Your suggested change has been received. Thank you.

close

Suggest A Change

https://thales.na.market.dpondemand.io/docs/dpod/services/kmo….

back

Google Cloud APIs

Google Cloud Permissions

search

Please Note:

Google Cloud Permissions

This section provides the complete list of permissions required by a CipherTrust Manager user to perform operations on Google Cloud Platform (GCP) resources using CCKM.

Create Operations (post)

OperationRequired PermissionsACLs
Create GCP Native KeyPermissionCCKMCreateKey
PermissionCCKMAddKMS
KEYCREATE
GCP add versionsPermissionCCKMAddKeyVersion
PermissionCCKMAddKeyRings
KEYCREATE
GCP refresh key versionPermissionCCKMReadKey
PermissionCCKMAddKeyVersion
PermissionCCKMAddKeyRings
KEYUPDATE
Get GCP Refresh KeyPermissionCCKMReadKey
PermissionCCKMAddKeyRings
PermissionCCKMAddKeyVersion
KEYUPDATE
Update All Versions JobsPermissionCCKMAddKeyRings
PermissionCCKMReadVersions
PermissionCCKMUpdateAllVersionsStatus
PermissionCCKMReadKey
PermissionCCKMUpdateKey
PermissionCCKMRestoreKey
PermissionCCKMDestroyKey
KEYUPDATE
KEYDESTROY
KEYCANCELDESTROY
Enable Key VersionPermissionCCKMReadKey
PermissionCCKMUpdateKey
PermissionCCKMAddKeyRings
KEYUPDATE
Disable Key versionPermissionCCKMReadKey
PermissionCCKMAddKeyRings
PermissionCCKMUpdateKey
KEYUPDATE
Schedule destruction of Key VersionPermissionCCKMAddKeyRings
PermissionCCKMReadKey
PermissionCCKMDestroyKey
KEYDESTROY
Cancel scheduled destruction of a key versionPermissionCCKMAddKeyRings
PermissionCCKMReadKey
PermissionCCKMRestoreKey
KEYCANCELDESTROY
Enable Auto rotaitonPermissionCCKMAddKeyRings
PermissionCCKMUpdateKey
KEYUPDATE
Disable the auto-rotationPermissionCCKMUpdateKey
PermissionCCKMAddKeyRings
KEYUPDATE
Download Public KeyPermissionCCKMAddKeyRings
PermissionCCKMGetKeyVersion
Upload GCP KeyPermissionCCKMCreateKey
PermissionUploadKey
KEYUPLOAD
Synchronization JobsPermissionCCKMReadGCPKeyRings
PermissionCCKMSyncStatus
PermissionCCKMSync
PermissionCCKMReadKey
KEYSYNC
Cancle Synchronization JobsPermissionCCKMAddOCIVAULTSKEYSYNC
Generate GCP ReportPermissionCCKMReadGCPKeyRings
PermissionCCKMReport
PermissionCCKMReportStatus

REPORTCREATE
VIEW

Read Operations (get)

OperationRequired PermissionsACLs
List GCP KeysPermissionCCKMReadKeyVIEW
Get GCP KeyPermissionCCKMAddKeyRings
PermissionCCKMReadKey
VIEW
List of GCP Key VersionsPermissionCCKMAddKeyRings
PermissionCCKMReadVersions
VIEW
Get GCP Key Versions detailsPermissionCCKMAddKeyRingsVIEW
Get GCP Update all Versions Jobs
Get Synchronization JobsPermissionCCKMSyncStatusVIEW
Get Synchronization Jobs in idPermissionCCKMSyncStatusVIEW
List GCP ReportPermissionCCKMReportStatusVIEW
Get GCP ReportPermissionCCKMReportStatusVIEW
Get ContentsPermissionCCKMReportStatusREPORTVIEW
VIEW
Get CSV ContentPermissionCCKMReportStatusREPORTDOWNLOAD
VIEW
Get Syncronized statusPermissionCCKMSyncStatusVIEW

Update Operations (patch)

OperationRequired PermissionsACLs
Upate GCP KeyPermissionCCKMReadKey
PermissionCCKMUpdateKey
PermissionCCKMAddKeyRings
KEYUPDATE

Delete Operations (delete)

OperationRequired PermissionsACLs
Delete GCP ReportPermissionCCKMReportStatus
PermissionCCKMDeleteReports
REPORTDELETE
VIEW