检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Using IAM to Grant Access to FlexusRDS Creating a User and Granting Permissions FlexusRDS Custom Policies Parent topic: Working with FlexusRDS for MySQL
For fine-grained permissions management, create an Identity and Access Management (IAM) user and user group on the IAM console and grant the user specific operation permissions. For details, see Creating a User and Granting Permissions.
Working with FlexusRDS for MySQL Using IAM to Grant Access to FlexusRDS Buying a FlexusRDS for MySQL Instance Connecting to a FlexusRDS for MySQL Instance Suggestions on Using FlexusRDS for MySQL Data Migration Instance Management Backups and Restorations Parameters Monitoring Logs
For fine-grained permissions management, create an Identity and Access Management (IAM) user and user group on the IAM console and grant the user specific operation permissions. For details, see Creating a User and Granting Permissions.
For details, see Granting IAM Users Under an Account the Access to a Bucket and the Resources in It. Download the backup file. On the OBS Browser+ page, click the bucket that you added.
Example Custom Policies Example: Allowing users to create manual backups { "Version": "1.1", "Statement": [{ "Effect": "Allow", "Action": ["rds:backup:create"] }] } Parent topic: Using IAM to Grant Access to FlexusRDS
For details, see Granting IAM Users Under an Account the Access to a Bucket and the Resources in It. Download the backup file. On the OBS Browser+ page, click the bucket that you added.
{Endpoint} is the IAM endpoint and can be obtained from Regions and Endpoints. For details about API authentication, see Authentication. The following is an example response.
For security purposes, create IAM users and grant them permissions for routine management. IAM User An IAM user is created using an account to use cloud services. Each IAM user has its own identity credentials (password and access keys).
When using a token for authentication, cache it to prevent frequently calling the IAM API used to obtain a user token. A token specifies temporary permissions in a computer system.
For example, to obtain an IAM token in the CN-Hong Kong region, obtain the endpoint of IAM (iam.ap-southeast-1.myhuaweicloud.com) for this region and the resource-path (/v3/auth/tokens) in the URI of the API used to obtain a user token.
Parent topic: Using IAM to Grant Access to FlexusRDS
With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing FlexusRDS resources. Grant only the permissions required for users to perform a specific task.
users: Creating a custom policy: iam:agencies:listAgencies iam:agencies:createAgency iam:permissions:listRolesForAgencyOnProject iam:permissions:grantRoleToGroupOnProject iam:roles:listRoles cors:productInstance:createDefault Adding system role Security Administrator: Select a user