From the course: Google Distributed Cloud (GDC) Platform Introduction by Google

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

IAM overview

IAM overview

- [Instructor] Let's start this lesson with an example that uses Cymbal Federal and its GDC deployment to give context to various scenarios where you need to control access to resources in GDC. Cymbal Federal set up a resource hierarchy in GDC that lets them use IAM for role-based access control to specific organization project level resources. Unlike in Google Cloud resource hierarchies, GDC does not implement the concept of folders for aggregation of projects to apply RBAC. All resources in GDC are owned by the organization, not by a particular team. In their resource hierarchy design, Cymbal Federal has adopted best practices. These practices will be highlighted later in this module. Cymbal Federal has one organization in its GDC instance. You can attach organization policies here, for example, to govern allowable roles and resource usage. Cymbal Federal has separate GDC clusters with one for each environment, production or…

Contents