检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
The token obtained through IAM is valid for only 24 hours. When using a token for authentication, cache it to avoid frequent calling. Calling the APIs related to access policies is an asynchronous process. The configuration takes effect after a period of time.
The client authentication mode can be certificate authentication, password authentication (local), IAM authentication, or federated authentication.
Value range: CERT: certificate authentication LOCAL_PASSWORD: password authentication (local) IAM: IAM authentication FEDERATED: federated authentication The default value is LOCAL_PASSWORD. server_certificate server_certificate object No Specifies a server certificate.
Value range: CERT: certificate authentication LOCAL_PASSWORD: password authentication (local) IAM: IAM authentication FEDERATED: federated authentication tunnel_protocol String Specifies a tunnel protocol.
If the permissions granted to an IAM user contain both "Allow" and "Deny", the "Deny" permissions take precedence over the "Allow" permissions.
VPN Connection Permission API Action Dependencies IAM Project Enterprise Project Creating a VPN connection POST /v5/{project_id}/vpn-connection vpn:vpnConnections:create ces:metricData:list ces:currentRegionSupportedMetrics:list vpc:vpcs:list vpc:vpcs:get vpc:subnets:get vpc:subnets
User Management Permission API Action Dependencies IAM Project Enterprise Project Creating a VPN user POST /v5/{project_id}/p2c-vpn-gateways/vpn-servers/{vpn_server_id}/users vpn:p2cVpnUser:create - √ x Creating VPN users in batches POST /v5/{project_id}/p2c-vpn-gateways/vpn-servers
VPN Connection Permission API Action Dependencies IAM Project Enterprise Project Creating a VPN connection POST /v5/{project_id}/vpn-connection vpn:vpnConnections:create ces:metricData:list ces:currentRegionSupportedMetrics:list vpc:vpcs:list vpc:vpcs:get vpc:subnets:get vpc:subnets
User Management Permission API Action Dependencies IAM Project Enterprise Project Creating a VPN user POST /v5/{project_id}/p2c-vpn-gateways/vpn-servers/{vpn_server_id}/users vpn:p2cVpnUser:create - √ x Creating VPN users in batches POST /v5/{project_id}/p2c-vpn-gateways/vpn-servers
The token obtained through IAM is valid for only 24 hours. When using a token for authentication, cache it to avoid frequent calling. Calling the APIs related to users and user groups is an asynchronous process. The configuration takes effect after a period of time.
The token obtained through IAM is valid for only 24 hours. When using a token for authentication, cache it to avoid frequent calling.
VPN Gateway Permission API Action Dependencies IAM Project Enterprise Project Creating a VPN gateway POST /v5/{project_id}/vpn-gateways vpn:vpnGateways:create er:instances:list er:instances:get vpc:vpcs:list vpc:vpcs:get vpc:subnets:get vpc:subnets:list vpc:subnets:create vpc:subnets
VPN Gateway Permission API Action Dependencies IAM Project Enterprise Project Creating a VPN gateway POST /v5/{project_id}/vpn-gateways vpn:vpnGateways:create er:instances:list er:instances:get vpc:vpcs:list vpc:vpcs:get vpc:subnets:get vpc:subnets:list vpc:subnets:create vpc:subnets
If no identity provider is available, you can click Create Identity Provider in the drop-down list to create one on the IAM console. For details about how to create an identity provider, see Creating an IdP Entity. Set this parameter based on the actual condition.
The token obtained through IAM is valid for only 24 hours. When using a token for authentication, cache it to avoid frequent calling.
For details about how to obtain the domain ID, see Viewing or Modifying IAM User Information. Set this parameter based on the site requirements. Access VPC This parameter is available only when Associate With is set to Enterprise Router.