- NAME
-
- gcloud alpha dataplex lakes authorize - authorize a service agent to manage resources
- SYNOPSIS
-
-
gcloud alpha dataplex lakes authorize
(--project-resource
=PROJECT_RESOURCE
|--storage-bucket-resource
=STORAGE_BUCKET_RESOURCE
|--bigquery-dataset-resource
=BIGQUERY_DATASET_RESOURCE
--secondary-project
=SECONDARY_PROJECT
) [GCLOUD_WIDE_FLAG …
]
-
- DESCRIPTION
-
(ALPHA)
The service agent for the primary project will be granted an IAM role on a secondary project, a Cloud Storage bucket, or a BigQuery dataset. - EXAMPLES
-
To authorize the service agent in project
test-project
to manage resources in the projecttest-project2
, run:gcloud alpha dataplex lakes authorize --project=test-project --project-resource=test-project2
To authorize the service agent in project
test-project
to manage the Cloud Storage bucketdataplex-storage-bucket
, run:gcloud alpha dataplex lakes authorize --project=test-project --storage-bucket-resource=dataplex-storage-bucket
To authorize the service agent in project
test-project
to manage the BigQuery datasettest-dataset
in projecttest-project2
, run:gcloud alpha dataplex lakes authorize --project=test-project --bigquery-dataset-resource=test-dataset --secondary-project=test-project2
- REQUIRED FLAGS
-
-
The resource on which to grant a role to the service agent.
Exactly one of these must be specified:
--project-resource
=PROJECT_RESOURCE
- The identifier of the project whose resources the service agent will manage.
--storage-bucket-resource
=STORAGE_BUCKET_RESOURCE
- The identifier of the Cloud Storage bucket that the service agent will manage.
-
Fields to identify the BigQuery dataset.
--bigquery-dataset-resource
=BIGQUERY_DATASET_RESOURCE
-
The identifier of the BigQuery dataset that the service agent will manage.
This flag argument must be specified if any of the other arguments in this group are specified.
--secondary-project
=SECONDARY_PROJECT
-
The identifier of the project where the BigQuery dataset is located.
This flag argument must be specified if any of the other arguments in this group are specified.
-
The resource on which to grant a role to the service agent.
- GCLOUD WIDE FLAGS
-
These flags are available to all commands:
--access-token-file
,--account
,--billing-project
,--configuration
,--flags-file
,--flatten
,--format
,--help
,--impersonate-service-account
,--log-http
,--project
,--quiet
,--trace-token
,--user-output-enabled
,--verbosity
.Run
$ gcloud help
for details. - NOTES
-
This command is currently in alpha and might change without notice. If this
command fails with API permission errors despite specifying the correct project,
you might be trying to access an API with an invitation-only early access
allowlist. This variant is also available:
gcloud dataplex lakes authorize
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2024-02-06 UTC.