Access control with IAM

Cloud Workstations uses Identity and Access Management (IAM) to manage access to workstations and workstation configurations. To grant access, assign one or more Identity and Access Management roles to a principal (user, group, or service account). The policy defines which roles are assigned to which principals.

Enable required Identity and Access Management roles

If the Identity and Access Management permissions you need haven't yet been set up, follow these instructions to set up one or more of the following roles:

Cloud Workstations User: for developers using a workstation

To get the permissions that you need to access a workstation, ask your administrator to grant you the following IAM roles:

For more information about granting roles, see Manage access to projects, folders, and organizations.

You might also be able to get the required permissions through custom roles or other predefined roles.

Cloud Workstations Creator: for developers creating and connecting to workstations

To get the permissions that you need to view workstation configurations, create workstations, and access workstations, ask your administrator to grant you the following IAM roles: