检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
If the permissions granted to an IAM user contain both "Allow" and "Deny", the "Deny" permissions take precedence over the "Allow" permissions.
User A user is created by using an account in IAM to use cloud services. Each user has its own identity credentials (password and access keys). You can view the account ID and user ID in Obtaining a Project ID.
IAM: cloud user SAML: SAML-based federation LDAP: ID user LOCAL: local user AGENTTENANT: agency OTHER: others Enumeration values: IAM SAML LDAP LOCAL AGENTTENANT OTHER principal_name Yes String Entity name. The value can contain 1 to 49 characters.
Check configuration items. 500 00011128 Failed to create or update the IAM permission. Contact O&M personnel for assistance. 500 00011129 Failed to create or update the IAM agency.
Table 3 Request body parameters Parameter Mandatory Type Description user_names No Array of strings IAM users. groups No Array of strings User group. roles No Array of strings Role.
You can select a user group, role, IAM user, or agency as the authorization entity. To avoid authorization failure, ensure that the selected entity's name does not contain hyphens (-). If you want to grant the write permission as well, select Write Permission.
Authorization entities include IAM users, user groups, and LakeFormation roles. You can grant permissions to metadata objects such as catalogs, databases, tables, columns, functions, and OBS parallel file system paths.
Enumeration values: IAM SAML LDAP LOCAL AGENTTENANT OTHER create_time No String Table creation time. last_access_time No String Last access time. last_analyzed_time No String Last analyzed time. partition_keys No Array of Column objects Partition column information. retention No Integer