이 페이지에서는 특정 보안 웹 프록시 작업을 수행하는 데 필요한 Identity and Access Management (IAM) 권한을 설명합니다. 또한 다양한 보안 웹 프록시 리소스를 관리하기 위해 커스텀 IAM 역할을 만들고 역할에 필요한 권한을 할당하는 방법을 설명합니다.
권한
다음 표에는 보안 웹 프록시에서 특정 작업을 수행하는 데 필요한 권한이 나열되어 있습니다. 자세한 내용은 IAM 권한 참조를 참고하세요.
| 작업 | 리소스 | 권한 (메서드) |
|---|---|---|
| 정책 만들기 | 게이트웨이 보안 정책 | networksecurity.gatewaySecurityPolicies.create |
| 정책 삭제 | 게이트웨이 보안 정책 | networksecurity.gatewaySecurityPolicies.delete |
| 정책 가져오기 | 게이트웨이 보안 정책 | networksecurity.gatewaySecurityPolicies.get |
| 정책 나열 | 게이트웨이 보안 정책 | networksecurity.gatewaySecurityPolicies.list |
| 정책 업데이트 | 게이트웨이 보안 정책 | networksecurity.gatewaySecurityPolicies.update |
| 규칙 만들기 | 게이트웨이 보안 정책 규칙 | networksecurity.gatewaySecurityPolicyRules.create |
| 규칙 삭제 | 게이트웨이 보안 정책 규칙 | networksecurity.gatewaySecurityPolicyRules.delete |
| 규칙 가져오기 | 게이트웨이 보안 정책 규칙 | networksecurity.gatewaySecurityPolicyRules.get |
| 규칙 나열 | 게이트웨이 보안 정책 규칙 | networksecurity.gatewaySecurityPolicyRules.list |
| 규칙 업데이트 | 게이트웨이 보안 정책 규칙 | networksecurity.gatewaySecurityPolicyRules.update |
| 작업 가져오기 | 작업 | networksecurity.operations.get |
| TLS 검사 정책 만들기 | TLS 검사 정책 | networksecurity.tlsInspectionPolicies.create |
| TLS 검사 정책 삭제 | TLS 검사 정책 | networksecurity.tlsInspectionPolicies.delete |
| TLS 검사 정책 가져오기 | TLS 검사 정책 | networksecurity.tlsInspectionPolicies.get |
| TLS 검사 정책 나열 | TLS 검사 정책 | networksecurity.tlsInspectionPolicies.list |
| TLS 검사 정책 업데이트 | TLS 검사 정책 | networksecurity.tlsInspectionPolicies.update |
| TLS 검사 정책을 보안 웹 프록시 정책에 연결 | TLS 검사 정책 | networksecurity.tlsInspectionPolicies.use |
| URL 목록 만들기 | URL 목록 | networksecurity.urlLists.create |
| URL 목록 삭제 | URL 목록 | networksecurity.urlLists.delete |
| URL 목록 가져오기 | URL 목록 | networksecurity.urlLists.get |
| 모든 URL 목록 나열 | URL 목록 | networksecurity.urlLists.list |
| URL 목록 업데이트 | URL 목록 | networksecurity.urlLists.update |
| 보안 웹 프록시 규칙에 URL 목록 연결 | URL 목록 | networksecurity.urlLists.use |
| 보안 웹 프록시 인스턴스 프로비저닝 및 관리 | 다양한 Certificate Manager, Compute Engine, Secure Web Proxy, Resource Manager, Cloud Monitoring 리소스 |
|