09-28-01-28-20

28 Sep 01:28
Compare
Choose a tag to compare

GCP IAM Update 2024-09-28-01-28-20

 gcp_roles_cai.json                                 | 184 +++++++++++----------
 roles/apigee.admin                                 |   5 +
 roles/apigee.readOnlyAdmin                         |   2 +
 roles/apigee.securityAdmin                         |   5 +
 roles/apigee.securityViewer                        |   2 +
 roles/artifactregistry.admin                       |   5 +
 roles/artifactregistry.createOnPushRepoAdmin       |   5 +
 roles/artifactregistry.createOnPushWriter          |   2 +
 roles/artifactregistry.reader                      |   2 +
 roles/artifactregistry.repoAdmin                   |   5 +
 roles/artifactregistry.writer                      |   2 +
 roles/assuredoss.admin                             |   2 +
 roles/assuredoss.projectAdmin                      |   2 +
 roles/assuredoss.reader                            |   2 +
 roles/assuredoss.user                              |   2 +
 roles/batch.serviceAgent                           |   8 +
 roles/cloudbuild.builds.builder                    |   2 +
 roles/cloudbuild.serviceAgent                      |   2 +
 roles/cloudfunctions.serviceAgent                  |   5 +
 roles/cloudtpu.serviceAgent                        |  19 ++-
 roles/composer.serviceAgent                        |  27 ++-
 roles/composer.worker                              |   5 +
 roles/compute.admin                                |  24 ++-
 roles/compute.instanceAdmin                        |   4 +
 roles/compute.instanceAdmin.v1                     |   8 +
 roles/compute.instanceGroupManagerServiceAgent     |   4 +
 roles/compute.loadBalancerAdmin                    |   8 +
 roles/compute.networkAdmin                         |  19 ++-
 roles/compute.networkUser                          |   6 +
 roles/compute.networkViewer                        |   8 +
 roles/compute.publicIpAdmin                        |  15 +-
 roles/compute.viewer                               |  10 ++
 roles/compute.xpnAdmin                             |   1 -
 roles/connectors.admin                             |   1 +
 roles/connectors.viewer                            |   1 +
 roles/consumerprocurement.licensePoolEditor (new)  |  14 ++
 roles/consumerprocurement.licensePoolViewer (new)  |  11 ++
 roles/consumerprocurement.orderAdmin               |   5 +
 roles/consumerprocurement.orderViewer              |   2 +
 roles/consumerprocurement.procurementAdmin         |   5 +
 roles/consumerprocurement.procurementViewer        |   2 +
 roles/contactcenterinsights.editor                 |   1 +
 roles/container.serviceAgent                       |  19 ++-
 roles/containeranalysis.ServiceAgent               |   2 +
 roles/containerscanning.ServiceAgent               |   2 +
 roles/dataflow.serviceAgent                        |  27 ++-
 roles/datafusion.serviceAgent                      |  18 ++
 roles/datapipelines.serviceAgent                   |   8 +
 roles/dataplex.admin                               |   1 +
 roles/dataplex.catalogAdmin                        |   1 +
 roles/dataplex.entryGroupExporter (new)            |  13 ++
 roles/dataplex.entryGroupOwner                     |   1 +
 roles/dataplex.serviceAgent                        |   8 +
 roles/dataprep.serviceAgent                        |  10 ++
 roles/dataproc.admin                               |   2 +
 roles/dataproc.editor                              |   2 +
 roles/dataproc.serviceAgent                        |  14 ++
 roles/dataproc.viewer                              |   2 +
 roles/dataproc.worker                              |   2 +
 roles/dialogflow.serviceAgent                      |   1 +
 roles/discoveryengine.user (new)                   |  13 ++
 roles/dlp.orgdriver                                |  20 +++
 roles/dlp.projectdriver                            |  20 +++
 roles/dlp.serviceAgent                             |   8 +
 roles/editor                                       |  78 ++++++++-
 roles/firebase.admin                               |   8 +
 roles/firebase.developAdmin                        |   8 +
 roles/genomics.serviceAgent                        |   8 +
 roles/iam.securityAdmin                            |  17 ++
 roles/iam.securityReviewer                         |  17 ++
 roles/lifesciences.serviceAgent                    |   8 +
 roles/ml.serviceAgent                              |  10 ++
 roles/netapp.admin                                 |   2 +
 roles/notebooks.admin                              |  10 ++
 roles/notebooks.legacyAdmin                        |  24 ++-
 roles/notebooks.legacyViewer                       |  10 ++
 roles/notebooks.runner                             |  10 ++
 roles/notebooks.serviceAgent                       |  10 ++
 roles/notebooks.viewer                             |  10 ++
 roles/oracledatabase.admin (new)                   |  45 +++++
 roles/oracledatabase.autonomousDatabaseAdmin (new) |  30 ++++
 .../oracledatabase.autonomousDatabaseViewer (new)  |  23 +++
 ...edatabase.cloudExadataInfrastructureAdmin (new) |  26 +++
 ...database.cloudExadataInfrastructureViewer (new) |  21 +++
 roles/oracledatabase.cloudVmClusterAdmin (new)     |  25 +++
 roles/oracledatabase.cloudVmClusterViewer (new)    |  19 +++
 roles/oracledatabase.viewer (new)                  |  31 ++++
 roles/owner                                        |  89 +++++++++-
 roles/recommender.viewer                           |   4 +
 roles/resourcemanager.tagUser                      |  20 +++
 roles/resourcemanager.tagViewer                    |  10 ++
 roles/run.serviceAgent                             |   2 +
 roles/securitycenter.admin                         |   2 +
 roles/securitycenter.adminEditor                   |   2 +
 roles/securitycenter.adminViewer                   |   2 +
 roles/serverless.serviceAgent                      |   2 +
 roles/storage.admin                                |   8 +
 roles/viewer                                       |  45 +++++
 roles/visualinspection.serviceAgent                |  13 ++
 99 files changed, 1178 insertions(+), 109 deletions(-)