-
User Access Management
-
Cross-Account Delegation
-
Federated Identity Authentication
User Access Management
You can create user groups and grant them specific permissions, and add users to user groups so that they inherit the groups' permissions.
Advantages
Independent Credentials
IAM users can use their own credentials to access HUAWEI CLOUD and do not need to know your account and password.
Refined Permissions
You can grant IAM users only the permissions for specific resources in specific projects.
Account Security
You can configure account security settings to keep your user information and system data secure.
Cross-Account Delegation
You can delegate resource access to another account without sharing your password or access keys.
Advantages
Access Delegation
To ensure the security of your account and data, you can grant only the permissions required for specific resources to another account.
No Account Sharing
The delegated party can use their own account and password to access only resources you specify.
Option to Cancel Delegation
You can cancel the trust relationship between you and the delegated party at any time according to your business needs.
Federated Identity Authentication
Users in your enterprise can access HUAWEI CLOUD through the enterprise management system, without using HUAWEI CLOUD accounts.
Advantages
Unified Portal
Users can access HUAWEI CLOUD through your enterprise management system.
Easy User Management
You can easily manage users on your enterprise management system.
Functions
-
User Management
IAM allows you to create IAM users and authorize them to securely access your resources using their own username and password.
-
Permissions Management
With IAM, you can grant IAM users only the permissions they require to access specific resources.
-
Access Delegation
IAM allows you to authorize another HUAWEI CLOUD account or a cloud service to access your resources based on assigned permissions.
-
Access Key Management
You can create access keys (AK/SK pairs) and use them to access cloud services through APIs.
-
Identity Federation
You can use IAM to create an identity provider and federate users to HUAWEI CLOUD from your enterprise network.
-
Account Security
IAM allows you to configure security settings, including identity authentication for critical operations, to keep your user information and system data always secure.