Adding Access to AROVA through IAP
To allow select users access to a deployed AROVA:
- From the Google Cloud Console, navigate to Security > Identity-Aware Proxy > SSH and TCP Resources.
Figure: The SSH and TCP Resources screen.
- Select the desired AROVA (filter VMs by configured VM prefix or by the “jet-aro” default name prefix).
- Click the Add Principal button on the right side of the screen.
- Provide the access principal email.
- Select the “IAP-secured tunnel user” role.
- Click “Save”.
Figure: Granting access to IAP user.
Also see: