Google Cloud Platform Service Accounts

In this article

    Note

    This feature is available in Veeam Backup & Replication starting from version 11a (build 11.0.1.1261).

    You can create a record for credentials that you plan to use to connect to Google Compute Engine within Google Cloud Platform. This Google Cloud Platform service account is used by Veeam Backup & Replication to perform direct restore to Google Compute Engine and backup and restore operations available with Google Cloud Platform Plug-in for Veeam Backup & Replication. For more information on the latter, see the Integration with Veeam Backup for Google Cloud Platform Guide.

    To create a credentials record for a Google Cloud Platform service account:

    1. From the main menu, select Manage Cloud Credentials.
    2. Click Add > Google Cloud Platform service account.
    3. At the Type step of the wizard, select if you want to create a new service account automatically or use an existing service account.

    Note

    If you select Create a new service account, the created service account will be granted the Owner IAM role with a wide scope of permissions and capabilities. If you want to limit the list of permissions granted to the service account, create a user-managed service account, as described in the Google Cloud documentation, with the limited set of permissions:

    • For the information on permissions required to restore to Google Compute Engine, see Google Compute Engine IAM User Permissions.
    • For the information on permissions required to deploy GCP Plug-in for Veeam Backup & Replication, see the Required Permissions section in the Integration with Veeam Backup for Google Cloud Platform Guide.

    Google Cloud Service Accounts 

    1. At the Account step of the wizard, specify credentials required for accessing the service account:
    • If you have selected Create a new service account, do the following:
    1. Log into your Google Cloud account. Read and accept the Google Terms of Service and the Google Privacy Policy.
    2. Allow Veeam Backup & Replication to access your Google account. After that, Veeam Backup & Replication can manage your Identity and Access Management (IAM) policies, and see, edit, configure and delete your Google Cloud Platform data.
    3. Return to the wizard and select the project with which you want the created service account to work.

    Google Cloud Service Accounts 

    • If you have selected Use the existing service account, do the following:
    1. Download the service account key in the JSON format, created as described in Google Cloud documentation.

    Important

    Depending on the scenarios that the service account will be used for, make sure that the service account meets all requirements and limitations.

    For restoring virtual machines from backups to Google Cloud, mind the requirements and limitations listed in Restore to Google Compute Engine.

    1. At the Account step of the wizard, select the downloaded service account key.

    Google Cloud Service Accounts 

    1. At the Summary step of the wizard, review details of the configured account and click Finish to close the wizard.

    Related Topics