检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Procedure Log in to the IAM console. On the IAM console, choose Agencies from the left navigation pane, and click Create Agency in the upper right corner. Figure 1 Creating an agency Enter an agency name.
For details, see What Should I Do If I Forgot the Password of an IAM User or Account? If the account is locked for no reason, change the password. For details, see How Do I Change the Password of an IAM User or Account? Parent topic: Security Settings
For details about how to obtain the account ID, see Obtaining Account, IAM User, Group, Project, Region, and Agency Information.
For details about how to obtain the project ID, see Obtaining Account, IAM User, Group, Project, Region, and Agency Information.
CTS Auditing Key IAM Operations Supported by CTS Viewing CTS Traces in the Trace List
For IAM endpoints, see Regions and Endpoints. Debugging You can debug this API in API Explorer.
Getting Started Periodic Rotation of Access Keys Federated Authentication for Enterprise Accounts Security Auditing on Permissions of IAM Users
Appendix Status Codes Error Codes Obtaining Account, IAM User, Group, Project, Region, and Agency Information
For IAM endpoints, see Regions and Endpoints. Debugging You can debug this API in API Explorer.
For IAM endpoints, see Regions and Endpoints. Debugging You can debug this API in API Explorer.
Account Management Querying Account Information Accessible to an IAM User Querying the Password Strength Policy Querying the Password Strength Policy Querying the Quotas of an Account Parent topic: API
Custom Policies Creating a Custom Policy Modifying or Deleting a Custom Policy Custom Policy Examples Cloud Services that Support Resource-Level Authorization Using IAM Parent topic: Permissions Management
Delegating Another Account for Resource Management Process for Account Delegation Creating an Agency and Assigning Permissions Assigning Agency Permissions to an IAM User Managing Delegated Resources Parent topic: Agency Management
(See an example in 6.) g:UserId String IAM user ID. (See an example in 7.) g:UserName String IAM username. (See an example in 8.)
For IAM endpoints, see Regions and Endpoints. Debugging You can debug this API in API Explorer.
The user groups created in IAM will be mapped to federated users so that the federated users can obtain the permissions of the user groups to use Huawei Cloud resources.
Project Management Querying Project Information Listing Projects Listing Projects Accessible to an IAM User Creating a Project Modifying Project Information Querying Project Information Changing Project Status Querying Project Information and Status Querying the Quotas of a Project
Figure 1 How identity federation works The process of identity federation is as follows: A user opens the login link obtained from the IAM console in the browser. The browser sends an SSO request to Huawei Cloud.
For details about how to obtain the project ID, see Obtaining Account, IAM User, Group, Project, Region, and Agency Information.
For IAM endpoints, see Regions and Endpoints. Debugging You can debug this API in API Explorer. URI GET /v3/domains/{domain_id}/config/security_compliance/{option} Table 1 URI parameters Parameter Mandatory Type Description domain_id Yes String Account ID.