Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Welcome To Ask or Share your Answers For Others

Categories

0 votes
271 views
in Technique[技术] by (71.8m points)

google cloud platform - Manually created ServiceAccount in GCP belong to Project? Resources?

We have a service account which is not auto created. we created it. Now how do we check the scope of this serviceaccount?

question from:https://stackoverflow.com/questions/65902712/manually-created-serviceaccount-in-gcp-belong-to-project-resources

与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome To Ask or Share your Answers For Others

1 Answer

0 votes
by (71.8m points)

The service account is an account, like a user account. The difference is the service account belong to a project (you have the project ID in the @....). The user account is a Google account, managed by Google or by your administration.

Then, except where the account is attached, there is no other difference: you can grant roles and permissions on it. As a user account. When you have created it, if you grant no role, the service account has no permission, even on its host project.


与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Click Here to Ask a Question

...