检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
IAM User Management Why Does IAM User Login Fail? How Do I Control IAM User Access to the Console?
Assigning Permissions to IAM Users Subscribing to an OCR Service as an IAM User Log in to the IAM console using a master account. Choose User Groups in the left navigation pane.
Managing IAM Users Listing IAM Users Creating an IAM User Querying the Last Login Time of an IAM User Querying IAM User Details Modifying an IAM User Deleting an IAM User Parent topic: IAM
IAM Resource Tags Managing IAM User Tags Managing Trust Agency Tags Passing Session Tags Parent topic: Identity
Granting an IAM User the Permissions to Create and List Buckets Scenario This topic describes how to grant an IAM user the permissions to create and list buckets. An IAM user with this permission can create and list buckets.
Solution To assign permissions to an IAM user for accessing and performing operations on the IAM console, create a user group, assign IAM permissions to the group, and add the IAM user to the group.
Common Errors Related to IAM Authentication Information When an API using IAM authentication is called, the following IAM authentication error may be encountered: Incorrect IAM authentication information: verify aksk signature fail Incorrect IAM authentication information: AK access
Common Errors Related to IAM Authentication Information When an API using IAM authentication is called, the following IAM authentication error may be encountered: Incorrect IAM authentication information: verify aksk signature fail Incorrect IAM authentication information: AK access
Obtaining an IAM Project ID Obtaining an IAM Project ID by Calling an API You can obtain a project ID by calling the API used to query project information based on the specified criteria.
Creating an IAM User and Granting MRS Permissions Use IAM to implement fine-grained permission control over your MRS.
Granting an IAM User the Read Permissions on Specific Objects Scenario This topic describes how to grant an IAM user the read permissions on an object or a set of objects in an OBS bucket.
The API for obtaining an IAM project ID is GET https://{Endpoint}/v3/projects, where {Endpoint} indicates the IAM endpoint. You can obtain the IAM endpoint from Regions and Endpoints. For details about API authentication, see Authentication.
Parent topic: IAM Synchronization
Table 5 users Parameter Type Description name String IAM username. links Object IAM user resource link information. domain_id String ID of the account used to create the IAM user. enabled Boolean Enabling status of the IAM user. true (default value) indicates that the user is enabled
Assigning Permissions to an IAM User IAM users created without being added to any groups do not have any permissions. The administrator can assign permissions to these IAM users on the IAM console. The IAM users can then use cloud resources as specified by their permissions.
Calling APIs Through IAM Authentication Token Authentication AK/SK Authentication
Create a user group on the IAM console and grant the DLI ReadOnlyAccess permission to it. 2 Create a user and add them to the user group. Create a user on the IAM console and add them to the created user group. 3 Log in as the IAM user and verify permissions.
startIdentityCenter Grants permission to enable IAM Identity Center. write - - IdentityCenter:instance:deleteIdentityCenter Grants permission to disable IAM Identity Center. write - - IdentityCenter:instance:list Grants permission to query the IAM Identity Center instance list. list
For details about the condition keys defined by IAM Access Analyzer, see Conditions. The following table lists the actions that you can define in SCP statements for IAM Access Analyzer.
For details about the condition keys defined by IAM Identity Broker, see Conditions. The following table lists the actions that you can define in policy statements for IAM Identity Broker.