检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
IAM Custom Policy Examples If system-defined policies cannot meet your requirements, you can create custom policies to implement more refined access control. You can refer to the following examples to customize policies for cloud services.
To manage access keys of IAM users, see Managing Access Keys for an IAM User. Parent topic: IAM User Management
Parent topic: Interconnecting an MRS Cluster with OBS Using an IAM Agency
In contrast, IAM policies directly grant permissions to IAM users, IAM user groups, and IAM agencies.
Granting Permissions to IAM Users Creating Users and Assigning DLV Permissions Parent topic: Preparatory Work
Adding an IAM User to a User Group You can add IAM users Test_User_A and Test_User_B to user groups Test_ECS_A and Test_ECS_B respectively according to the following procedure: Log in to Huawei Cloud and click Console in the upper right corner.
Administrator ucs-group-2-admin Viewer ucs-group-2-readonly Step 1: Authorizing the IAM Administrator Log in to the IAM console as the IAM administrator. In the navigation pane, choose User Groups. In the upper right corner, click Create User Group.
How Do I Control IAM User Access to the Console? How Can I Obtain Permissions to Create an Agency?
Must I Use an OBS Bucket as an IAM User When Configuring Transfer on CTS as an IAM User? No. You only need to ensure that you have the permissions to perform operations on OBS buckets. Parent topic: Trace Transfer
Accessing OBS Using an IAM Agency The IAM agency is a function of Identity and Access Management (IAM).
Listing Projects Accessible to an IAM User Function This API is used to list the projects in which resources are accessible to a specified IAM user. The API can be called using both the global endpoint and region-specific endpoints. For IAM endpoints, see Regions and Endpoints.
Granting an IAM User the Read/Write Permission on a Bucket Scenario This topic describes how to grant an IAM user the read/write permission on an OBS bucket.
Creating an IAM User and Granting RAM Permissions You can use Identity and Access Management (IAM) to implement fine-grained permissions control for your RAM resources. With IAM, you can: Create IAM users for personnel based on your enterprise's organizational structure.
Using IAM to Grant Access to IMS Creating a User and Granting Permissions Creating a Custom Policy
Using IAM to Grant Access to ECS Creating a User and Granting ECS Permissions ECS Custom Policies
Using IAM to Grant Access to HSS Creating a User and Granting Permissions HSS Custom Policies HSS Actions
Accessing OneAccess as an Authorized IAM User Authorized IAM users can access the OneAccess administrator portal through Huawei Cloud. Log in to Huawei Cloud as an IAM user. For details, see Logging In as an IAM User.
Creating an IAM User and Granting VPC Permissions This section describes how to use IAM to implement fine-grained permissions control for your VPC resources. With IAM, you can: Create IAM users for personnel based on your enterprise's organizational structure.
{Endpoint} indicates the endpoint of IAM, which can be obtained from Endpoints. For details about API authentication, see Authentication.
Common Errors Related to IAM Authentication Information You may encounter the following errors related to IAM authentication information: Incorrect IAM authentication information: verify aksk signature fail Incorrect IAM authentication information: AK access failed to reach the limit