Identity and Access Management 說明文件
Identity and Access Management (IAM) 可讓您建立及管理 Google Cloud 資源的權限。IAM 將 Google Cloud 服務的存取權控管整合成單一系統,呈現一致的作業組合。瞭解詳情
使用價值 $300 美元的免費抵免額,開始進行概念驗證
-
取得 Gemini 2.0 Flash Thinking 的存取權
-
每月免費使用 AI API 和 BigQuery 等熱門產品
-
不會自動收費,也不會要求您一定要購買特定方案
繼續探索超過 20 項一律免費的產品
使用超過 20 項實用的免費產品,包括 AI API、VM 和 data warehouse 等。
訓練
訓練與教學課程
Google Cloud 基礎知識:核心基礎架構
透過這些講座、示範和實作實驗室,您可以瞭解 Google Cloud 產品與服務,進而瞭解 Google Cloud 的價值,以及如何將雲端式解決方案納入業務策略中。
訓練
訓練與教學課程
設定 Google Cloud 架構:設計和流程
本課程內容包含講座、設計活動和實作研究室,說明如何在 Google Cloud 中運用經過實證的設計模式,打造極度可靠、效率卓越的解決方案,並以可用性高且符合成本效益的方式執行部署作業。
訓練
訓練與教學課程
Google Cloud 的安全性
在本訓練課程中,您將瞭解各種 Google Cloud 安全性控管機制和技巧。您將瞭解 Google Cloud 的元件,並在平台上部署安全解決方案。您也會瞭解如何防範 Google Cloud 式基礎架構中的諸多環節所可能遭受到的攻擊,例如分散式阻斷服務攻擊、網路釣魚攻擊,以及與內容分類和使用相關的威脅。
用途
用途
Google Cloud 中的身分和驗證
這本專書深入探討 IAM,包括企業、消費者和服務身分、最佳做法,以及如何評估、規劃及部署。
政策
存取權
資源階層結構
用途
用途
協助保護資料湖泊到資料倉儲的管道
說明如何運用安全控管機制,管理資料湖泊到資料倉儲的管道資料存取權,並防範資料竊取問題。
KMS
機構政策服務
用途
用途
遷移至 Google Cloud:入門指南
協助您規劃、設計及執行遷移至 Google Cloud 的程序。
規劃
遷移
程式碼範例
程式碼範例
Java IAM 用戶端程式庫範例
瞭解如何使用 Java IAM 用戶端程式庫執行常見的 IAM 動作。
程式碼範例
程式碼範例
Python IAM 用戶端程式庫範例
瞭解如何使用 Python IAM 用戶端程式庫執行常見的 IAM 動作。
程式碼範例
程式碼範例
Go IAM 用戶端程式庫範例
瞭解如何使用 Go IAM 用戶端程式庫執行常見的 IAM 動作。
程式碼範例
程式碼範例
.NET IAM 用戶端程式庫範例
瞭解如何使用 .NET IAM 用戶端程式庫執行常見的 IAM 動作。
除非另有註明,否則本頁面中的內容是採用創用 CC 姓名標示 4.0 授權,程式碼範例則為阿帕契 2.0 授權。詳情請參閱《Google Developers 網站政策》。Java 是 Oracle 和/或其關聯企業的註冊商標。
上次更新時間:2025-09-01 (世界標準時間)。
[[["容易理解","easyToUnderstand","thumb-up"],["確實解決了我的問題","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["難以理解","hardToUnderstand","thumb-down"],["資訊或程式碼範例有誤","incorrectInformationOrSampleCode","thumb-down"],["缺少我需要的資訊/範例","missingTheInformationSamplesINeed","thumb-down"],["翻譯問題","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["上次更新時間:2025-09-01 (世界標準時間)。"],[[["\u003cp\u003eIdentity and Access Management (IAM) provides a unified system for creating and managing permissions across Google Cloud resources.\u003c/p\u003e\n"],["\u003cp\u003eIAM documentation includes guides for managing access, creating service accounts, and configuring temporary access to resources.\u003c/p\u003e\n"],["\u003cp\u003eReference materials include permissions, client libraries, the REST API, understanding different roles, and resource-specific attributes for conditions.\u003c/p\u003e\n"],["\u003cp\u003eResources are available such as release notes, permissions change logs, support information, quotas and limits, as well as billing questions.\u003c/p\u003e\n"],["\u003cp\u003eTraining resources are available to provide an overview of Google Cloud, architecture and design, and security for IAM.\u003c/p\u003e\n"]]],[],null,["# Identity and Access Management documentation\n============================================\n\n[Read product documentation](/iam/docs/overview)\nIdentity and Access Management (IAM) lets you create and manage permissions for\nGoogle Cloud resources. IAM unifies access control for\nGoogle Cloud services into a single system and presents a consistent set of operations.\n[Learn more](/iam/docs/overview)\n[Get started for free](https://console.cloud.google.com/freetrial) \n\n#### Start your proof of concept with $300 in free credit\n\n- Get access to Gemini 2.0 Flash Thinking\n- Free monthly usage of popular products, including AI APIs and BigQuery\n- No automatic charges, no commitment \n[View free product offers](/free/docs/free-cloud-features#free-tier) \n\n#### Keep exploring with 20+ always-free products\n\n\nAccess 20+ free products for common use cases, including AI APIs, VMs, data warehouses,\nand more.\n\nDocumentation resources\n-----------------------\n\nFind quickstarts and guides, review key references, and get help with common issues. \nformat_list_numbered\n\n### Guides\n\n-\n\n\n Quickstarts:\n [Quickstart: Grant an IAM role by using the Google Cloud console](/iam/docs/grant-role-console)\n or\n [Quickstart: Write an IAM policy by using client libraries](/iam/docs/write-policy-client-libraries)\n\n\n-\n\n [Manage access to projects, folders, and organizations](/iam/docs/granting-changing-revoking-access)\n\n-\n\n [Manage access to other resources](/iam/docs/manage-access-other-resources)\n\n-\n\n [Roles overview](/iam/docs/roles-overview)\n\n-\n\n [Service account overview](/iam/docs/service-account-overview)\n\n-\n\n [Create service accounts](/iam/docs/service-accounts-create)\n\n-\n\n [Attach service accounts to resources](/iam/docs/attach-service-accounts)\n\n-\n\n [Creating and managing custom roles](/iam/docs/creating-custom-roles)\n\n-\n\n [Configure temporary access](/iam/docs/configuring-temporary-access)\n\nfind_in_page\n\n### Reference\n\n-\n\n [Permissions reference](/iam/docs/permissions-reference)\n\n-\n\n [Client libraries](/iam/docs/client-libraries)\n\n-\n\n [IAM REST API](/iam/docs/reference/rest)\n\n-\n\n [Basic and predefined roles](/iam/docs/understanding-roles)\n\n-\n\n [Full resource names](/iam/docs/full-resource-names)\n\n-\n\n [Attribute reference for IAM Conditions](/iam/docs/conditions-attribute-reference)\n\n-\n\n [Resource attributes for IAM Conditions](/iam/docs/conditions-resource-attributes)\n\n-\n\n [Support levels for permissions in custom roles](/iam/docs/custom-roles-permissions-support)\n\n-\n\n [Resource types that accept IAM policies](/iam/docs/resource-types-with-policies)\n\n-\n\n [Service agents](/iam/docs/service-agents)\n\ninfo\n\n### Resources\n\n-\n\n [Release notes](/iam/docs/release-notes)\n\n-\n\n [Permissions change log](/iam/docs/permissions-change-log)\n\n-\n\n [Getting support](/iam/docs/getting-support)\n\n-\n\n [Quotas and limits](/iam/quotas)\n\n-\n\n [Billing questions](/iam/docs/billing-questions)\n\n-\n\n [Troubleshooting \"withcond\" in policies and role bindings](/iam/docs/troubleshooting-withcond)\n\n-\n\n [Pricing](/iam/pricing)\n\nRelated resources\n-----------------\n\nTraining and tutorials \nUse cases \nCode samples \nExplore self-paced training, use cases, reference architectures, and code samples with examples of how to use and connect Google Cloud services. Training \nTraining and tutorials\n\n### Google Cloud Fundamentals: Core Infrastructure\n\n\nThese lectures, demos, and hands-on labs give you an overview of Google Cloud products and services so that you can learn the value of Google Cloud and how to incorporate cloud-based solutions into your business strategies.\n\n\n[Learn more](/training/course/core-infrastructure) \nTraining \nTraining and tutorials\n\n### Architecting with Google Cloud: Design and Process\n\n\nThis course features a combination of lectures, design activities, and hands-on labs to show you how to use proven design patterns on Google Cloud to build highly reliable and efficient solutions and operate deployments that are highly available and cost-effective.\n\n\n[Learn more](/training/course/architecting-design-process) \nTraining \nTraining and tutorials\n\n### Security in Google Cloud\n\n\nIn this training course, you will learn about a variety of Google Cloud security controls and techniques. You'll explore the components of Google Cloud and deploy a secure solution on the platform. You'll also learn how to mitigate attacks at several points in a Google Cloud-based infrastructure, including distributed denial-of-service attacks, phishing attacks, and threats involving content classification and use.\n\n\n[Learn more](/training/course/security-in-google-cloud-platform) \nUse case \nUse cases\n\n### Identity and authentication in Google Cloud\n\n\nBook-length deep dive into IAM, including corporate, consumer, and service identities; best practices, and how to assess, plan, and deploy.\n\nPolicies Access Resource hierarchy\n\n\u003cbr /\u003e\n\n[Learn more](/architecture/identity) \nUse case \nUse cases\n\n### Help secure the pipeline from your data lake to your data warehouse\n\n\nDiscusses the security controls designed to help manage data access to and prevent data exfiltration of the pipeline from your data lake to your data warehouse.\n\nKMS Organization Policy Service\n\n\u003cbr /\u003e\n\n[Learn more](/solutions/help-secure-the-pipeline-from-your-data-lake-to-your-data-warehouse) \nUse case \nUse cases\n\n### Migration to Google Cloud: Getting started\n\n\nHelps you with planning, designing, and implementing your migration process to Google Cloud.\n\nPlanning Migration\n\n\u003cbr /\u003e\n\n[Learn more](/solutions/migration-to-gcp-getting-started) \nCode sample \nCode Samples\n\n### Java IAM client library samples\n\n\nSee how to perform common IAM actions using the Java IAM client library.\n\n\n[Open GitHub\narrow_forward](https://github.com/GoogleCloudPlatform/java-docs-samples/tree/master/iam/api-client) \nCode sample \nCode Samples\n\n### Python IAM client library samples\n\n\nSee how to perform common IAM actions using the Python IAM client library.\n\n\n[Open GitHub\narrow_forward](https://github.com/GoogleCloudPlatform/python-docs-samples/tree/master/iam/api-client) \nCode sample \nCode Samples\n\n### Go IAM client library samples\n\n\nSee how to perform common IAM actions using the Go IAM client library.\n\n\n[Open GitHub\narrow_forward](https://github.com/GoogleCloudPlatform/golang-samples/tree/master/iam) \nCode sample \nCode Samples\n\n### .NET IAM client library samples\n\n\nSee how to perform common IAM actions using the .NET IAM client library.\n\n\n[Open GitHub\narrow_forward](https://github.com/GoogleCloudPlatform/dotnet-docs-samples/tree/master/iam/api)\n\nRelated videos\n--------------\n\n### Try Google Cloud for yourself\n\nCreate an account to evaluate how our products perform in real-world scenarios. \nNew customers also get $300 in free credits to run, test, and deploy workloads. \n[Get started for free](https://console.cloud.google.com/freetrial)"]]