检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Figure 2 Configuring account details Configure IAM Identity Center details, including the email address and username. After an account is created, an IAM Identity Center user is automatically created in RGC.
Figure 2 Configuring account details Configure IAM Identity Center details, including the email address and username. After an account is created, an IAM Identity Center user is automatically created in RGC.
Enforcing the least privilege High identity:::protectionPolicy RGC-GR_CONFIG_IAM_ROLE_HAS_ALL_PERMISSIONS This policy checks whether an IAM custom policy grants the allow *:* permission. If yes, the IAM policy is considered non-compliant.
Resources in an account can only be accessed by the IAM users or IAM agencies in the account. An account in RGC refers to a Huawei Cloud account. Management Account A management account is the account you used to enable the Organizations service.
Enter the IAM Identity Center email address. The email address of the management account must not be used for other IAM Identity Center users. It is used for creating the RGC administrator in IAM Identity Center. The administrator has the Admin permission.
Log in to Huawei Cloud using the account you want to enroll, and navigate to the IAM console. In the navigation pane, choose Agencies and click Create Agency in the upper right corner. Figure 1 Creating an agency Set the agency name to RGCServiceExecutionAgency.