Kubernetes Metadata API roles and permissions

This page lists the IAM roles and permissions for Kubernetes Metadata API. To search through all roles and permissions, see the role and permission index.

Kubernetes Metadata API roles

Role Permissions

(roles/kubernetesmetadata.admin)

Admin role for kubernetesmetadata

kubernetesmetadata.*

  • kubernetesmetadata.metadata.config
  • kubernetesmetadata.metadata.publish
  • kubernetesmetadata.metadata.snapshot

resourcemanager.projects.get

resourcemanager.projects.list

(roles/kubernetesmetadata.viewer)

Viewer role for kubernetesmetadata

kubernetesmetadata.metadata.config

resourcemanager.projects.get

resourcemanager.projects.list

(roles/kubernetesmetadata.publisher)

Publisher of Kubernetes clusters metadata

kubernetesmetadata.*

  • kubernetesmetadata.metadata.config
  • kubernetesmetadata.metadata.publish
  • kubernetesmetadata.metadata.snapshot

Kubernetes Metadata API permissions

Permission Included in roles

Owner (roles/owner)

Editor (roles/editor)

Viewer (roles/viewer)

Kubernetesmetadata Admin (roles/kubernetesmetadata.admin)

Kubernetesmetadata Viewer (roles/kubernetesmetadata.viewer)

Anthos Multi-cloud Telemetry Writer (roles/gkemulticloud.telemetryWriter)

Support User (roles/iam.supportUser)

Metadata Publisher (roles/kubernetesmetadata.publisher)

Service agent roles

Owner (roles/owner)

Editor (roles/editor)

Kubernetesmetadata Admin (roles/kubernetesmetadata.admin)

Anthos Multi-cloud Telemetry Writer (roles/gkemulticloud.telemetryWriter)

Metadata Publisher (roles/kubernetesmetadata.publisher)

Service agent roles

Owner (roles/owner)

Editor (roles/editor)

Kubernetesmetadata Admin (roles/kubernetesmetadata.admin)

Anthos Multi-cloud Telemetry Writer (roles/gkemulticloud.telemetryWriter)

Metadata Publisher (roles/kubernetesmetadata.publisher)

Service agent roles