File: //lib/google-cloud-sdk/lib/surface/secrets/add_iam_policy_binding.yaml
- release_tracks: [BETA, GA]
help_text:
brief: Add IAM policy binding to a secret.
description: |
Add an IAM policy binding to the IAM policy of a secret. One binding
consists of a member and a role.
examples: |
To add an IAM policy binding for the role of 'roles/secretmanager.secretAccessor'
for the user 'test-user@gmail.com' on my-secret, run:
$ {command} my-secret --member='user:test-user@gmail.com' --role='roles/secretmanager.secretAccessor'
See https://cloud.google.com/iam/docs/managing-policies for details of
policy role and member types.
request:
api_version: v1
collection: secretmanager.projects.secrets
arguments:
resource:
help_text: Name of the secret for which to add the IAM policy binding.
spec: !REF googlecloudsdk.command_lib.secrets.resources:secret
iam:
enable_condition: true
policy_version: 3
get_iam_policy_version_path: options_requestedPolicyVersion