Skip to main content

iam_policies

Creates, updates, deletes, gets or lists an iam_policies resource.

Overview​

Nameiam_policies
TypeResource
Idgoogle.iam.iam_policies

Fields​

The following fields are returned by SELECT queries:

SELECT not supported for this resource, use SHOW METHODS to view available operations for the resource.

Methods​

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
lint_policyexecLints, or validates, an IAM policy. Currently checks the google.iam.v1.Binding.condition field, which contains a condition expression for a role binding. Successful calls to this method always return an HTTP 200 OK status code, even if the linter detects an issue in the IAM policy.
query_auditable_servicesexecReturns a list of services that allow you to opt into audit logs that are not generated by default. To learn more about audit logs, see the Logging documentation.

Parameters​

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription

Lifecycle Methods​

Lints, or validates, an IAM policy. Currently checks the google.iam.v1.Binding.condition field, which contains a condition expression for a role binding. Successful calls to this method always return an HTTP 200 OK status code, even if the linter detects an issue in the IAM policy.

EXEC google.iam.iam_policies.lint_policy
@@json=
'{
"condition": "{{ condition }}",
"fullResourceName": "{{ fullResourceName }}"
}'
;