bland-address-49163
10/15/2023, 9:40 AMIAMMember
for a cloud sql database instance (so, something like a DatabaseIAMMember
, like there is for Buckets with BucketIAMMember
) ? I'd like to grant roles/cloudsql.instanceUser
and roles/cloudsql.client
to a service account for a specific database instance.dry-keyboard-94795
10/15/2023, 10:58 AMbland-address-49163
10/15/2023, 4:05 PMglamorous-jelly-86558
10/15/2023, 4:11 PMbland-address-49163
10/16/2023, 5:18 PMnew gcp.projects.IAMBinding("...", {
members: [...],
role: "roles/cloudsql.client",
condition: {
expression: pulumi.interpolate`resource.name == 'projects/${gcp.config.project}/instances/${instance.name}' && resource.type == 'sqladmin.googleapis.com/Instance'`,
title: "...",
description: "...",
}
});