检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
For details about permissions, roles, and policies, see IAM User Guide. IAM provides administrator permissions and read-only permissions for each cloud service. You can assign the permissions to user groups.
Getting Started Overview Creating a User Group Creating an IAM User Adding an IAM User to a User Group Creating an Enterprise Project Authorizing a User Group to Manage an Enterprise Project Adding Resources to Enterprise Projects Verifying Permissions Parent topic: Project Management
Common Issues What Are the Differences Between IAM Users and Enterprise Member Accounts? What Should I Do If the Organization and Account Information Is Unavailable to an IAM User? What Requirements Must an Account Meet to Function as a Master Account?
The following shows part of the response body for the API used to create an IAM user. { "user": { "id": "c131886aec...
Enterprise projects are different from IAM projects. For more information, see What Are the Differences Between IAM Projects and Enterprise Projects? Parent topic: Managing Resources in an Enterprise Project
For security purposes, create Identity and Access Management (IAM) users and grant them permissions for routine management. User An IAM user is created by an account in IAM to use cloud services. Each IAM user has its own identity credentials (password and access keys).
The IAM Users page is displayed. Select a user and authorize the user to manage the enterprise project. For details, see Assigning Permissions to an IAM User. Figure 2 User Authorization Other Operations Users inherit permissions from their user groups.
user name "password": "********", // IAM user password "domain": { "name": "domainname" // Name of an IAM account } } } }, "scope": { "domain
Appendix Status Code Error Codes Obtaining a Project ID Obtaining the Domain-Level Token IAM Error Codes
The IAM User Groups page is displayed. Select a user group and authorize the user group to manage the enterprise project. For details, see Creating a User Group and Assigning Permissions. Figure 2 Authorize User Group Parent topic: Getting Started
On the IAM Authorization page that is displayed, click By Enterprise Project to view authorization records of each enterprise project. Click the user or user group name in the Principal column to view details about a user or user group.
The IAM User Groups page is displayed. Select a user group and authorize the user group to manage the enterprise project. For details, see Creating a User Group and Assigning Permissions. Figure 2 Authorize User Group Parent topic: Managing User Groups in an Enterprise Project
Figure 2 Authorize User Group On the IAM User Groups page that is displayed, click the user group name to go to the user group details page. On the Permissions tab, click By Enterprise Project, select the target enterprise project, and click Delete in the Operation column.
Enterprise Project Management API Permissions Table 1 Supported Actions Permission API Action IAM Project (Project) Enterprise Project (Enterprise Project) Querying enterprise projects GET /v1.0/enterprise-projects eps:enterpriseProjects:list √ √ Creating an enterprise project POST
Figure 2 User Authorization On the IAM Users page that is displayed, click the user name to go to the user details page. On the Permissions tab, click By Enterprise Project, select the target enterprise project, and click Delete in the Operation column.
Only enterprise master accounts or IAM users with administrator permissions can view resource transfer events. A project name can contain up to 255 characters and can only be composed of letters, digits, underscores (_), and hyphens (-).
All regions Viewing Resources in an Enterprise Project Adding Resources to an Enterprise Project Removing Resources from an Enterprise Project Viewing Migration Events Managing Resource Tags Personnel Management When you grant users permissions using IAM, you can specify an enterprise
Enterprise Personnel Management You can use IAM to create user groups, grant permissions to the user groups, and add users to the user groups to allow the users to manage enterprise projects and their resources.
Authorization Information Each account has all the permissions required to call all APIs, but IAM users must be assigned the required permissions.
Authorization Information Each account has all the permissions required to call all APIs, but IAM users must be assigned the required permissions.