What is Cloud IAM?

preview_player
Показать описание
What is Identity and Access Management (IAM), and how does it protect your Google Cloud project? In this episode of Serverless Expeditions Extended, Martin teams up with Emanuel to discuss IAM tools. Watch along and learn about the different access roles, inherited permissions, service accounts, and more to secure your Google Cloud projects.

Chapters:
0:00 - Intro
0:27 - What is Identity and Access Management?
1:30 - What is the permissions panel?
2:07 - What are inherited permissions?
2:56 - Basic project roles explained
3:44 - How to add principals
4:18 - How to organize roles & principals for cloud projects
6:00 - What can Cloud Run services do?
7:33 - How to configure minimum permissions
9:10 - Wrap up

#ServerlessExpeditions​ #ServerlessExpeditionsExtended
Рекомендации по теме
Комментарии
Автор

🙋 What other serverless topics would you like Martin to discuss? Let us know in the comments below!

googlecloudtech
Автор

This is such a fantastic video for explaining what you need to know about IAM without being super long or super vague. I think it goes into a great depth of how it works and explaining real scenarios that make sense for all types of learning styles.

LeonBlade
Автор

Nicely explained Emanuel Burgess, such calm voice that everything sounds easy to do :) !

panky
Автор

Awesome episode. But I did not get how to structure these folders at 4:43 . I mean, I get it concept-wise. But where do I navigate in the console to do that?
Another question for the Cloudstore Read/Write role: Is that not still to powerful? Like can we restrict access to only RW for a certain table? And can I also specify from the Cloudstore side which SA has access to my tables (so initiating the permission from the resource itself instead of initiated it by SA)?

eklok
Автор

What is the best way to handle permissions across projects if say my cloud run service needs access to a database in another project

LindaLawton
Автор

This is so amazing, Hats off to you both

themodernglory
Автор

What's the best way to use multiple cloud run services with a gateway (which only has public access)? Or should I use other services (k8s, ...) for that?

mars
Автор

The problem with google tutorials is they are too technical. If youre not an industry expert you never understand what they are saying

tlotlooepeng