Assigned
Status Update
Comments
ba...@google.com <ba...@google.com>
on...@google.com <on...@google.com> #2
Hello,
Thank you for reaching out. I'm going to create an internal feature request. Please keep in mind that this feature request has to be analyzed and considered by the product team and I can't provide you ETA for it to be delivered. However, you can keep track of the status by following this thread.
Description
Please provide as much information as possible. At least, this should include a description of your issue and steps to reproduce the problem. If possible please provide a summary of what steps or workarounds you have already tried, and any docs or articles you found (un)helpful.
Problem you have encountered:
Ideally, we would be able to hand out an IAM role (custom), but restrict the resource type to a specific VPC or Cloud Router so the Service Account (or user) would only have permissions on that specific resource.
We intend to give others access to update a specific router tied to a Shared VPC in a network project on which we do not want them to have full admin on all routers/vpcs in the project, but should have access to update the routes to a specific router.
What you expected to happen:
I'd like it to work like the examples here:
Something like resource.type =
Other information (workarounds you have tried, documentation consulted, etc):
It is not listed as an available resource type here:
We would like to have routers and/or VPCs added to the list of resources you can target with conditional IAM