检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Authorization Information Each account has all the permissions required to call all APIs, but IAM users must be assigned the required permissions.
Encryption Key Management Permission API Action Dependent Permission IAM Project (Project) Enterprise Project (Enterprise Project) Creating a CMK POST /v1.0/{project_id}/kms/create-key kms:cmk:create - √ √ Enabling a CMK POST /v1.0/{project_id}/kms/enable-key kms:cmk:enable - √ √
For details, see Obtaining Account, IAM User, Group, Project, Region, and Agency Information. CSMS_ENDPOINT: endpoint for accessing CSMS. There will be security risks if the AK/SK used for authentication is directly written into code.
You can host encryption and decryption keys in KMS and create an agency in IAM for FunctionGraph to access KMS. Asset Identification and Management Volume Backup Service (VBS) EVS backup encryption feature relies on KMS.
Authorization Information Each account has all the permissions required to call all APIs, but IAM users must be assigned the required permissions.
For details, see Obtaining Account, IAM User, Group, Project, Region, and Agency Information. KMS_ENDPOINT: endpoint for accessing KMS. For details, see Endpoints. There will be security risks if the AK/SK used for authentication is directly written into code.