Back to feed
GCP·Apigee hybridfeature·
AI Insights

Reduced service account permissions


Reduced service account permissions

Apigee hybrid v1.17.0 reduces the Google Cloud IAM permissions that Apigee service accounts require. Service accounts that use Cloud Storage now require only the storage.objects.get and storage.objects.create permissions rather than the broader Storage Admin (roles/storage.admin) role. The Cassandra components also no longer run with the privileged: true security context.

For more information about service accounts, see Create service accounts.