GoogleCloudPolicytroubleshooterIamV3ExplainedDenyResource
import type { GoogleCloudPolicytroubleshooterIamV3ExplainedDenyResource } from "https://googleapis.deno.dev/v1/policytroubleshooter:v3.ts";Details about how a specific resource contributed to the deny policy evaluation.
§Properties
Required. Indicates whether any policies attached to this resource deny
the specific permission to the specified principal for the specified
resource. This field does not indicate whether the principal actually has
the permission for the resource. There might be another policy that
overrides this policy. To determine whether the principal actually has the
permission, use the overall_access_state field in the
TroubleshootIamPolicyResponse.
List of IAM deny policies that were evaluated to check the principal's denied permissions, with annotations to indicate how each policy contributed to the final result.
The full resource name that identifies the resource. For example,
//compute.googleapis.com/projects/my-project/zones/us-central1-a/instances/my-instance.
If the sender of the request does not have access to the policy, this field
is omitted. For examples of full resource names for Google Cloud services,
see https://cloud.google.com/iam/help/troubleshooter/full-resource-names.