Setting up Google Cloud

Google knows their stuff best, so we won't presume to give you all the details when using Google products. We strongly suggest that you carefully review and follow Google documentation to establish your Google Cloud account, if you haven't already. When you've done the Google thing, come back here to do the Venafi thing.

The least permissions required to request, retrieve, and revoke certificates for the service account are

  • privateca.locations.get

  • privateca.locations.list

  • privateca.caPools.get

  • privateca.caPools.list

  • privateca.certificateAuthorities.get

  • privateca.certificateAuthorities.list

  • privateca.certificates.get

  • privateca.certificates.create

  • privateca.certificates.update

When you've done the Google thing, head on over to Setting up Venafi for use with Google Cloud CA Service.