Linux cesa-www-main 6.1.0-49-cloud-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.174-1 (2026-05-26) x86_64
Apache/2.4.68 (Debian)
Server IP : 10.218.0.2 & Your IP : 216.73.216.28
Domains :
Cant Read [ /etc/named.conf ]
User : www-data
Terminal
Auto Root
Create File
Create Folder
Localroot Suggester
Backdoor Destroyer
Readme
/
usr /
lib /
google-cloud-sdk /
lib /
surface /
asset /
Delete
Unzip
Name
Size
Permission
Date
Action
__pycache__
[ DIR ]
drwxr-xr-x
2026-06-08 18:08
feeds
[ DIR ]
drwxr-xr-x
2026-06-08 18:08
operations
[ DIR ]
drwxr-xr-x
2026-06-08 18:08
saved_queries
[ DIR ]
drwxr-xr-x
2026-06-08 18:08
__init__.py
1.08
KB
-rw-r--r--
1980-01-01 08:00
analyze_iam_policy.py
3.11
KB
-rw-r--r--
1980-01-01 08:00
analyze_iam_policy_longrunning.py
4.46
KB
-rw-r--r--
1980-01-01 08:00
analyze_move.py
2.99
KB
-rw-r--r--
1980-01-01 08:00
analyze_org_policies.py
3.39
KB
-rw-r--r--
1980-01-01 08:00
analyze_org_policy_governed_assets.py
3.26
KB
-rw-r--r--
1980-01-01 08:00
analyze_org_policy_governed_containers.py
3.67
KB
-rw-r--r--
1980-01-01 08:00
export.py
3.59
KB
-rw-r--r--
1980-01-01 08:00
get_effective_iam_policy.py
3.7
KB
-rw-r--r--
1980-01-01 08:00
get_history.py
2.6
KB
-rw-r--r--
1980-01-01 08:00
list.py
2.71
KB
-rw-r--r--
1980-01-01 08:00
query.py
2.8
KB
-rw-r--r--
1980-01-01 08:00
search_all_iam_policies.py
9.02
KB
-rw-r--r--
1980-01-01 08:00
search_all_resources.py
12.87
KB
-rw-r--r--
1980-01-01 08:00
Save
Rename
# -*- coding: utf-8 -*- # # Copyright 2022 Google LLC. All Rights Reserved. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. """Command to call batch get Effective IAM Policies API.""" from googlecloudsdk.api_lib.asset import client_util from googlecloudsdk.calliope import arg_parsers from googlecloudsdk.calliope import base # pylint: disable=line-too-long DETAILED_HELP = { 'DESCRIPTION': """\ Batch get effective IAM policies that match a request. """, 'EXAMPLES': """\ To list effective IAM policies of 1 resource in an organization, run: $ {command} --scope=organizations/YOUR_ORG_ID --names=RESOURCE_NAME1 To list effective IAM policies of 2 resources in a folder, run: $ {command} --scope=folders/YOUR_FOLDER_ID --names=RESOURCE_NAME1,RESOURCE_NAME2 To list effective IAM policies of 3 resources in a project using project ID, run: $ {command} --scope=projects/YOUR_PROJECT_ID --names=RESOURCE_NAME1,RESOURCE_NAME2,RESOURCE_NAME3 To list effective IAM policies of 2 resources in a project using project number, run: $ {command} --scope=projects/YOUR_PROJECT_NUMBER --names=RESOURCE_NAME1,RESOURCE_NAME2 """ } def AddScopeArgument(parser): parser.add_argument( '--scope', metavar='SCOPE', required=True, help=("""\ Scope can be a project, a folder, or an organization. The search is limited to the IAM policies within this scope. The caller must be granted the ``cloudasset.assets.analyzeIamPolicy'', ``cloudasset.assets.searchAllResources'', ``cloudasset.assets.searchAllIamPolicies'' permissions on the desired scope. The allowed values are: * ```projects/{PROJECT_ID}``` (e.g. ``projects/foo-bar'') * ```projects/{PROJECT_NUMBER}``` (e.g. ``projects/12345678'') * ```folders/{FOLDER_NUMBER}``` (e.g. ``folders/1234567'') * ```organizations/{ORGANIZATION_NUMBER}``` (e.g. ``organizations/123456'') """)) def AddNamesArgument(parser): parser.add_argument( '--names', metavar='NAMES', type=arg_parsers.ArgList(min_length=1, max_length=20), required=True, help=("""\ Names refer to a list of [full resource names](https://cloud.google.com/asset-inventory/docs/resource-name-format) of [searchable asset types](https://cloud.google.com/asset-inventory/docs/supported-asset-types). For each batch call, total number of names provided is between 1 and 20. The example value is: * ```//cloudsql.googleapis.com/projects/{PROJECT_ID}/instances/{INSTANCE}``` (e.g. ``//cloudsql.googleapis.com/projects/probe-per-rt-project/instances/instance1'') """)) # pylint: enable=line-too-long @base.ReleaseTracks(base.ReleaseTrack.GA) class EffectiveIAMPolicyGA(base.Command): """Get effective IAM policies for a specified list of resources within accessible scope, such as a project, folder or organization.""" detailed_help = DETAILED_HELP @staticmethod def Args(parser): AddNamesArgument(parser) AddScopeArgument(parser) def Run(self, args): client = client_util.EffectiveIAMPolicyClient() return client.BatchGetEffectiveIAMPolicies(args)