BigQuery Connection API roles and permissions

This page lists the IAM roles and permissions for BigQuery Connection API. To search through all roles and permissions, see the role and permission index.

BigQuery Connection API roles

BigQuery Connection API offers the following service agent roles. Service agent roles should only be granted to service agents.

Role Permissions

BigQuery Connection Service Agent

(roles/bigqueryconnection.serviceAgent)

Gives BigQuery Connection Service access to Cloud SQL instances in user projects.

cloudsql.instances.connect

cloudsql.instances.get

logging.logEntries.create

logging.logEntries.route

monitoring.metricDescriptors.create

monitoring.metricDescriptors.get

monitoring.metricDescriptors.list

monitoring.monitoredResourceDescriptors.*

  • monitoring.monitoredResourceDescriptors.get
  • monitoring.monitoredResourceDescriptors.list

monitoring.timeSeries.create

BigQuery Connection API permissions

There are no IAM permissions for this service.

Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.

Last updated 2026年08月28日 UTC.