gcp-iam-catalog
Roles
Permissions
🔐
roles/container.cloudKmsKeyUser
📋 Copy
Title
Kubernetes Engine KMS Crypto Key User
Stage
GA
Role Type
Predefined
Permissions
8
Description
Allow the Kubernetes Engine service agent in the cluster project to call KMS with user provided crypto keys to sign payloads.
Permissions
Compare
🔍
cloudkms.cryptoKeyVersions.get
cloudkms.cryptoKeyVersions.useToSign
cloudkms.cryptoKeyVersions.useToVerify
cloudkms.cryptoKeyVersions.viewPublicKey
cloudkms.cryptoKeys.get
cloudkms.locations.get
cloudkms.locations.list
resourcemanager.projects.get
Compare with another role:
🔍
roles/container.cloudKmsKeyUser
0
Shared
0
Other role
0