BlueXP reports missing permission storage.buckets.list access to the GCP project
Applies to
- BlueXP
- Cloud Volumes ONTAP (CVO)
- Google Cloud Platform (GCP)
- Fabric Pool
- Shared VPC
Issue
- BlueXP UI reports the alert below:
<resource_name>@<service_account_name>.iam.gserviceaccount.com does not have storage.buckets.list access to the Google Cloud project. Permission 'storage.buckets.list' denied on resource (or it may not exist). Project Id: <host_project_name>
- BlueXP
server.log
reports permissions error for Fabric Pool buckets cleanup tasks as below:
ERROR [Fabric Pool Resources Cleanup ] [System] (oncloud-akka.actor.default-dispatcher-14936) [FabricPoolResourcesCleanupGcpExecutor:85] Failed to cleanup buckets from { projectId=Some(<host_project_name>) } due to <resource_name>@<service_account_name>.iam.gserviceaccount.com does not have storage.buckets.list access to the Google Cloud project. Permission 'storage.buckets.list' denied on resource (or it may not exist)