Config Management roles and permissions
Stay organized with collections
Save and categorize content based on your preferences.
This page lists the IAM roles and permissions for Config Management. To
search through all roles and permissions, see the role and
permission index.
Config Management roles
Config Management offers the following service agent roles.
Service agent roles should only be granted to service agents.
| Role |
Permissions |
Anthos Config Management Service Agent
(roles/anthosconfigmanagement.serviceAgent)
Gives the Anthos Config Management service agent access to Google Cloud resources.
|
container.clusters.get
gkehub.features.get
gkehub.gateway.delete
gkehub.gateway.generateCredentials
gkehub.gateway.get
gkehub.gateway.patch
gkehub.gateway.post
gkehub.gateway.put
gkehub.locations.*
gkehub.locations.get
gkehub.locations.list
gkehub.memberships.get
gkehub.memberships.list
|
Config Management permissions
There are no IAM permissions for this service.
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2026-07-29 UTC.
[null,null,["Last updated 2026-07-29 UTC."],[],[]]