Projekt einrichten

In diesem Dokument wird beschrieben, wie Sie ein Cloud de Confiance by S3NS -Projekt und eine Compute Engine-VM einrichten.

Cloud de Confiance by S3NS -Projekt einrichten

  1. In the Cloud de Confiance console, on the project selector page, select or create a Cloud de Confiance project.

    Roles required to select or create a project

    • Select a project: Selecting a project doesn't require a specific IAM role—you can select any project that you've been granted a role on.
    • Create a project: To create a project, you need the Project Creator role (roles/resourcemanager.projectCreator), which contains the resourcemanager.projects.create permission. Learn how to grant roles.

    Go to project selector

  2. Verify that billing is enabled for your Cloud de Confiance project.

  3. Enable the Google Cloud Dataproc API, if it is not already enabled.

    Roles required to enable APIs

    To enable APIs, you need the serviceusage.services.enable permission. If you created the project, then you likely already have this permission through the Owner role (roles/owner). Otherwise, you can get this permission through the Service Usage Admin role (roles/serviceusage.serviceUsageAdmin). Learn how to grant roles.

    Enable the API

  4. Install the Google Cloud CLI.

  5. Configure the gcloud CLI to use your federated identity.

    For more information, see Sign in to the gcloud CLI with your federated identity.

  6. To initialize the gcloud CLI, run the following command:

    gcloud init

Benötigen Sie Anmeldedaten? Sie benötigen Anmeldedaten nur, wenn Sie die Managed Service for Apache Spark-APIs direkt aus Ihrer Anwendung oder aus einem Browser aufrufen möchten. Wenn Sie die Cloud de Confiance -Konsole oder die Google Cloud CLI verwenden möchten, um Cluster zu erstellen und zu verwalten und Jobs zu senden, müssen Sie sich nur mit dem Befehl gcloud init im SDK anmelden.

Optional: VM einrichten

Wenn Sie die gcloud CLI auf einer Compute Engine-VM-Instanz ausführen möchten, muss die VM für den Zugriff auf Cloud de Confiance by S3NS Dienste eingerichtet sein.

Führen Sie gcloud compute instances describe YOUR_VM_INSTANCE_NAME über die Befehlszeile aus, um zu testen, ob Ihre VM richtig eingerichtet ist. Es muss ein Dienstkonto mit dem Bereich https://www.googleapis.com/auth/cloud-platform aufgeführt sein. Weitere Informationen zum Einrichten einer VM finden Sie unter VM erstellen, die ein vom Nutzer verwaltetes Dienstkonto verwendet.