Stay organized with collectionsSave and categorize content based on your preferences.
Access control for tenants
Identity Platform provides Admin APIs to manage your tenants, users, and
authentication tokens. You can leverageIdentity and Access Managementto prevent unwanted access using these APIs.
Granting, changing, and revoking access
Follow these steps to grant a user a role on a tenant resource:
Open the Identity Platform Tenants page in the Google Cloud console.Go to the tenants page
Select a tenant from the list.
Switch to thePermissionstab in the info panel on the right.
ClickAdd principalto grant a user a new role, or use the list to
modify or revoke access for an existing user.
To learn more about access control using IAM, see theIAM documentation. To set the access control policy
for a resource, use thesetIamPolicymethod.
API permissions
This table lists the role required to call each method in the
Identity Platform API. The role should be assigned on the tenant resource.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-11-14 UTC."],[],[]]