检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
IAM user a of account A has created CodeArts project X and wants to invite IAM user b of account B to become a member of project X. The operations in this section will be performed on the CodeArts console and homepage. CodeArts console: Account A authorizes account B.
IAM ModelArts uses Identity and Access Management (IAM) for authentication and authorization. For more information about IAM, see Identity and Access Management User Guide.
IAM Functions Permissions Parent Topic: Security
It works with Identity and Access Management (IAM) to provide a variety of authorization methods, including IAM fine-grained authorization, IAM token authorization, namespace authorization, and resource authorization in namespaces.
For more information about IAM, see IAM Service Overview. KooMessage Permissions New IAM users do not come with default permissions, so first add them to one or more groups, then attach policies or roles to these groups.
IAM Functions Permissions Parent topic: Security
Figure 9 Manage User Select the IAM user you want to add to the user group and click OK.
For details about the differences between IAM and enterprise projects, see What Are the Differences Between IAM and Enterprise Management?
IAM user: Select an IAM user and configure an agency for the IAM user. Figure 1 Selecting an IAM user Federated user: Enter the username or user ID of the target federated user. Figure 2 Selecting a federated user Agency: Select an agency name.
Creating a User and Granting Permissions IAM enables you to perform a refined management on your Cloud Eye service. It allows you to: Create IAM users for employees based on your enterprise's organizational structure.
For IAM endpoints, see Regions and Endpoints. Debugging You can debug this API in API Explorer.
CDM can be shared with IAM users of the same tenant through authorization. To authorize an IAM user, perform the following steps: Create a user group and assign permissions Create a user group on the IAM console, and attach the CDM ReadOnlyAccess policy to the group.
A token is an access credential issued to an IAM user to bear its identity and permissions. When calling the APIs of IAM or other cloud services, you can use this API to obtain a user token for authentication.
CDM can be shared with IAM users of the same tenant through authorization. To authorize an IAM user, perform the following steps: Create a user group and assign permissions Create a user group on the IAM console, and attach the CDM ReadOnlyAccess policy to the group.
Create a user group on the IAM console, and assign the IEF ReadOnlyAccess policy to the group.
If your Huawei Cloud account does not require IAM for permissions management, you can skip this section. IAM can be used free of charge. You pay only for the resources in your account. For more information about IAM, see IAM Service Overview.
IAM is free to use, and you only need to pay for the resources in your account. For more information about IAM, see IAM Service Overview. If your Huawei Cloud account does not need individual IAM users for permissions management, skip over this section.
Create a user group on the IAM console, and assign the IEF ReadOnlyAccess policy to the group.
IAM authentication is not required for running kubectl commands. Therefore, you can run kubectl commands without configuring cluster management (IAM) permissions.
IAM authentication is not required for running kubectl commands. Therefore, you can run kubectl commands without configuring cluster management (IAM) permissions. However, you need to obtain the kubectl configuration file (kubeconfig) with the namespace permissions.