检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Creating IAM Custom Policies for IAM Identity Center You can create custom policies to supplement the system-defined policies of IAM Identity Center. To create a custom policy, choose either visual editor or JSON.
Service Overview What Is IAM Identity Center? Application Scenarios Notes and Constraints Permissions Concepts 04 APIs Use diverse APIs provided by IAM Identity Center to manage instances, permission sets, account assignments, and users.
IAM Identity Center Resetting If you no longer need to use IAM Identity Center, intend to enable IAM Identity Center in a different region, or intend to create a new configuration from scratch, you can delete all data configured in IAM Identity Center.
Creating an IAM User and Granting OBS Permissions You can use IAM for fine-grained access control over your OBS resources. With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure.
If your Huawei Cloud account does not need individual IAM users for permission management, you may skip this section. IAM is a free service. You only pay for the resources in your account. For more information about IAM, see What Is IAM?.
IAM Users Creating an IAM User Assigning Permissions to an IAM User Logging In as an IAM User Viewing or Modifying IAM User Information Deleting IAM Users Changing the Password of an IAM User Managing Access Keys for an IAM User
IAM Alarms Attacker Access from an attacker's IP address similar to historical intelligence is detected. Severity: medium Data source: IAM logs A malicious IP address similar to historical intelligence has been found accessing the IAM account.
IAM This section describes the IAM permission configurations for all ModelArts functions.
What Is IAM Identity Center? Introduction IAM Identity Center helps you centrally manage your workforce identities and their access to multiple Huawei Cloud accounts.
IAM Synchronization Obtaining Synchronized IAM Users and User Groups Synchronizing an IAM User and User Group Cancelling Synchronization of Specified Users and User Groups Parent topic: API V2
Permissions IAM permissions control IAM users under an account to access: All cloud resources.
IAM Error Codes If an error code starting with APIGW is returned after you call an API, rectify the fault by referring to the instructions provided in Error Codes. For details about IAM error codes, see IAM Error Codes. Parent Topic: Appendix
EdgeSec.00010001 Invalid IAM Service Project (Failed to get IAM projects) Root Cause This error was reported when an IAM project is abnormal. Troubleshooting Methods Check the IAM projects. Solution Log in to the management console.
Procedure Log in to the IAM console. On the IAM console, choose Agencies from the navigation pane on the left, and click Create Agency in the upper right corner. Figure 1 Creating an agency Enter an agency name. Set Cloud Service to RFS.
IAM Projects and Enterprise Projects Creating an IAM Project and Assigning Permissions Creating an IAM Project Go to the management console, hover over the username in the upper right corner, and choose Identity and Access Management from the drop-down list.
IAM Projects and Enterprise Projects IAM Projects Projects in IAM group and isolate OpenStack resources (compute, storage, and network resources). Resources in your account must be mounted under projects. Each project can be a department or a project team.
IAM User Permissions With IAM, you can grant fine-grained permissions to IAM users under your account by configuring permission policies. The following table lists the permissions that are required for IAM users to use different MgC functions.
Logging In as an IAM Identity Center User and Accessing Resources After associating member accounts of an organization with an IAM Identity Center user and permission sets, you can use the IAM Identity Center username and password to log in to the console through the user portal URL
All IAM APIs support HTTPS to encrypt data during transmission. Parent topic: Data Protection
Creating an IAM Agency Introduction If you choose to dump data from DIS to OBS, MRS, or DLI, create an IAM agency that grants DIS permissions to access OBS, MRS, or DLI. Creating an IAM Agency Log in to the management console. Click Service List.