Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Published by Scroll Versions from space DEV and version r078

...

  • IAM stands for Identity and Access Management. An IAM role contains  contains a set of permissions to use cloud-based resources. Users can be assigned default or customized IAM roles, which enable access to the required cloud services to use the product.  Managing the individual permissions without an IAM role is not recommended.
  • For more information, see https://cloud.google.com/iam/docs/overview.  

...

  • For 
    D s product
    productgdp
     and  and 
    D s product
    productgdpst
     editions, these permissions are contained in the roles/Dataprep.User role role, which is available when the product is licensed for a project. See below. 
  • For 
    D s product
    productgdppr
    , an additional set of permissions is required to perform actions on the data and gain access to the data.  For a list of required permissions, see Required Dataprep User Permissions.

Assign roles/Dataprep.User

D s ed
rtrue
editionsgdppr,gdpst,gdple

When you have enabled 

D s product
 in a project, the roles/Dataprep.User IAM  IAM role is available through the the 
D s platform
 console. IAM Roles can be assigned through the Roles page. For more information, see see https://console.cloud.google.com/iam-admin/roles.

Create Custom IAM Role

D s ed
rtrue
editionsgdppr

...

Tip

Tip: The easiest way to manage these additional permissions is to create a separate custom IAM role containing the permissions. This new role and the roles/Dataprep.User can be assigned to any user who is granted access to the

D s product
productgdppr
project.

...

Please complete the following steps to create a custom IAM role called, roles/Dataprep.Premium.Full, which contains the additional required permissions for the product. 

  1. To open the 
    D s platform
     console from the product, click the Console icon at the bottom of the left nav bar.
  2. In the console, select the project that was enabled for 
    D s product
    productgdppr
    .
  3. In the left nav bar of the console, click IAM & Admin > Roles. See https://console.cloud.google.com/iam-admin/roles.
  4. In the Roles page, select + Create Role.
  5. In the Create Role panel, enter the following:
    1. Title: This value identifies the role in the console. Suggested title: Dataprep . Trifacta . Premium . Full
    2. Description: Enter a meaningful text description.
    3. ID: Set this value to an internal identifier for this role. Suggested value: DataprepTrifactaPremiumFull
    4. Role launch stage: Set this value based on your enterprise workflow requirements.
  6. Permissions: If there are additional permissions listed below, then these permissions need to be added to a role. 

    Tip

    Tip: You may wish to copy these roles to a text editor to assist in searching for them in the next step.

    1. Click + ADD PERMISSIONS.
    2. Select all of the permissions that need to be added. For more information, see Required Dataprep User Permissions.
    3. Click ADD.
    4. The permissions are added to the role.
  7. If all looks good in the role definition, click Create

...

  1. In the left nav bar of the console, click IAM.
  2. In the IAM manager, select the Members tab.

    Tip

    Tip: If you need to add members to the

    D s product
    productgdppr
    project, you can do so now. Click +ADD.

  3. For each member who needs the additional role:
    1. For a project member, click the Pencil icon.
    2. In the Edit Permissions window, click click +ADD ANOTHER ROLE.
    3. In the Select a role textbox, type the name of the role you created. For the above example, you would type: Dataprep . Trifacta . Premium . Full

      Info

      NOTE: The role may not be available in the drop-down. You may need to manually type the name of your custom role.

    4. Click SAVE.
  4. Repeat the previous steps for other members of the project.