Settings to access Google Cloud Storage

Access permissions for buckets and objects

Grant IAM permissions for buckets and objects to upload objects to Google Cloud Storage or download objects from Google Cloud Storage.

Associate the IAM role containing the permissions shown in the table below with the service account that is used for authentication. For details on how to grant permissions, refer to the respective documents provided by Google.

When using the upload function, the required permissions are the same whether "New Creation" or "Replace" is specified for Registration Mode in the Receive Management Information.

Table 2.10 Required permissions for object upload

Receive Management Information

Bucket Permission

Access Permission

Registration Mode

New Creation

storage.buckets.get

storage.objects.create
storage.objects.delete
storage.objects.get

Replace

Table 2.11 Required permissions for object download

Bucket Permission

Object Permission

None

storage.objects.get

Project settings

You must enable the following API in the project used when uploading or downloading objects:

  • Google Cloud Storage JSON API