检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Policies that contain actions for both IAM and enterprise projects can be used and applied for both IAM and Enterprise Management. Policies that contain actions only for IAM projects can be used and applied to IAM only.
Policies that contain actions for both IAM and enterprise projects can be used and take effect for both IAM and Enterprise Management. Policies that contain actions only for IAM projects can be used and applied to IAM only.
IAM or enterprise projects on which actions take effect. Policies that contain actions supporting both IAM and enterprise projects can be used and take effect in both IAM and Enterprise Management.
When installing ICAgent, you can create an IAM agency, and ICAgent will automatically obtain an AK/SK pair and generate the ICAgent installation command. Creating an Agency Log in to the IAM console. In the navigation pane, choose Agencies.
Policies that contain actions for both IAM and enterprise projects can be used and applied for both IAM and Enterprise Management. Policies that contain actions only for IAM projects can be used and applied to IAM only.
You can use your account to create IAM users, and assign permissions to the IAM users to control their access to specific resources. IAM permissions define which actions on your cloud resources are allowed or denied.
To query enterprise projects associated with an IAM user, see Querying the Enterprise Projects Associated with an IAM User.
If your Huawei Cloud account does not require individual IAM users for permissions management, skip this section. IAM can be used free of charge. You pay only for the resources in your account. For more information about IAM, see IAM Service Overview.
Creating a User and Using GES To implement fine-grained permissions management for your GES, you can use Identity and Access Management (IAM). This involves creating IAM users and groups and granting specific permissions to them.
Create a user group on the IAM console using an IAM account, and assign the FunctionGraph Invoker role to the group. Create an IAM user and add it to the user group. Create a user on the IAM console using an IAM account and add the user to the group created in 1.
Creating a User and Granting Permissions You can use IAM to implement refined permission control for DBSS resources. To be specific, you can: Create IAM users for employees based on the organizational structure of your enterprise.
If your HUAWEI ID does not require individual IAM users for permissions management, skip this section. IAM is free of charge. You pay only for the resources you use. For more information, see IAM Service Overview.
If your HUAWEI ID does not require individual IAM users for permissions management, skip this section. IAM is free of charge. You pay only for the resources in your account. For more information, see IAM Service Overview. DMS for RocketMQ permissions policies are based on DMS.
Identity and Access Management You can use Identity and Access Management (IAM) to control access to your Global Accelerator resources. IAM permissions define which actions on your cloud resources are allowed or denied to control access to your resources.
Create a user group on the IAM console, and assign the DCS ReadOnlyAccess policy to the group. Create an IAM user. Create a user on the IAM console and add the user to the group created in 1. Log in and verify permissions.
With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure within your Huawei Cloud account. Each IAM user will have their own security credentials for accessing MetaStudio resources.
Cause If you use a bucket policy to grant the IAM user the bucket read and write permissions, the IAM user has the permissions to call the following APIs: GetObject: downloading objects GetObjectVersion: downloading objects and their versions PutObject: uploading objects DeleteObject
Use the mounted OpenID Connect ID token file in programs in the pod to access IAM and obtain a temporary IAM token. Access the cloud service using the IAM token in programs in the pod.
HaydnCSF and Other Services IAM HaydnCSF uses Huawei Cloud IAM, which enables you to easily manage users and control their access to Huawei Cloud services and resources. For more information about IAM, see What Is IAM?
including IAM) IAM users assigned the Security Administrator role (with permissions to access IAM) If you want to view, audit, and track the records of key operations performed on IAM, enable Cloud Trace Service (CTS).