检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Listing Users Function This API is used to list the IAM Identity Center users in the specified identity source. It can be called only from the organization's management account or from a delegated administrator account of a cloud service.
If you are using IAM Identity Center as the identity source, you can configure MFA in IAM Identity Center as follows. Procedure Log in to the Huawei Cloud management console. Click in the upper left corner of the page and choose Management & Governance > IAM Identity Center.
The differences between performing ABAC on IAM Identity Center and on external identity providers are as follows: IAM Identity Center: You need to add the attributes for performing ABAC on the Access Control Attributes tab of IAM Identity Center.
Functions Centralized Identity Management IAM Identity Center allows you to create and manage users and groups as identities. With login credentials, your users can then manage their own access to multiple Huawei Cloud accounts from a single user portal.
A quota is a limit on the quantity or capacity of a certain type of service resources available to you, for example, the maximum number of IAM Identity Center users or groups that you can create.
For security purposes, create Identity and Access Management (IAM) users and grant them permissions for routine management. User An IAM user is created by an account in IAM to use cloud services. Each IAM user has its own identity credentials (password and access keys).
Obtaining Access Control Attributes for a Specified Instance Function This API is used to return a list of IAM Identity Center identity source attributes that have been configured to be used with attribute-based access control (ABAC) of a specified IAM Identity Center instance.
-成长地图 | 华为云
If you use an external identity provider as the identity source, you can configure user attributes for performing ABAC in both IAM Identity Center and the external identity provider.
Minimum length: 12 Maximum length: 12 group_id Yes String Globally unique ID of an IAM Identity Center group in the identity source.
Creating a User and Authorizing the User to Use Huawei Cloud Astro Zero Use IAM to implement fine-grained permissions control for your Huawei Cloud Astro Zero resources. With IAM, you can: Create IAM users for employees.
Billing IAM Identity Center is a free service. You only need to pay for the cloud services and resources used in your accounts. For details about the billing for using resources, see the billing description for each resource.
Creating and Authorizing a User to Use Huawei Cloud Astro Zero Use IAM for fine-grained permissions control on your Huawei Cloud Astro Zero resources. With IAM, you can: Create IAM users for employees. This gives each IAM user their own security credentials to use resources.
For example, if you enter the IAM console URL, users will access the IAM console after login. Description Description of a permission set.
Token of an IAM User IAM 07:32 IAM
In this case, you can manually provision users and groups through the IAM Identity Center console. When you add users to IAM Identity Center, ensure that the username is the same as that in your IdP.
Minimum length: 12 Maximum length: 12 user_id Yes String Globally unique ID of an IAM Identity Center user in the identity source.
On the Identity Source tab, click Change to IAM Identity Center in the Identity Source row. Figure 4 Changing to IAM Identity Center Review and confirm the change.
Click in the upper left corner of the page and choose Management & Governance > IAM Identity Center. Choose Settings in the navigation pane. Click the Authentication tab.
*", "iam:credentials:*", "iam:groups:*", "iam:identityProviders:*", "iam:mfa:*", "iam:permissions:*", "iam:projects:*", "iam:quotas:*", "iam:roles:*",