Binary Authorization 서비스 사용 설정

이 페이지에서는 배포자 프로젝트에서 Binary Authorization을 사용 설정하는 방법을 설명합니다.

먼저 프로젝트를 만들거나 선택합니다. 컨테이너를 배포하는Google Cloud 프로젝트에서 Binary Authorization을 사용 설정합니다. 이 프로젝트는 Google Kubernetes Engine (GKE), Cloud Run, Google Distributed Cloud와 같이 지원되는 플랫폼을 실행하는 동일한 프로젝트입니다.

Binary Authorization을 사용 설정하려면 다음 단계를 수행합니다.

  1. In the Google Cloud console, on the project selector page, select or create a Google Cloud project.

    Roles required to select or create a project

    • Select a project: Selecting a project doesn't require a specific IAM role—you can select any project that you've been granted a role on.
    • Create a project: To create a project, you need the Project Creator role (roles/resourcemanager.projectCreator), which contains the resourcemanager.projects.create permission. Learn how to grant roles.

    Go to project selector

  2. Verify that billing is enabled for your Google Cloud project.

  3. Enable the Binary Authorization API.

    Roles required to enable APIs

    To enable APIs, you need the serviceusage.services.enable permission. If you created the project, then you likely already have this permission through the Owner role (roles/owner). Otherwise, you can get this permission through the Service Usage Admin role (roles/serviceusage.serviceUsageAdmin). Learn how to grant roles.

    Enable the API

  4. Google Cloud CLI를 설치합니다.

  5. gcloud CLI에서 제휴 ID를 사용하도록 구성합니다.

    자세한 내용은 제휴 ID로 gcloud CLI에 로그인을 참고하세요.

  6. gcloud CLI를 초기화하려면, 다음 명령어를 실행합니다.

    gcloud init

Binary Authorization이 사용 설정되어 있습니다. 이제 컨테이너 관리 플랫폼으로 설정할 수 있습니다.

다음 단계