检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
For more information, see Creating an IAM User. Parent topic: Preparations
If an enabled IAM user has been added to at least one user group, and no user groups are specified, this IAM user is compliant. If an enabled IAM user has not been added to any user groups, and no user groups are specified, this IAM user is noncompliant.
With IAM, you can: Create IAM users or user groups for personnel based on your enterprise's organizational structure. Each IAM user has their own identity credentials for accessing Enterprise Switch resources.
For more details, see Assigning Agency Permissions to an IAM User. Rule Logic If an IAM agency does not contain all the specified policies and roles, this agency is non-compliant. If an IAM agency contains all the specified policies and roles, this agency is compliant.
For details, see Authorizing dlg_agency. dws:dbAuthority:syncIamUse iam:users:listUsers iam:groups:listGroups iam:users:listUsersForGroup GaussDB(DWS) does not support user groups.
Log In to a CBH Instance Console as an IAM User Function This API is used to log in to a CBH instance console as an IAM user.
Parent topic: IAM User Management
Creating an IAM User and Granting SFS Turbo Permissions This section describes how to use IAM to implement fine-grained permissions control for your SFS Turbo resources. With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure.
Read - - iam:users:getUser iam:users:update Grants permission to update a user. Write - - iam:users:updateUser iam:users:list Grants permission to list users. List - - iam:users:listUsers iam:users:delete Grants permission to delete a user.
Step 4: Create a Non-administrator IAM User This topic walks you through how to create a non-administrator IAM user. IAM authentication is used for tenant log collection.
DAS allows you to control whether IAM users can add, delete, and modify data connections and log in to an instance. For details, see Custom Permissions Policies. After a user logs in to the database, IAM cannot interfere with users to run SQL statements.
Parent topic: IAM User Management
Parent topic: IAM User Management
Parent topic: IAM User Management
Querying the User Groups Which an IAM User Belongs to Function This API can be used by the administrator to query the groups of a specified IAM user or used by an IAM user to query their own groups.
With IAM, you can: Create IAM users for personnel based on your enterprise's organizational structure. Each IAM user has their own identity credentials for accessing DMS for RabbitMQ resources.
ALM-45743 Failed to Call the IAM API This section applies only to MRS 3.1.5 or later. Alarm Description This alarm is generated when Guardian fails to call the IAM API to obtain a temporary AK/SK.
What Are the Differences Between IAM Projects and Enterprise Projects? IAM Projects IAM projects can group and physically isolate resources. Resources cannot be transferred between IAM projects, but can only be deleted and then created or purchased again.
What Are the Differences Between IAM Projects and Enterprise Projects? IAM Projects An IAM project can contain resources of only one region. You cannot transfer resources between IAM projects. Enterprise Projects An enterprise project can contain resources of different regions.
If the delegator account deletes the agency from IAM after cross-account ingestion is configured, LTS will not detect the deletion and the ingestion configuration will continue to take effect.