Tuesday, March 27, 2018

[google-cloud-sql-discuss] Re: I can connect the Proxy from my account, but not from either of two service accounts that should also have access.

You may want to try the solution provided by the development team on this PIT thread for the same issue. Try to enable 'Cloud SQL Admin' APIand let us know if that resolves proxy connection issue. If you are unable to do that with own account, I will suggest that to try to enable it with project owner account as described in this document. 

The PIT thread you suggested above seems for the same proxy connection issue as you reported on this group thread. If you getting inconsistent results from the gcloud command line and IAM console for the service account roles, I will suggest raising a fresh issue on PIT specifically from IAM roles to avoid any ambiguity. 


On Monday, March 26, 2018 at 5:44:10 PM UTC-4, James Lampert wrote:
For lack of anything else to try, I tried creating a service account with exactly the same roles as my own account (listed in my previous post).

I got a "You do not have permission. . . ." message, and yet the service account got created ANYWAY, and the IAM Dashboard page shows all eleven roles for it.

But it didn't download a key on creation. I was, however, able to create and download a key from the "Create Key" function on the Service Programs page.

Same results as before.

--
You received this message because you are subscribed to the Google Groups "Google Cloud SQL discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email to google-cloud-sql-discuss+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/google-cloud-sql-discuss/c03f68e3-d2c7-45ff-8a79-990f77277ddc%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

No comments:

Post a Comment