Setup roles for Google Cloud billing download
To perform billing download for Google Cloud, you need specific roles and permissions for various features.
Before you begin
Roles required:
- On the Google Cloud Console: Google Cloud administrator.
- Cloud Cost Management: insights_admin [sn_clin_core.insights_admin] or admin.
About this task
Procedure
- Add the following required permissions for the Billing module in the Google Cloud provider console.
| Function and feature | APIs and permission |
|---|---|
| Cost analysis and reporting- Cost allocation and tracking - Cost trend analysis - Budget monitoring - Spend forecasting - Custom cost reports | Note: These permissions enable retrieving billing and spend data for cost analysis. BigQuery (Billing data)
|
| Recommendations- Identify under-used resources - Suggest optimal instance types - Recommend disk size adjustments - Cost optimization opportunities | Note: These permissions enable viewing the cost-saving recommendations. You must grant the permissions for retrieving billing and spend data before viewing the recommendations. BigQuery
|
| Resource Lifecycle Management- Start/stop instances on schedule - Delete unused resources - Resize resources based on recommendations - Automated cost optimization actions | Note: These permissions enable active resource management to act on cost-saving measures across your cloud environments. You must grant the permissions for retrieving billing and spend data and viewing recommendations before granting permissions for resource management. Compute engine - Lifecycle operations
|
Set the roles at the Google Cloud organization level so that it is applicable for all the projects under that level.
The following APIs should be enabled on the Google Cloud Console for each project.
- Compute Engine API
- Recommender API
- BigQuery API
- BigQuery Data Transfer API
- Cloud Resource Manager API
- Cloud SQL Admin API
- Batch API
- For details on policy creation see Google Cloud docs.