Archives for Google Identity
Sharing GCP resources with users without gSuite accounts
This content is password protected. To view it please enter your password below: Password:
GCP Service Accounts – Additional Use Cases
Service accounts are extremely useful in GCP - in calling service APIs - both via custom or default Service Accounts. (Also read Service Accounts in GCP Overview and Custom versus…
Credential types – in GCP and otherwise
What is the difference between API Keys, OAuth Credentials and Service Accounts (in GCP)? This post will shed some light. While GCP specific, this also applies in general. Credential types…
Default Service Accounts versus Custom Service Accounts – GCP
What are default service accounts? Default Service Accounts are used by GCP - and are not modifiable. In fact, you would not see them listed in the IAM-->Service Accounts menu.…
What is workload identity in GKE?
GKE access control consists of two separate identity pieces - Cloud Identity (Cloud IAM) and Native Kubernetes IAM (Kube Identity) Each of these (Cloud IAM and Kube RBAC) - have…
Organization Node in GCP – Secondary Domains and Primary Domain Aliases
This content is password protected. To view it please enter your password below: Password:
Using Service Accounts in GCP
This content is password protected. To view it please enter your password below: Password:
Adding Scopes for OAuth 2.0 Credentials
This content is password protected. To view it please enter your password below: Password:
Google Workspace and Google Cloud admins
Organizational Ownership An organization is an entity that exists outside of the cloud context as well (for - when you set up a workspace account). The very same organization can…
Admin.google groups and Organizational Google Workspace Domains
Use case - Only allow users from specific domains into GCP Organization Policy : Allow only allowed Domains into GCP As a GCP Admin, this is a policy you will…