GCP projects and service accounts🔗
Google service accounts are used to permit Data Loader access to specific resources required for CDC, such as Cloud Storage buckets and secret manager resources. It's recommended you make a Google service account specifically for Data Loader and give access to only the resources you make as part of the CDC setup process.
Creating a project🔗
You will need a project and attached service accounts.
To create a new project:
- Log in to the Google Cloud Platform console.
- Click the navigation menu ☰ in the upper-left.
- Choose IAM and admin → Create a project.
- Provide a descriptive name for your project. Must be unique. Cannot be changed later as a Project ID is generated.
- Choose an organization. Cannot be changed later.
- Choose a parent organization or folder as the location.
- Click CREATE.
Creating a service account🔗
Once you have a project, you can create a service account:
- Click the navigation menu ☰ in the upper-left.
- Choose IAM and admin → Service accounts
- Click + CREATE SERVICE ACCOUNT.
- Provide a unique, descriptive display name for your service account.
- Provide a unique ID for your service account. You can use the service account name as the service account ID if it is unique.
- Provide a description for the service account.
- Click CREATE AND CONTINUE.
- In the Select a role drop-down, add the roles
roles/container.adminroles/iam.serviceAccountAdmin
- Click + ADD ANOTHER ROLE if applicable.
- Click DONE.
Got feedback or spotted something we can improve?
We'd love to hear from you. Join the conversation in the Documentation forum!