检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Removing an IAM User from a User Group Function This API can be used by the administrator to remove an IAM user from a specified user group. The API can be called using both the global endpoint and region-specific endpoints. For IAM endpoints, see Regions and Endpoints.
IAM provides the following two authorization mechanisms: Note that DataArts Studio supports only the IAM role-based authorization and does not support the IAM policy-based authorization.
Creating an IAM User and Granting SFS Turbo Permissions This section describes how to use IAM to implement fine-grained permissions control for your SFS Turbo resources. With IAM, you can: Create IAM users for employees based on your enterprise's organizational structure.
Click IAM User on the login page. Incorrect tenant name/Huawei Cloud account name or IAM username. Enter the correct tenant name/Huawei Cloud account name and IAM username.
Log In to a CBH Instance Console as an IAM User Function This API is used to log in to a CBH instance console as an IAM user.
ALM-45743 Failed to Call the IAM API This section applies only to MRS 3.1.5 or later. Alarm Description This alarm is generated when Guardian fails to call the IAM API to obtain a temporary AK/SK.
If an enabled IAM user has been added to at least one user group, and no user groups are specified, this IAM user is compliant. If an enabled IAM user has not been added to any user groups, and no user groups are specified, this IAM user is noncompliant.
For more details, see Authorizing IAM Users to Manage Resources of an Account. Rule Logic If an IAM agency does not contain all the specified policies and roles, this agency is noncompliant.
Step 4: Create a Non-administrator IAM User This topic walks you through how to create a non-administrator IAM user. IAM authentication is used for tenant log collection.
For details, see Authorizing dlg_agency. dws:dbAuthority:syncIamUse iam:users:listUsers iam:groups:listGroups iam:users:listUsersForGroup GaussDB(DWS) does not support user groups.
Parent topic: IAM User Management
Granting IAM User Groups the Specified Permissions for Certain OBS Resources Scenario This topic describes how to grant specified operation permissions for certain OBS resources (can be a bucket or an object) to multiple IAM users or user groups.
Granting IAM User Groups the Specified Permissions for All OBS Resources Scenario This topic describes how to grant multiple IAM users or user groups specified permissions for all OBS resources.
ECSs Have IAM Agencies Attached Rule Details Table 1 Rule details Parameter Description Rule Name ecs-instance-agency-attach-iam-agency Identifier ecs-instance-agency-attach-iam-agency Description If an ECS does not have any IAM agencies attached, this ECS is noncompliant.
Parent topic: IAM User Management
Querying the User Groups Which an IAM User Belongs to Function This API can be used by the administrator to query the groups of a specified IAM user or used by an IAM user to query their own groups.
With IAM, you can: Create IAM users for personnel based on your enterprise's organizational structure. Each IAM user has their own identity credentials for accessing DMS for RabbitMQ resources.
Why Cannot IAM Users Configure Image Synchronization? Currently, only accounts and IAM users with administrator permissions can configure image synchronization. IAM users without administrator permissions will be able to configure image synchronization in later versions.
What Are the Differences Between IAM Projects and Enterprise Projects? IAM Projects IAM projects can group and physically isolate resources. Resources cannot be transferred between IAM projects, but can only be deleted and then created or purchased again.
What Are the Differences Between IAM Projects and Enterprise Projects? IAM Projects An IAM project can contain resources of only one region. You cannot transfer resources between IAM projects. Enterprise Projects An enterprise project can contain resources of different regions.