This page lists the IAM roles and permissions for Identity-Aware Proxy. To search through all roles and permissions, see the role and permission index.
Identity-Aware Proxy roles
| Role | Permissions | 
|---|---|
| IAP Policy Admin( Provides full access to Identity-Aware Proxy resources. | 
       
 
 
 
 
 
       
 
       
 
 
 
 
 
 
 
 
 | 
| IAP-secured Web App User( Provides permission to access HTTPS resources which use Identity-Aware Proxy. | 
 | 
| IAP-secured Resource Remediator User Beta( Remediate IAP resource | 
 
 
 | 
| IAP Settings Admin( Administrator of IAP Settings. | 
       
 
 
 
 
 
 
 
 
 | 
| IAP-secured Tunnel Destination Group Editor( Edit Tunnel Destination Group resources which use Identity-Aware Proxy | 
 
 
 
 
 | 
| IAP-secured Tunnel Destination Group Viewer( View Tunnel Destination Group resources which use Identity-Aware Proxy | 
 
 | 
| IAP-secured Tunnel User( Access Tunnel resources which use Identity-Aware Proxy | 
 
 | 
Identity-Aware Proxy permissions
| Permission | Included in roles | 
|---|---|
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Support User ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          IAP-secured Tunnel User ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP-secured Tunnel Destination Group Editor ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP-secured Tunnel Destination Group Editor ( | 
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Support User ( 
          IAP-secured Tunnel Destination Group Editor ( 
          IAP-secured Tunnel Destination Group Viewer ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User ( 
          IAP-secured Tunnel Destination Group Editor ( 
          IAP-secured Tunnel Destination Group Viewer ( | 
| 
 | 
          Owner ( 
          IAP-secured Resource Remediator User ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP-secured Tunnel Destination Group Editor ( | 
| 
 | 
          Owner ( 
          IAP-secured Tunnel User ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          IAP-secured Resource Remediator User ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Support User ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP Settings Admin ( | 
| 
 | 
          IAP-secured Web App User ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Support User ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          IAP-secured Resource Remediator User ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Support User ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          Viewer ( 
          Support User ( 
          IAP Settings Admin ( | 
| 
 | 
          Owner ( 
          Security Admin ( 
          IAP Policy Admin ( | 
| 
 | 
          Owner ( 
          Editor ( 
          IAP Settings Admin ( |