检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
This capability depends on the new IAM, requiring you to adopt the IAM 5.0 permission model. Exercise caution when selecting this capability.
When using a token for authentication, cache it to prevent frequently calling the IAM API used to obtain a user token. Ensure that the token is valid when you use it. Using a token that will soon expire may cause API calling failures.
For the API for creating an IAM user as an administrator, the following message body is returned. The following is part of the response body: { "user": { "id": "c131886aec...
Figure 1 Node labeling error Possible Causes You are using the IAM 5.0 permission model, which offers enhanced permission control. You need to manually authorize the IAM 5.0 agency on Cloud Container Engine (CCE).
How Do I Use the New IAM Edition to Isolate Permissions by Enterprise Project? Does CodeArts PerfTest Support Windows Server 2016 Standard (64-bit)?
For security purposes, create Identity and Access Management (IAM) users and grant them permissions for routine management. User An IAM user is created using an account to use cloud services. Each IAM user has its own identity credentials (password and access keys).
Replace the italic fields with the actual values. accountid: ID of the account to which the IAM user belongs. username: username of the IAM user to be created. email: email address of the IAM user. ********: login password of the IAM user.
Create a user group on the IAM console and assign the CodeArts PerfTest Administrator permissions to the group. Create an IAM user. Create a user on the IAM console and add the user to the group created in 1. Log in and verify permissions.
For details about the relationship between IAM identities and operators and the operator username format, see Relationship Between IAM Identities and Operators.
Fine-grained permissions: IAM fine-grained authorization is required for operations such as querying tenant projects, setting project creators, and managing tenant project members. Parent topic: Security
To obtain an account ID, perform the following operations: Log in to the Identity and Access Management (IAM) console. Move the cursor to the username in the upper right corner and choose My Credentials from the drop-down list. On the API Credentials page, view Account ID.
Permissions You can use IAM for fine-grained permissions management of your CodeArts PerfTest. If your Huawei Cloud account does not need individual IAM users, you may skip this section. New IAM users do not have any permissions assigned by default.
IAM helps you secure access to your cloud resources. With IAM, you can create IAM users and grant them permission to access only specific resources.
The API used to obtain a project ID is GET https://{Endpoint}/v3/projects/, where {Endpoint} indicates the IAM endpoint. You can obtain the IAM endpoint from Regions and Endpointsthe administrator. For details about API authentication, see Authentication.
The descriptions below are about granting required permissions to IAM users under an account. Granting Required Permissions to IAM Users Log in to the IAM console as the account administrator and assign the following permissions to IAM users.