google-cloud-platformgoogle-cloud-iamgoogle-cloud-console

Unable to view organizational policies of GCP organization I own


Within an organization of which I am the sole admin, I am unable to enumerate and therefore manage the organizational policies from within the GCP console. Does anyone know why this might be and/or how I'd go about fixing it? Any guidance as to documentation that was perhaps missed during setup, etc. would be appreciated.

enter image description here


Solution

  • Organization Administrator includes the missing permissions resourcemanager.organizations.get along with orgpolicy.constraints.list and orgpolicy.policies.list.

    Do note that this role is not automatically granted for being the sole user on the account, this has to be assigned via the IAM menu.

    The Owner role does not have these permissions as the Owner is only limited on a Project level.