roles/compute.instanceGroupManagerServiceAgent
Title: Instance Group Manager Service Agent
Description: Role containing all permissions required by Managed Instance Groups to create and managed instances.
Stage: GA
108 Assigned Permissions:
- compute.addresses.create
- compute.addresses.createInternal
- compute.addresses.createTagBinding
- compute.addresses.delete
- compute.addresses.deleteInternal
- compute.addresses.deleteTagBinding
- compute.addresses.get
- compute.addresses.list
- compute.addresses.listEffectiveTags
- compute.addresses.listTagBindings
- compute.addresses.setLabels
- compute.addresses.use
- compute.addresses.useInternal
- compute.disks.addResourcePolicies
- compute.disks.create
- compute.disks.createSnapshot
- compute.disks.createTagBinding
- compute.disks.delete
- compute.disks.deleteTagBinding
- compute.disks.get
- compute.disks.getIamPolicy
- compute.disks.list
- compute.disks.listEffectiveTags
- compute.disks.listTagBindings
- compute.disks.removeResourcePolicies
- compute.disks.resize
- compute.disks.setLabels
- compute.disks.startAsyncReplication
- compute.disks.stopAsyncReplication
- compute.disks.stopGroupAsyncReplication
- compute.disks.update
- compute.disks.use
- compute.disks.useReadOnly
- compute.globalAddresses.get
- compute.globalOperations.get
- compute.healthChecks.get
- compute.httpHealthChecks.get
- compute.httpsHealthChecks.get
- compute.images.useReadOnly
- compute.instanceGroups.update
- compute.instanceTemplates.useReadOnly
- compute.instances.addAccessConfig
- compute.instances.addResourcePolicies
- compute.instances.attachDisk
- compute.instances.create
- compute.instances.createTagBinding
- compute.instances.delete
- compute.instances.deleteAccessConfig
- compute.instances.deleteTagBinding
- compute.instances.detachDisk
- compute.instances.get
- compute.instances.getEffectiveFirewalls
- compute.instances.getGuestAttributes
- compute.instances.getIamPolicy
- compute.instances.getScreenshot
- compute.instances.getSerialPortOutput
- compute.instances.getShieldedInstanceIdentity
- compute.instances.getShieldedVmIdentity
- compute.instances.list
- compute.instances.listEffectiveTags
- compute.instances.listReferrers
- compute.instances.listTagBindings
- compute.instances.osAdminLogin
- compute.instances.osLogin
- compute.instances.pscInterfaceCreate
- compute.instances.removeResourcePolicies
- compute.instances.reset
- compute.instances.resume
- compute.instances.sendDiagnosticInterrupt
- compute.instances.setDeletionProtection
- compute.instances.setDiskAutoDelete
- compute.instances.setLabels
- compute.instances.setMachineResources
- compute.instances.setMachineType
- compute.instances.setMetadata
- compute.instances.setMinCpuPlatform
- compute.instances.setName
- compute.instances.setScheduling
- compute.instances.setSecurityPolicy
- compute.instances.setServiceAccount
- compute.instances.setShieldedInstanceIntegrityPolicy
- compute.instances.setShieldedVmIntegrityPolicy
- compute.instances.setTags
- compute.instances.simulateMaintenanceEvent
- compute.instances.start
- compute.instances.startWithEncryptionKey
- compute.instances.stop
- compute.instances.suspend
- compute.instances.update
- compute.instances.updateAccessConfig
- compute.instances.updateDisplayDevice
- compute.instances.updateNetworkInterface
- compute.instances.updateSecurity
- compute.instances.updateShieldedInstanceConfig
- compute.instances.updateShieldedVmConfig
- compute.instances.use
- compute.instances.useReadOnly
- compute.networks.use
- compute.networks.useExternalIp
- compute.regionOperations.get
- compute.resourcePolicies.use
- compute.snapshots.useReadOnly
- compute.subnetworks.use
- compute.subnetworks.useExternalIp
- compute.targetPools.addInstance
- compute.targetPools.removeInstance
- compute.zoneOperations.get
- iam.serviceAccounts.actAs