Cloud Workstations uses Identity and Access Management (IAM) to manage access to workstations and workstation configurations. To grant access, assign one or more Identity and Access Management roles to a principal (user, group, or service account). The policy defines which roles are assigned to which principals.
Enable required Identity and Access Management roles
If the Identity and Access Management permissions you need haven't yet been set up, follow these instructions to set up one or more of the following roles:
- Cloud Workstations User
- Cloud Workstations Creator
- Cloud Workstations Admin
- Cloud Workstations Network Admin
- Cloud Workstations Limit Exempted Creator
- Cloud Workstations Policy Admin
Cloud Workstations User: for developers using a workstation
To get the permissions that you need to access a workstation, ask your administrator to grant you the following IAM roles:
- Cloud Workstations User (
roles/workstations.user) on the workstation - Cloud Workstations Operation Viewer (
roles/workstations.operationViewer) on the project
For more information about granting roles, see Manage access to projects, folders, and organizations.
You might also be able to get the required permissions through custom roles or other predefined roles.
Cloud Workstations Creator: for developers creating and connecting to workstations
To get the permissions that you need to view workstation configurations, create workstations, and access workstations, ask your administrator to grant you the following IAM roles: