Create IAM policy binding
Visibility: public · internal ( OpenAPI Custom Extension: x-visibility )
Bind a role to a user or group at a specific scope.
Authorizations
Bearer token authentication using OAuth2/OIDC tokens
Body
Role identifier to bind
User or group to bind role to
Scope of the role binding (org, project, or resource level).
Organization identifier specified when creating policy as operator admin. When absent, it will be considered as the current user's organization.
Response
Policy binding successfully created
IAM policy binding (role binding to principal at scope).
Server-generated UUID.
Resource identifier. Provided by the client at creation or server-generated if omitted. Must be 1-63 lowercase characters matching a-z [blocked]?. Immutable after creation.
1 - 63^[a-z]([-a-z0-9]*[a-z0-9])?$"policy-g8h9i1"
Role identifier
User, group, or service account to bind role to
Scope of the role binding
Policy binding creation timestamp
Server-defined URL for this resource.
"/v1/regions/global/iam/policies/policy-g8h9i1"
Optional human-readable name for the policy binding.
255Optional explanation of why this binding exists.
1024Policy binding last update timestamp