配置审计 CONFIG-资源合规

时间:2023-11-13 10:08:24

资源合规

权限

对应API接口

授权项

依赖的授权项

IAM 项目

企业项目

列出内置策略

GET /v1/resource-manager/policyDefinitions

rms:policyDefinitions:get

-

不涉及

查询单个内置策略

GET /v1/resource-manager/policy-definitions/{policy_definition_id}

rms:policyDefinitions:get

-

不涉及

更新合规规则

PUT /v1/resource-manager/domains/{domain_id}/policy-assignments/{policy_assignment_id}

rms:policyAssignments:update

-

不涉及

启用合规规则

POST /v1/resource-manager/domains/{domain_id}/policy-assignments/{policy_assignment_id}/enable

rms:policyAssignments:update

-

不涉及

停用合规规则

POST /v1/resource-manager/domains/{domain_id}/policy-assignments/{policy_assignment_id}/disable

rms:policyAssignments:update

-

不涉及

创建合规规则

PUT /v1/resource-manager/domains/{domain_id}/policy-assignments

rms:policyAssignments:create

-

不涉及

列出合规规则

GET /v1/resource-manager/domains/{domain_id}/policy-assignments

rms:policyAssignments:get

-

不涉及

查看单个合规规则

GET /v1/resource-manager/domains/{domain_id}/policy-assignments/{policy_assignment_id}

rms:policyAssignments:get

-

不涉及

删除合规规则

DELETE /v1/resource-manager/domains/{domain_id}/policy-assignments/{policy_assignment_id}

rms:policyAssignments:delete

-

不涉及

获取规则的评估状态

GET /v1/resource-manager/domains/{domain_id}/policy-states/evaluation-state

rms:policyStates:get

-

不涉及

获取资源的合规结果

GET /v1/resource-manager/domains/{domain_id}/resources/{resource_id}/policy-states

rms:policyStates:get

-

不涉及

获取用户的合规结果

GET /v1/resource-manager/domains/{domain_id}/policy-states

rms:policyStates:get

-

不涉及

获取规则的合规结果

GET /v1/resource-manager/domains/{domain_id}/policy-assignments/{policy_assignment_id}/policy-states

rms:policyStates:get

-

不涉及

运行合规评估

POST /v1/resource-manager/domains/{domain_id}/policy-states/run-evaluation

rms:policyStates:runEvaluation

-

不涉及

更新合规评估结果

GET /v1/resource-manager/domains/{domain_id}/policy-states

rms:policyStates:update

-

不涉及

创建或更新组织合规规则

PUT /v1/resource-manager/organizations/{organization_id}/policy-assignments

rms:organizationPolicyAssignments:put

  • organizations:organizations:get
  • organizations:accounts:list
  • organizations:delegatedAdministrators:list
  • organizations:trustedServices:enable
  • organizations:trustedServices:list

不涉及

查询组织合规规则列表

GET /v1/resource-manager/organizations/{organization_id}/policy-assignments

rms:organizationPolicyAssignments:list

organizations:organizations:get

不涉及

查询指定组织合规规则

GET /v1/resource-manager/organizations/{organization_id}/policy-assignments/{organization_policy_assignment_id}

rms:organizationPolicyAssignments:get

organizations:organizations:get

不涉及

查询组织合规规则部署状态

GET /v1/resource-manager/organizations/{organization_id}/policy-assignment-statuses

rms:organizationPolicyAssignments:list

organizations:organizations:get

不涉及

查询组织内每个成员帐号合规规则部署的详细状态

GET /v1/resource-manager/organizations/{organization_id}/policy-assignment-detailed-status

rms:organizationPolicyAssignments:list

organizations:organizations:get

不涉及

删除组织合规规则

DELETE /v1/resource-manager/organizations/{organization_id}/policy-assignments/{organization_policy_assignment_id}

rms:organizationPolicyAssignments:delete

organizations:organizations:get

不涉及

support.huaweicloud.com/api-rms/rms_05_0400.html