检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Parent topic: IAM User Management
ECSs Have IAM Agencies Attached Rule Details Table 1 Rule details Parameter Description Rule Name ecs-instance-agency-attach-iam-agency Identifier ecs-instance-agency-attach-iam-agency Description If an ECS does not have any IAM agencies attached, this ECS is noncompliant.
Granting IAM User Groups the Specified Permissions for Certain OBS Resources Scenario This topic describes how to grant specified operation permissions for certain OBS resources (can be a bucket or an object) to multiple IAM users or user groups.
Granting IAM User Groups the Specified Permissions for All OBS Resources Scenario This topic describes how to grant multiple IAM users or user groups specified permissions for all OBS resources.
Parent topic: IAM User Management
Querying the User Groups Which an IAM User Belongs to Function This API can be used by the administrator to query the groups of a specified IAM user or used by an IAM user to query their own groups.
ALM-45743 Failed to Call the IAM API This section applies only to MRS 3.1.5 or later. Alarm Description This alarm is generated when Guardian fails to call the IAM API to obtain a temporary AK/SK.
With IAM, you can: Create IAM users for personnel based on your enterprise's organizational structure. Each IAM user has their own identity credentials for accessing DMS for RabbitMQ resources.
Why Cannot IAM Users Configure Image Synchronization? Currently, only accounts and IAM users with administrator permissions can configure image synchronization. IAM users without administrator permissions will be able to configure image synchronization in later versions.
What Are the Differences Between IAM Projects and Enterprise Projects? IAM Projects IAM projects can group and physically isolate resources. Resources cannot be transferred between IAM projects, but can only be deleted and then created or purchased again.
What Are the Differences Between IAM Projects and Enterprise Projects? IAM Projects An IAM project can contain resources of only one region. You cannot transfer resources between IAM projects. Enterprise Projects An enterprise project can contain resources of different regions.
DAS allows you to control whether IAM users can add, delete, and modify data connections and log in to an instance. For details, see Custom Permissions Policies. After a user logs in to the database, IAM cannot interfere with the user to run SQL commands.
Viewing the Notebook Instances of All IAM Users Under One Tenant Account Any IAM user granted with the listAllNotebooks and listUsers permissions can click View all on the notebook page to view the instances of all IAM users in the current IAM project.
Can I Enable IoTDA for IAM Users or Sub-Projects? 1. You can enable IoTDA as an Identity and Access Management (IAM) user. However, the enabled IoTDA service belongs to the IAM master account. That is, the master account is the payment entity. 2.
Granting IAM User Groups Basic Permissions for All OBS Resources Scenario This topic describes how to use the OBS-related system roles and policies preset in IAM to grant basic operation permissions for all OBS resources to multiple IAM users or user groups.
In IAM user SSO, the IdP user has a IAM user mapped by external identity ID on the IAM console. 3. Permissions assignment in IAM: In virtual user SSO, the permissions of the IdP user are defined by the identity conversion rule.
How Can I Grant Cloud Connect Permissions to IAM Users? You can use IAM to implement fine-grained permissions control for your Cloud Connect resources. With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure.
Querying the Enterprise Projects Directly Associated with an IAM User Function This API is used to query the enterprise projects directly associated with an IAM user. The API can be called using both the global endpoint and region-specific endpoints.
With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing DataArts Studio resources.
Ingesting Logs to LTS Across IAM Accounts If you choose Cross-Account Ingestion - Log Stream Mapping as the log ingestion type, you can create an agency to map the log stream of the delegator account to that of the delegated account.