安全云脑 SECMASTER-SecMaster权限管理:SecMaster ReadOnlyAccess策略内容

时间:2023-12-21 14:36:15

SecMaster ReadOnlyAccess策略内容

{
    "Version": "1.1",
    "Statement": [
        {
            "Action": [
                "secmaster:*:get*",
                "secmaster:*:list*"
            ],
            "Effect": "Allow"
        },
        {
            "Action": [
                "vpc:vpcs:list",
                "vpc:subnets:get",
                "vpcep:endpoints:get",
                "vpcep:endpoints:list"
            ],
            "Effect": "Allow"
        },
        {
            "Action": [
                "obs:bucket:ListBucketVersions"
            ],
            "Effect": "Allow"
        },
        {
            "Action": [
                "iam:permissions:checkRoleForAgencyOnDomain",
                "iam:permissions:checkRoleForAgencyOnProject",
                "iam:permissions:checkRoleForAgency",
                "iam:policies:get*",
                "iam:policies:list*",
                "iam:agencies:get*",
                "iam:agencies:list*",
                "iam:roles:get*",
                "iam:roles:list*",
                "iam:users:listUsers"
            ],
            "Effect": "Allow"
        },
        {
            "Action": [
                "organizations:organizations:get",
                "organizations:delegatedAdministrators:list",
                "organizations:roots:list",
                "organizations:ous:list",
                "organizations:accounts:list"
            ],
            "Effect": "Allow"
        },
        {
            "Action": [
                "ecs:cloudServers:list"
            ],
            "Effect": "Allow"
        },
        {
            "Action": [
                "lts:log*:list*"
            ],
            "Effect": "Allow"
        }
    ]
}
support.huaweicloud.com/productdesc-secmaster/secmaster_01_0005.html