检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
If you do not, delete them. Rule Logic If an IAM policy has been attached to an IAM user, user group, or agency, this policy is compliant. If an IAM policy has not been attached to any IAM users, user groups, or agencies, this policy is noncompliant.
If you do not, delete them. Rule Logic If an IAM role has been attached to an IAM user, user group, or agency, this role is compliant. If an IAM role has not been attached to any IAM users, user groups, or agencies, this role is noncompliant.
Solution You can delete or disable the additional access keys for noncompliant IAM users. For more details, see Managing Access Keys for an IAM User. Rule Logic If an IAM user is in the disabled state, this user is compliant.
Status Codes Normal Returned Value Description 200 OK The results of GET and PUT operations are returned as expected. 201 Created The results of the POST operation are returned as expected. 202 Accepted The request has been accepted for processing. 204 No Content The results of the DELETE
Solution You can delete non-root users from the admin user group. For more details, see Adding Users to or Removing Users from a User Group. Rule Logic If an IAM user is the root user, this user is compliant. If an IAM user is disabled, this user is compliant.
If the resource recorder is disabled, you can only view or delete organization conformance packages. For details, see Configuring the Resource Recorder. Procedure Log in to the management console as an organization administrator or a delegated administrator of Config.
If you need to modify or delete resources, go to related service consoles. Parent topic: Advanced Queries
If you create an organization conformance package using an account, you can only use the same account to delete the package. Members can only initiate resource evaluation and view evaluation results.
resource-instances/count rms:resources:listResourcesByTag - √ x Batch adding resource tags POST /v1/resource-manager/{resource_type}/{resource_id}/tags/create rms:resources:tagResource - √ x Batch deleting resource tags POST /v1/resource-manager/{resource_type}/{resource_id}/tags/delete
You can also disable or delete these users if you do not need them any longer. Rule Logic If an IAM user is disabled, this user is compliant. If an enabled IAM user has been added to at least one user group, and no user groups are specified, this IAM user is compliant.
The agency must contain required permissions for RFS to create, modify, and delete rules in a conformance package. Creating a Conformance Package You can use IAM to control user access to Config.
If you need to modify or delete resources, go to related service consoles. Setting Up An Aggregator To collect resource data from source accounts, perform the following operations: Create an aggregator. For more details, see Creating a Resource Aggregator.
If the resource recorder is disabled, you can only view, disable, and delete rules. To evaluate resources with rules, you need to enable the resource recorder.
DELETE Requests the server to delete specified resources, for example, an object. HEAD Same as GET except that the server must return only the response header. PATCH Requests the server to update partial content of a specified resource.
They cannot modify, disable, or delete an organization rule. Parent topic: Organization Rules
If you need to modify or delete resources, go to related service consoles.
If the resource recorder is disabled, you can only view, disable, and delete rules.
Before using the key element, delete single-byte character (SBC) spaces before and after the value. Minimum: 1 Maximum: 128 values Array of strings Tag values. A key can contain up to 255 Unicode characters.
If the resource recorder is disabled, you can only view, disable, and delete rules. To evaluate resources with rules, you need to enable the resource recorder.
If the resource recorder is disabled, you can only view and delete organization rules. The Organization Rules tab is inaccessible for a non-organization member. Organization rules will only be deployed to member accounts that are in the normal state.