Assigning a resource role to a group through CLI

In addition to a role, you assign a group a resource and resource role to enable the users in the group to create clusters and run jobs and access the resources required for the clusters and jobs.

For example, you assign a group a resource role on an environment to enable users in the group to create a cluster using the resources specified in the environment.

You can use the following command to assign a resource role to a group:

cdp iam assign-group-resource-role \
--group-name=GroupName \
--resource-role-crn=ResourceRoleCRN \
--resource-crn=ResourceCRN 

To remove a resource role from a group:

cdp iam unassign-group-resource-role \
--group-name=GroupName \
--resource-role-crn=ResourceRoleCRN \
--resource-crn=ResourceCRN

The resource-role-crn parameter requires the CRN of the resource role you want to assign to the group.

The resource-crn parameter requires the CRN of the resource on which you want to grant the resource role permissions.

To get a list of the resource roles assigned to a group:

cdp iam list-group-assigned-resource-role \
--group-name=GroupName