HEX
Server: Apache/2.4.65 (Ubuntu)
System: Linux ielts-store-v2 6.8.0-1036-gcp #38~22.04.1-Ubuntu SMP Thu Aug 14 01:19:18 UTC 2025 x86_64
User: root (0)
PHP: 7.2.34-54+ubuntu20.04.1+deb.sury.org+1
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,
Upload Files
File: //snap/google-cloud-cli/394/help/man/man1/gcloud_iam.1
.TH "GCLOUD_IAM" 1



.SH "NAME"
.HP
gcloud iam \- manage IAM service accounts and keys



.SH "SYNOPSIS"
.HP
\f5gcloud iam\fR \fIGROUP\fR | \fICOMMAND\fR [\fIGCLOUD_WIDE_FLAG\ ...\fR]



.SH "DESCRIPTION"

The gcloud iam command group lets you manage Google Cloud Identity & Access
Management (IAM) service accounts and keys.

Cloud IAM authorizes who can take action on specific resources, giving you full
control and visibility to manage cloud resources centrally. For established
enterprises with complex organizational structures, hundreds of workgroups and
potentially many more projects, Cloud IAM provides a unified view into security
policy across your entire organization, with built\-in auditing to ease
compliance processes.

More information on Cloud IAM can be found here: https://cloud.google.com/iam
and detailed documentation can be found here:
https://cloud.google.com/iam/docs/.



.SH "GCLOUD WIDE FLAGS"

These flags are available to all commands: \-\-help.

Run \fB$ gcloud help\fR for details.



.SH "GROUPS"

\f5\fIGROUP\fR\fR is one of the following:

.RS 2m
.TP 2m
\fBoauth\-clients\fR

Create and manage OAuth clients.

.TP 2m
\fBpolicies\fR

Manage IAM deny policies.

.TP 2m
\fBpolicy\-bindings\fR

Manage policy bindings.

.TP 2m
\fBprincipal\-access\-boundary\-policies\fR

Manage principal access boundary policies.

.TP 2m
\fBroles\fR

Create and manipulate roles.

.TP 2m
\fBservice\-accounts\fR

Create and manipulate service accounts.

.TP 2m
\fBsimulator\fR

Understand how an IAM policy change could impact access before deploying the
change.

.TP 2m
\fBworkforce\-pools\fR

Create and manage workforce pools.

.TP 2m
\fBworkload\-identity\-pools\fR

Manage IAM workload identity pools.


.RE
.sp

.SH "COMMANDS"

\f5\fICOMMAND\fR\fR is one of the following:

.RS 2m
.TP 2m
\fBlist\-grantable\-roles\fR

List IAM grantable roles for a resource.

.TP 2m
\fBlist\-testable\-permissions\fR

List IAM testable permissions for a resource.


.RE
.sp

.SH "NOTES"

These variants are also available:

.RS 2m
$ gcloud alpha iam
.RE

.RS 2m
$ gcloud beta iam
.RE