diff --git a/docs/iam/umn/ALL_META.TXT.json b/docs/iam/umn/ALL_META.TXT.json index 1c3c4857..3958b334 100644 --- a/docs/iam/umn/ALL_META.TXT.json +++ b/docs/iam/umn/ALL_META.TXT.json @@ -1,540 +1,840 @@ [ { "uri":"iam_01_0021.html", - "product_code":"", + "product_code":"iam", "code":"1", "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", + "doc_type":"usermanual", "kw":"Service Overview", "title":"Service Overview", "githuburl":"" }, { "uri":"iam_01_0026.html", - "product_code":"", + "product_code":"iam", "code":"2", "des":"Identity and Access Management (IAM) provides identity authentication, permissions management, and access control. With IAM, you can create users for individuals, systems", - "doc_type":"", + "doc_type":"usermanual", "kw":"What Is IAM?,Service Overview,User Guide", "title":"What Is IAM?", "githuburl":"" }, { "uri":"en-us_topic_0046611276.html", - "product_code":"", + "product_code":"iam", "code":"3", "des":"IAM provides the following basic functions:Refined permissions managementYou can control user access to different projects and grant different permissions to users for th", - "doc_type":"", + "doc_type":"usermanual", "kw":"IAM Features,Service Overview,User Guide", "title":"IAM Features", "githuburl":"" }, { "uri":"iam_01_0023.html", - "product_code":"", + "product_code":"iam", "code":"4", - "des":"You can manage users in your account and their security credentials. In addition, you can configure federated identity authentication so that users in other systems can a", - "doc_type":"", + "des":"You can manage users in your account and their security credentials. In addition, you can configure identity federation so that users in other systems can access the clou", + "doc_type":"usermanual", "kw":"Identity Management,Service Overview,User Guide", "title":"Identity Management", "githuburl":"" }, { "uri":"iam_01_0024.html", - "product_code":"", + "product_code":"iam", "code":"5", "des":"You can grant users permissions to access different resources.Plan user groups and grant permissions to each user group.Add a user to a specific user group so that the us", - "doc_type":"", + "doc_type":"usermanual", "kw":"Permissions Management,Service Overview,User Guide", "title":"Permissions Management", "githuburl":"" }, { "uri":"iam_01_0035.html", - "product_code":"", + "product_code":"iam", "code":"6", "des":"To prevent personal data, such as the username, password, and mobile number, from being accessed by unauthorized entities or individuals, IAM encrypts the data before sto", - "doc_type":"", + "doc_type":"usermanual", "kw":"Personal Data Protection Mechanism,Service Overview,User Guide", "title":"Personal Data Protection Mechanism", "githuburl":"" }, { "uri":"iam_01_0027.html", - "product_code":"", + "product_code":"iam", "code":"7", "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", + "doc_type":"usermanual", "kw":"Getting Started", "title":"Getting Started", "githuburl":"" }, { "uri":"iam_01_0034.html", - "product_code":"", + "product_code":"iam", "code":"8", "des":"Your account has full access to your resources. For security purposes, create a security administrator and perform routine management as the security administrator.If a u", - "doc_type":"", + "doc_type":"usermanual", "kw":"Getting Started with IAM,Getting Started,User Guide", "title":"Getting Started with IAM", "githuburl":"" }, { "uri":"iam_01_0029.html", - "product_code":"", + "product_code":"iam", "code":"9", "des":"For security purposes, create a security administrator and manage users in your account as the security administrator.Programmatic access: Users can access cloud services", - "doc_type":"", + "doc_type":"usermanual", "kw":"Username,Creating a Security Administrator,Getting Started,User Guide", "title":"Creating a Security Administrator", "githuburl":"" }, { "uri":"iam_01_0030.html", - "product_code":"", + "product_code":"iam", "code":"10", "des":"As a security administrator, you can create user groups and grant them permissions.To enable users to directly view their permissions, set a description for the user grou", - "doc_type":"", + "doc_type":"usermanual", "kw":"Creating a User Group and Assigning Permissions,Getting Started,User Guide", "title":"Creating a User Group and Assigning Permissions", "githuburl":"" }, { "uri":"iam_01_0031.html", - "product_code":"", + "product_code":"iam", "code":"11", "des":"As a security administrator, you can create a user and add the user to a user group. The user automatically inherits the permissions of the user group.For security purpos", - "doc_type":"", + "doc_type":"usermanual", "kw":"Username,Creating a User and Adding the User to a User Group,Getting Started,User Guide", "title":"Creating a User and Adding the User to a User Group", "githuburl":"" }, { "uri":"iam_01_0032.html", - "product_code":"", + "product_code":"iam", "code":"12", - "des":"You can log in to the cloud system as a user and access cloud services based on granted permissions.Verify the information displayed on the Login Verification page during", - "doc_type":"", - "kw":"Logging In as a User,Getting Started,User Guide", - "title":"Logging In as a User", + "des":"You can log in to the cloud platform as an IAM user and access cloud services based on granted permissions.If either of the following has been configured on Security Sett", + "doc_type":"usermanual", + "kw":"Logging In as an IAM User,Getting Started,User Guide", + "title":"Logging In as an IAM User", "githuburl":"" }, { "uri":"iam_01_0040.html", - "product_code":"", + "product_code":"iam", "code":"13", "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", + "doc_type":"usermanual", "kw":"User Guide", "title":"User Guide", "githuburl":"" }, { - "uri":"iam_01_0011.html", - "product_code":"", + "uri":"iam_01_06.html", + "product_code":"iam", "code":"14", "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", + "doc_type":"usermanual", + "kw":"IAM Users", + "title":"IAM Users", + "githuburl":"" + }, + { + "uri":"en-us_topic_0046611303.html", + "product_code":"iam", + "code":"15", + "des":"If you need to share resources in your account to other users, you can create users by using the console or by calling an API, and set security credentials and required p", + "doc_type":"usermanual", + "kw":"Username,Creating a User,IAM Users,User Guide", + "title":"Creating a User", + "githuburl":"" + }, + { + "uri":"en-us_topic_0079496985.html", + "product_code":"iam", + "code":"16", + "des":"IAM users created without being added to any groups do not have permissions. You can assign permissions to these IAM users on the IAM console. After authorization, the us", + "doc_type":"usermanual", + "kw":"Assigning Permissions to an IAM User,IAM Users,User Guide", + "title":"Assigning Permissions to an IAM User", + "githuburl":"" + }, + { + "uri":"iam_01_0552.html", + "product_code":"iam", + "code":"17", + "des":"You can log in to the console as an IAM user or obtain the IAM user login link from the administrator and then use the link to log in.Domain name: The name of the account", + "doc_type":"usermanual", + "kw":"Logging In as an IAM User,IAM Users,User Guide", + "title":"Logging In as an IAM User", + "githuburl":"" + }, + { + "uri":"en-us_topic_0046661675.html", + "product_code":"iam", + "code":"18", + "des":"You can modify the user information, including the status, access type, description, external identity ID, and belonged user group.If the job responsibilities of a user a", + "doc_type":"usermanual", + "kw":"Viewing and Modifying User Information,IAM Users,User Guide", + "title":"Viewing and Modifying User Information", + "githuburl":"" + }, + { + "uri":"iam_02_0004.html", + "product_code":"iam", + "code":"19", + "des":"After an IAM user is deleted, they can no longer log in and their username, password, access keys, and authorizations will be cleared and cannot be recovered.Make sure th", + "doc_type":"usermanual", + "kw":"Deleting an IAM User,IAM Users,User Guide", + "title":"Deleting an IAM User", + "githuburl":"" + }, + { + "uri":"iam_01_0653.html", + "product_code":"iam", + "code":"20", + "des":"As an administrator, you can reset the password of an IAM user if the user has forgotten the password and no email address or mobile number has been bound to the user.To ", + "doc_type":"usermanual", + "kw":"Changing the Login Password of an IAM User,IAM Users,User Guide", + "title":"Changing the Login Password of an IAM User", + "githuburl":"" + }, + { + "uri":"en-us_topic_0080335069.html", + "product_code":"iam", + "code":"21", + "des":"You can modify user permissions using either of the following methods:Change the user groups to which a user belongs on the Modify User page. Choose this method if you wa", + "doc_type":"usermanual", + "kw":"Modifying User Permissions,IAM Users,User Guide", + "title":"Modifying User Permissions", + "githuburl":"" + }, + { + "uri":"en-us_topic_0079497018.html", + "product_code":"iam", + "code":"22", + "des":"Resources in different projects or regions are isolated. You can access resources only in the projects or regions for which you have been granted permissions. If you do n", + "doc_type":"usermanual", + "kw":"Switching Projects or Regions,IAM Users,User Guide", + "title":"Switching Projects or Regions", + "githuburl":"" + }, + { + "uri":"iam_01_0655.html", + "product_code":"iam", + "code":"23", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"User Groups and Authorization", + "title":"User Groups and Authorization", + "githuburl":"" + }, + { + "uri":"en-us_topic_0046611269.html", + "product_code":"iam", + "code":"24", + "des":"You can plan user groups based on user responsibilities and grant the required permissions to the user groups. Users inherit permissions from the user groups to which the", + "doc_type":"usermanual", + "kw":"Creating a User Group and Assigning Permissions,User Groups and Authorization,User Guide", + "title":"Creating a User Group and Assigning Permissions", + "githuburl":"" + }, + { + "uri":"iam_03_0002.html", + "product_code":"iam", + "code":"25", + "des":"A user inherits permissions from the groups to which the user belongs. To change the permissions of a user, add the user to a new group or remove the user from an existin", + "doc_type":"usermanual", + "kw":"Adding Users to or Removing Users from a User Group,User Groups and Authorization,User Guide", + "title":"Adding Users to or Removing Users from a User Group", + "githuburl":"" + }, + { + "uri":"iam_01_0430.html", + "product_code":"iam", + "code":"26", + "des":"To delete a user group, do the following:To delete multiple user groups at a time, do the following:", + "doc_type":"usermanual", + "kw":"Deleting a User Group,User Groups and Authorization,User Guide", + "title":"Deleting a User Group", + "githuburl":"" + }, + { + "uri":"en-us_topic_0085605493.html", + "product_code":"iam", + "code":"27", + "des":"As a security administrator, you can view and modify the basic information, permissions, and users of a user group. You can modify users' permissions by changing the grou", + "doc_type":"usermanual", + "kw":"Viewing and Modifying User Group Information,User Groups and Authorization,User Guide", + "title":"Viewing and Modifying User Group Information", + "githuburl":"" + }, + { + "uri":"iam_03_0004.html", + "product_code":"iam", + "code":"28", + "des":"To revoke a policy or role attached to a user group, do the following:To revoke multiple policies or roles attached to a user group, do as follows:", + "doc_type":"usermanual", + "kw":"Revoking Permissions of a User Group,User Groups and Authorization,User Guide", + "title":"Revoking Permissions of a User Group", + "githuburl":"" + }, + { + "uri":"iam_01_0657.html", + "product_code":"iam", + "code":"29", + "des":"Cloud services interwork with each other. Roles of some services take effect only if they are assigned along with roles of other services.For example, the DNS Administrat", + "doc_type":"usermanual", + "kw":"Assigning Dependency Roles,User Groups and Authorization,User Guide", + "title":"Assigning Dependency Roles", + "githuburl":"" + }, + { + "uri":"iam_01_0015.html", + "product_code":"iam", + "code":"30", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Permissions", + "title":"Permissions", + "githuburl":"" + }, + { + "uri":"iam_01_019.html", + "product_code":"iam", + "code":"31", + "des":"By default, new IAM users do not have permissions assigned. You need to add a user to one or more groups, and attach permissions policies or roles to these groups. Users ", + "doc_type":"usermanual", + "kw":"Basic Concepts,Permissions,User Guide", + "title":"Basic Concepts", + "githuburl":"" + }, + { + "uri":"iam_01_0601.html", + "product_code":"iam", + "code":"32", + "des":"Roles are a type of coarse-grained authorization mechanism that defines service-level permissions based on user responsibilities. IAM provides a limited number of roles f", + "doc_type":"usermanual", + "kw":"Roles,Permissions,User Guide", + "title":"Roles", + "githuburl":"" + }, + { + "uri":"iam_01_0017.html", + "product_code":"iam", + "code":"33", + "des":"A fine-grained policy consists of the policy version (the Version field) and statement (the Statement field).Version: Distinguishes between role-based access control (RBA", + "doc_type":"usermanual", + "kw":"Policy Syntax,Permissions,User Guide", + "title":"Policy Syntax", + "githuburl":"" + }, + { + "uri":"iam_01_0016.html", + "product_code":"iam", + "code":"34", + "des":"You can create custom policies to supplement system-defined policies and implement more refined access control.Global services: Select this option if the services to whic", + "doc_type":"usermanual", + "kw":"Creating a Custom Policy,Permissions,User Guide", + "title":"Creating a Custom Policy", + "githuburl":"" + }, + { + "uri":"iam_01_0600.html", + "product_code":"iam", + "code":"35", + "des":"Use the following method to assign permissions of the FullAccess policy to a user but also forbid the user from accessing CTS. Create a custom policy for denying access t", + "doc_type":"usermanual", + "kw":"Custom Policy Use Cases,Permissions,User Guide", + "title":"Custom Policy Use Cases", + "githuburl":"" + }, + { + "uri":"en-us_topic_0046611308.html", + "product_code":"iam", + "code":"36", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Security Settings", + "title":"Security Settings", + "githuburl":"" + }, + { + "uri":"iam_07_0001.html", + "product_code":"iam", + "code":"37", + "des":"You can configure the account settings, critical operation protection, login authentication policy, password policy, and access control list (ACL) on the Security Setting", + "doc_type":"usermanual", + "kw":"Security Settings Overview,Security Settings,User Guide", + "title":"Security Settings Overview", + "githuburl":"" + }, + { + "uri":"iam_01_0703.html", + "product_code":"iam", + "code":"38", + "des":"As an account administrator, both you and your IAM users can manage basic information on this page.A mobile number or an email address can be bound only to one account or", + "doc_type":"usermanual", + "kw":"Basic Information,Security Settings,User Guide", + "title":"Basic Information", + "githuburl":"" + }, + { + "uri":"iam_07_0002.html", + "product_code":"iam", + "code":"39", + "des":"Only an administrator can configure critical operation protection, and IAM users can only view the configurations. If an IAM user needs to modify the configurations, the ", + "doc_type":"usermanual", + "kw":"Critical Operation Protection,Security Settings,User Guide", + "title":"Critical Operation Protection", + "githuburl":"" + }, + { + "uri":"iam_01_0704.html", + "product_code":"iam", + "code":"40", + "des":"The Login Authentication Policy tab of the Security Settings page provides the Session Timeout, Account Lockout, Recent Login Information, Recent Login Information, and C", + "doc_type":"usermanual", + "kw":"Login Authentication Policy,Security Settings,User Guide", + "title":"Login Authentication Policy", + "githuburl":"" + }, + { + "uri":"iam_01_0607.html", + "product_code":"iam", + "code":"41", + "des":"The Password Policy tab of the Security Settings page provides the Password Composition & Reuse, Password Expiration, and Minimum Password Age settings.Only the administr", + "doc_type":"usermanual", + "kw":"Password Policy,Security Settings,User Guide", + "title":"Password Policy", + "githuburl":"" + }, + { + "uri":"iam_07_0003.html", + "product_code":"iam", + "code":"42", + "des":"The ACL tab of the Security Settings page provides the IP Address Ranges, IPv4 CIDR Blocks, and VPC Endpoints settings for allowing user access only from specified IP add", + "doc_type":"usermanual", + "kw":"ACL,Security Settings,User Guide", + "title":"ACL", + "githuburl":"" + }, + { + "uri":"en-us_topic_0066738518.html", + "product_code":"iam", + "code":"43", + "des":"Projects are used to group and isolate OpenStack resources, including compute, storage, and network resources. A project can be a department or a project team. Resources ", + "doc_type":"usermanual", + "kw":"Projects,User Guide,User Guide", + "title":"Projects", + "githuburl":"" + }, + { + "uri":"en-us_topic_0079496986.html", + "product_code":"iam", + "code":"44", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Agencies", + "title":"Agencies", + "githuburl":"" + }, + { + "uri":"iam_01_0054.html", + "product_code":"iam", + "code":"45", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Account Delegation", + "title":"Account Delegation", + "githuburl":"" + }, + { + "uri":"iam_06_0001.html", + "product_code":"iam", + "code":"46", + "des":"The agency function enables you to delegate another account to implement O&M on your resources based on assigned permissions.You can delegate resource access only to acco", + "doc_type":"usermanual", + "kw":"Delegating Resource Access to Another Account,Account Delegation,User Guide", + "title":"Delegating Resource Access to Another Account", + "githuburl":"" + }, + { + "uri":"en-us_topic_0046613147.html", + "product_code":"iam", + "code":"47", + "des":"By creating an agency, you can share your resources with another account, or delegate an individual or team to manage your resources. You do not need to share your securi", + "doc_type":"usermanual", + "kw":"Creating an Agency (by a Delegating Party),Account Delegation,User Guide", + "title":"Creating an Agency (by a Delegating Party)", + "githuburl":"" + }, + { + "uri":"iam_01_0063.html", + "product_code":"iam", + "code":"48", + "des":"When a trust relationship is established between your account and another account, you become a delegated party. By default, only your account and the members of the admi", + "doc_type":"usermanual", + "kw":"(Optional) Assigning Permissions to an IAM User (by a Delegated Party),Account Delegation,User Guide", + "title":"(Optional) Assigning Permissions to an IAM User (by a Delegated Party)", + "githuburl":"" + }, + { + "uri":"en-us_topic_0046613148.html", + "product_code":"iam", + "code":"49", + "des":"When an account establishes a trust relationship with your account, you become a delegated party. You and all the users you have authorized can switch to the delegating a", + "doc_type":"usermanual", + "kw":"Switching Roles (by a Delegated Party),Account Delegation,User Guide", + "title":"Switching Roles (by a Delegated Party)", + "githuburl":"" + }, + { + "uri":"iam_06_0004.html", + "product_code":"iam", + "code":"50", + "des":"Services on the cloud platform interwork with each other, and some cloud services are dependent on other services. To delegate a cloud service to access other services an", + "doc_type":"usermanual", + "kw":"Cloud Service Delegation,Agencies,User Guide", + "title":"Cloud Service Delegation", + "githuburl":"" + }, + { + "uri":"iam_01_0730.html", + "product_code":"iam", + "code":"51", + "des":"To modify the permissions, validity period, and description of an agency, click Modify in the row containing the agency you want to modify.You can change the cloud servic", + "doc_type":"usermanual", + "kw":"Deleting or Modifying Agencies,Agencies,User Guide", + "title":"Deleting or Modifying Agencies", + "githuburl":"" + }, + { + "uri":"en-us_topic_0059870089.html", + "product_code":"iam", + "code":"52", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Identity Providers", + "title":"Identity Providers", + "githuburl":"" + }, + { + "uri":"en-us_topic_0079620341.html", + "product_code":"iam", + "code":"53", + "des":"The cloud platform provides identity federation based on Security Assertion Markup Language (SAML) or OpenID Connect. This function allows users in your enterprise manage", + "doc_type":"usermanual", + "kw":"identity federation,Identity federation,Introduction,Identity Providers,User Guide", + "title":"Introduction", + "githuburl":"" + }, + { + "uri":"iam_08_0251.html", + "product_code":"iam", + "code":"54", + "des":"IAM supports two SSO types: virtual user SSO and IAM user SSO. This section describes the two SSO types and their differences, helping you to choose an appropriate type f", + "doc_type":"usermanual", + "kw":"Application Scenarios of Virtual User SSO and IAM User SSO,Identity Providers,User Guide", + "title":"Application Scenarios of Virtual User SSO and IAM User SSO", + "githuburl":"" + }, + { + "uri":"iam_08_0002.html", + "product_code":"iam", + "code":"55", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Virtual User SSO via SAML", + "title":"Virtual User SSO via SAML", + "githuburl":"" + }, + { + "uri":"iam_08_0021.html", + "product_code":"iam", + "code":"56", + "des":"The cloud platform supports identity federation with Security Assertion Markup Language (SAML), which is an open standard that many identity providers (IdPs) use. During ", + "doc_type":"usermanual", + "kw":"Overview of Virtual User SSO via SAML,Virtual User SSO via SAML,User Guide", + "title":"Overview of Virtual User SSO via SAML", + "githuburl":"" + }, + { + "uri":"iam_08_0003.html", + "product_code":"iam", + "code":"57", + "des":"To establish a trust relationship between an enterprise IdP and the cloud platform, upload the metadata file of the cloud platform to the enterprise IdP, and then create ", + "doc_type":"usermanual", + "kw":"Step 1: Create an IdP Entity,Virtual User SSO via SAML,User Guide", + "title":"Step 1: Create an IdP Entity", + "githuburl":"" + }, + { + "uri":"iam_08_0252.html", + "product_code":"iam", + "code":"58", + "des":"You can configure parameters in the enterprise IdP to determine what information will be sent to the cloud platform. The cloud platform authenticates the federated identi", + "doc_type":"usermanual", + "kw":"Step 2: Configure the Enterprise IdP,Virtual User SSO via SAML,User Guide", + "title":"Step 2: Configure the Enterprise IdP", + "githuburl":"" + }, + { + "uri":"iam_08_0004.html", + "product_code":"iam", + "code":"59", + "des":"After an enterprise IdP user logs in to the cloud platform, the cloud platform authenticates the identity and assigns permissions to the user based on the identity conver", + "doc_type":"usermanual", + "kw":"Step 3: Configure Identity Conversion Rules,Virtual User SSO via SAML,User Guide", + "title":"Step 3: Configure Identity Conversion Rules", + "githuburl":"" + }, + { + "uri":"iam_08_0025.html", + "product_code":"iam", + "code":"60", + "des":"Federated users can initiate a login from the IdP or SP.Initiating a login from an IdP, for example, Microsoft Active Directory Federation Services (AD FS) or Shibboleth.", + "doc_type":"usermanual", + "kw":"Step 4: Verify the Federated Login,Virtual User SSO via SAML,User Guide", + "title":"Step 4: Verify the Federated Login", + "githuburl":"" + }, + { + "uri":"iam_08_0005.html", + "product_code":"iam", + "code":"61", + "des":"Configure a federated login entry in the enterprise IdP to enable enterprise users use the login link to access the cloud platform.An IdP entity has been created on the c", + "doc_type":"usermanual", + "kw":"(Optional) Step 5: Configure a Federated Login Entry in the Enterprise IdP,Virtual User SSO via SAML", + "title":"(Optional) Step 5: Configure a Federated Login Entry in the Enterprise IdP", + "githuburl":"" + }, + { + "uri":"iam_08_0253.html", + "product_code":"iam", + "code":"62", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"IAM User SSO via SAML", + "title":"IAM User SSO via SAML", + "githuburl":"" + }, + { + "uri":"iam_08_0254.html", + "product_code":"iam", + "code":"63", + "des":"The cloud platform supports identity federation with Security Assertion Markup Language (SAML), which is an open standard that many identity providers (IdPs) use. During ", + "doc_type":"usermanual", + "kw":"Overview of IAM User SSO via SAML,IAM User SSO via SAML,User Guide", + "title":"Overview of IAM User SSO via SAML", + "githuburl":"" + }, + { + "uri":"iam_08_0255.html", + "product_code":"iam", + "code":"64", + "des":"To establish a trust relationship between an enterprise IdP and the cloud platform, upload the metadata file of the cloud platform to the enterprise IdP, and then create ", + "doc_type":"usermanual", + "kw":"Step 1: Create an IdP Entity,IAM User SSO via SAML,User Guide", + "title":"Step 1: Create an IdP Entity", + "githuburl":"" + }, + { + "uri":"iam_08_0256.html", + "product_code":"iam", + "code":"65", + "des":"You can configure parameters in the enterprise IdP to determine what information will be sent to the cloud platform. The cloud platform authenticates the federated identi", + "doc_type":"usermanual", + "kw":"Step 2: Configure the Enterprise IdP,IAM User SSO via SAML,User Guide", + "title":"Step 2: Configure the Enterprise IdP", + "githuburl":"" + }, + { + "uri":"iam_08_0257.html", + "product_code":"iam", + "code":"66", + "des":"For the IAM user SSO type, you must configure an external identity ID for the IAM user which the federated user maps to on the cloud platform. The external identity ID mu", + "doc_type":"usermanual", + "kw":"Step 3: Configure an External Identity ID,IAM User SSO via SAML,User Guide", + "title":"Step 3: Configure an External Identity ID", + "githuburl":"" + }, + { + "uri":"iam_08_0258.html", + "product_code":"iam", + "code":"67", + "des":"Federated users can initiate a login from the IdP or SP.Initiating a login from an IdP, for example, Microsoft Active Directory Federation Services (AD FS) or Shibboleth.", + "doc_type":"usermanual", + "kw":"Step 4: Verify the Federated Login,IAM User SSO via SAML,User Guide", + "title":"Step 4: Verify the Federated Login", + "githuburl":"" + }, + { + "uri":"iam_08_0259.html", + "product_code":"iam", + "code":"68", + "des":"Configure a federated login entry in the enterprise IdP to enable enterprise users use the login link to access the cloud platform.An IdP entity has been created on the c", + "doc_type":"usermanual", + "kw":"(Optional) Step 5: Configure a Federated Login Entry in the Enterprise IdP,IAM User SSO via SAML,Use", + "title":"(Optional) Step 5: Configure a Federated Login Entry in the Enterprise IdP", + "githuburl":"" + }, + { + "uri":"iam_08_0022.html", + "product_code":"iam", + "code":"69", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", + "kw":"Virtual User SSO via OpenID Connect", + "title":"Virtual User SSO via OpenID Connect", + "githuburl":"" + }, + { + "uri":"iam_08_0010.html", + "product_code":"iam", + "code":"70", + "des":"This section describes how to configure identity federation and how identity federation works.The following describes how to configure your enterprise IdP and the cloud p", + "doc_type":"usermanual", + "kw":"Overview of Virtual User SSO via OpenID Connect,Virtual User SSO via OpenID Connect,User Guide", + "title":"Overview of Virtual User SSO via OpenID Connect", + "githuburl":"" + }, + { + "uri":"iam_08_0009.html", + "product_code":"iam", + "code":"71", + "des":"To establish a trust relationship between an enterprise IdP and the cloud platform, set the user redirect URLs and create OAuth 2.0 credentials in the enterprise IdP. On ", + "doc_type":"usermanual", + "kw":"Step 1: Create an IdP Entity,Virtual User SSO via OpenID Connect,User Guide", + "title":"Step 1: Create an IdP Entity", + "githuburl":"" + }, + { + "uri":"iam_08_0008.html", + "product_code":"iam", + "code":"72", + "des":"Federated users are named FederationUser by default in the cloud platform. These users can only log in to the cloud platform and they do not have any other permissions. Y", + "doc_type":"usermanual", + "kw":"Step 2: Configure Identity Conversion Rules,Virtual User SSO via OpenID Connect,User Guide", + "title":"Step 2: Configure Identity Conversion Rules", + "githuburl":"" + }, + { + "uri":"iam_08_0007.html", + "product_code":"iam", + "code":"73", + "des":"Configure a federated login entry in the enterprise IdP to enable enterprise users use the login link to access the cloud platform.An IdP entity has been created on the c", + "doc_type":"usermanual", + "kw":"(Optional) Step 3: Configure Login Link in the Enterprise Management System,Virtual User SSO via Ope", + "title":"(Optional) Step 3: Configure Login Link in the Enterprise Management System", + "githuburl":"" + }, + { + "uri":"en-us_topic_0079620340.html", + "product_code":"iam", + "code":"74", + "des":"An identity conversion rule is a JSON object which can be modified. The following is an example JSON object:[ \n { \n \"remote\": [ \n { \n ", + "doc_type":"usermanual", + "kw":"Syntax of Identity Conversion Rules,Identity Providers,User Guide", + "title":"Syntax of Identity Conversion Rules", + "githuburl":"" + }, + { + "uri":"iam_10_0002.html", + "product_code":"iam", + "code":"75", + "des":"MFA authentication provides an additional layer of protection on top of the username and password. If you enable MFA authentication, users need to enter the username and ", + "doc_type":"usermanual", + "kw":"MFA Authentication and Virtual MFA Device,User Guide,User Guide", + "title":"MFA Authentication and Virtual MFA Device", + "githuburl":"" + }, + { + "uri":"iam_01_0011.html", + "product_code":"iam", + "code":"76", + "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "doc_type":"usermanual", "kw":"Auditing", "title":"Auditing", "githuburl":"" }, { "uri":"iam_01_0012.html", - "product_code":"", - "code":"15", + "product_code":"iam", + "code":"77", "des":"Table 1 lists Identity and Access Management (IAM) operations that can be recorded by Cloud Trace Service (CTS).", - "doc_type":"", + "doc_type":"usermanual", "kw":"IAM Operations That Can Be Recorded by CTS,Auditing,User Guide", "title":"IAM Operations That Can Be Recorded by CTS", "githuburl":"" }, { "uri":"iam_01_0013.html", - "product_code":"", - "code":"16", + "product_code":"iam", + "code":"78", "des":"After you enable CTS, it records key operations performed on IAM. You can view the operation records of the last 7 days on the CTS console.The following filters are avail", - "doc_type":"", + "doc_type":"usermanual", "kw":"Viewing Audit Logs,Auditing,User Guide", "title":"Viewing Audit Logs", "githuburl":"" }, - { - "uri":"iam_01_06.html", - "product_code":"", - "code":"17", - "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", - "kw":"User and User Group Management", - "title":"User and User Group Management", - "githuburl":"" - }, - { - "uri":"en-us_topic_0079496985.html", - "product_code":"", - "code":"18", - "des":"As a security administrator, you can grant permissions to a user group and add users to it. The users inherit the permissions of the user group and can access the cloud s", - "doc_type":"", - "kw":"Managing Users and Permissions,User and User Group Management,User Guide", - "title":"Managing Users and Permissions", - "githuburl":"" - }, - { - "uri":"en-us_topic_0066738518.html", - "product_code":"", - "code":"19", - "des":"Projects are used to group and isolate OpenStack resources, including compute, storage, and network resources. A project can be a department or a project team. Resources ", - "doc_type":"", - "kw":"Managing Projects,User and User Group Management,User Guide", - "title":"Managing Projects", - "githuburl":"" - }, - { - "uri":"en-us_topic_0046611269.html", - "product_code":"", - "code":"20", - "des":"You can plan user groups based on user responsibilities and grant the required permissions to the user groups. Users inherit permissions from the user groups to which the", - "doc_type":"", - "kw":"Creating a User Group,User and User Group Management,User Guide", - "title":"Creating a User Group", - "githuburl":"" - }, - { - "uri":"en-us_topic_0046611303.html", - "product_code":"", - "code":"21", - "des":"If you need to share resources in your account to other users, you can create users by using the console or by calling an API, and set security credentials and required p", - "doc_type":"", - "kw":"Username,Creating a User,User and User Group Management,User Guide", - "title":"Creating a User", - "githuburl":"" - }, - { - "uri":"en-us_topic_0079497018.html", - "product_code":"", - "code":"22", - "des":"Resources in different projects or regions are isolated. You can access resources only in the projects or regions for which you have been granted permissions. If you do n", - "doc_type":"", - "kw":"Switching Projects or Regions,User and User Group Management,User Guide", - "title":"Switching Projects or Regions", - "githuburl":"" - }, - { - "uri":"en-us_topic_0046661675.html", - "product_code":"", - "code":"23", - "des":"As an administrator, you can view and modify the basic information, user groups, and logs of each user. In addition, you can change the groups to which a user belongs if ", - "doc_type":"", - "kw":"Viewing and Modifying User Information,User and User Group Management,User Guide", - "title":"Viewing and Modifying User Information", - "githuburl":"" - }, - { - "uri":"en-us_topic_0085605493.html", - "product_code":"", - "code":"24", - "des":"As a security administrator, you can view and modify the basic information, permissions, and users of a user group. You can modify users' permissions by changing the grou", - "doc_type":"", - "kw":"Viewing and Modifying User Group Information,User and User Group Management,User Guide", - "title":"Viewing and Modifying User Group Information", - "githuburl":"" - }, - { - "uri":"en-us_topic_0080335069.html", - "product_code":"", - "code":"25", - "des":"You can modify user permissions using either of the following methods:Change the user groups to which a user belongs on the Modify User page. Choose this method if you wa", - "doc_type":"", - "kw":"Modifying User Permissions,User and User Group Management,User Guide", - "title":"Modifying User Permissions", - "githuburl":"" - }, - { - "uri":"iam_01_0015.html", - "product_code":"", - "code":"26", - "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", - "kw":"Fine-Grained Policy Management", - "title":"Fine-Grained Policy Management", - "githuburl":"" - }, - { - "uri":"iam_01_019.html", - "product_code":"", - "code":"27", - "des":"A fine-grained policy is a set of permissions that define operations allowed to be performed on specific cloud services. A policy can contain multiple permission sets. Af", - "doc_type":"", - "kw":"Fine-Grained Policies,Fine-Grained Policy Management,User Guide", - "title":"Fine-Grained Policies", - "githuburl":"" - }, - { - "uri":"iam_01_0017.html", - "product_code":"", - "code":"28", - "des":"A fine-grained policy consists of the policy version (the Version field) and statement (the Statement field).Version: Distinguishes between role-based access control (RBA", - "doc_type":"", - "kw":"Policy Syntax,Fine-Grained Policy Management,User Guide", - "title":"Policy Syntax", - "githuburl":"" - }, - { - "uri":"iam_01_0016.html", - "product_code":"", - "code":"29", - "des":"You can create custom policies to supplement system-defined policies and implement more refined access control.Global services: Select this option if the services to whic", - "doc_type":"", - "kw":"Creating a Custom Policy,Fine-Grained Policy Management,User Guide", - "title":"Creating a Custom Policy", - "githuburl":"" - }, - { - "uri":"iam_01_0600.html", - "product_code":"", - "code":"30", - "des":"Use the following method to assign permissions of the FullAccess policy to a user but also forbid the user from accessing CTS. Create a custom policy for denying access t", - "doc_type":"", - "kw":"Custom Policy Use Cases,Fine-Grained Policy Management,User Guide", - "title":"Custom Policy Use Cases", - "githuburl":"" - }, - { - "uri":"en-us_topic_0046611308.html", - "product_code":"", - "code":"31", - "des":"Users with Security Administrator permissions can configure a login authentication policy, password policy, and ACL to keep your user information and system secure.In the", - "doc_type":"", - "kw":"Account Settings,User Guide,User Guide", - "title":"Account Settings", - "githuburl":"" - }, - { - "uri":"en-us_topic_0079496986.html", - "product_code":"", - "code":"32", - "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", - "kw":"Agency Management", - "title":"Agency Management", - "githuburl":"" - }, - { - "uri":"iam_01_0054.html", - "product_code":"", - "code":"33", - "des":"Agency is a trust relationship between a delegating account and a delegated account. By creating an agency, you can grant permissions to another account or cloud service ", - "doc_type":"", - "kw":"Delegating Resource Access to Another Account,Agency Management,User Guide", - "title":"Delegating Resource Access to Another Account", - "githuburl":"" - }, - { - "uri":"en-us_topic_0046613147.html", - "product_code":"", - "code":"34", - "des":"By creating an agency, you can share your resources with another account or a cloud service (such as ECS), or delegate an individual or team to manage your resources. You", - "doc_type":"", - "kw":"Creating an Agency (by a Delegating Party),Agency Management,User Guide", - "title":"Creating an Agency (by a Delegating Party)", - "githuburl":"" - }, - { - "uri":"iam_01_0063.html", - "product_code":"", - "code":"35", - "des":"When a trust relationship is established between another account and your account, you become a delegated party and you can authorize a user to manage resources for the d", - "doc_type":"", - "kw":"Assigning Permissions to a User (by a Delegated Party),Agency Management,User Guide", - "title":"Assigning Permissions to a User (by a Delegated Party)", - "githuburl":"" - }, - { - "uri":"en-us_topic_0046613148.html", - "product_code":"", - "code":"36", - "des":"When an account establishes a trust relationship between itself and your account, you become a delegated party. You and all the users you have authorized can switch to th", - "doc_type":"", - "kw":"Switching Roles (by a Delegated Party),Agency Management,User Guide", - "title":"Switching Roles (by a Delegated Party)", - "githuburl":"" - }, - { - "uri":"en-us_topic_0059870089.html", - "product_code":"", - "code":"37", - "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", - "kw":"Federated Identity Authentication", - "title":"Federated Identity Authentication", - "githuburl":"" - }, - { - "uri":"en-us_topic_0079620341.html", - "product_code":"", - "code":"38", - "des":"If you have an identity authentication system, you do not need to create new users in the service provider system. Instead, you can configure federated identity authentic", - "doc_type":"", - "kw":"Introduction,Federated Identity Authentication,User Guide", - "title":"Introduction", - "githuburl":"" - }, - { - "uri":"iam_08_0002.html", - "product_code":"", - "code":"39", - "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", - "kw":"SAML-based Federated Identity Authentication", - "title":"SAML-based Federated Identity Authentication", - "githuburl":"" - }, - { - "uri":"iam_08_0003.html", - "product_code":"", - "code":"40", - "des":"To establish a trust relationship between an enterprise identity provider and the cloud system, upload the metadata file of the cloud system to the identity provider, and", - "doc_type":"", - "kw":"Step 1: Create an Identity Provider,SAML-based Federated Identity Authentication,User Guide", - "title":"Step 1: Create an Identity Provider", - "githuburl":"" - }, - { - "uri":"iam_08_0004.html", - "product_code":"", - "code":"41", - "des":"As the enterprise administrator, you can manage identities and permissions of federated users in the enterprise identity provider. By configuring identity conversion rule", - "doc_type":"", - "kw":"Step 2: Configure Identity Conversion Rules,SAML-based Federated Identity Authentication,User Guide", - "title":"Step 2: Configure Identity Conversion Rules", - "githuburl":"" - }, - { - "uri":"iam_08_0005.html", - "product_code":"", - "code":"42", - "des":"Configure the login link of the identity provider in the enterprise management system so that enterprise users can use this link to access the cloud system.An identity pr", - "doc_type":"", - "kw":"Step 3: Configure Login Link in the Enterprise Management System,SAML-based Federated Identity Authe", - "title":"Step 3: Configure Login Link in the Enterprise Management System", - "githuburl":"" - }, - { - "uri":"iam_08_0010.html", - "product_code":"", - "code":"43", - "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", - "kw":"OpenID Connect–based Federated Identity Authentication", - "title":"OpenID Connect–based Federated Identity Authentication", - "githuburl":"" - }, - { - "uri":"iam_08_0009.html", - "product_code":"", - "code":"44", - "des":"To establish a trust relationship between an enterprise identity provider and the cloud system, create an identity provider and configure authorization information on the", - "doc_type":"", - "kw":"Step 1: Create an Identity Provider,OpenID Connect–based Federated Identity Authentication,User Guid", - "title":"Step 1: Create an Identity Provider", - "githuburl":"" - }, - { - "uri":"iam_08_0008.html", - "product_code":"", - "code":"45", - "des":"As the enterprise administrator, you can manage identities and permissions of federated users in the enterprise identity provider. By configuring identity conversion rule", - "doc_type":"", - "kw":"Step 2: Configure Identity Conversion Rules,OpenID Connect–based Federated Identity Authentication,U", - "title":"Step 2: Configure Identity Conversion Rules", - "githuburl":"" - }, - { - "uri":"iam_08_0007.html", - "product_code":"", - "code":"46", - "des":"Configure the login link of the identity provider in the enterprise management system so that enterprise users can use this link to access the cloud system.An identity pr", - "doc_type":"", - "kw":"Step 3: Configure Login Link in the Enterprise Management System,OpenID Connect–based Federated Iden", - "title":"Step 3: Configure Login Link in the Enterprise Management System", - "githuburl":"" - }, - { - "uri":"en-us_topic_0079620340.html", - "product_code":"", - "code":"47", - "des":"An identity conversion rule is a JSON object which can be modified. The following is an example JSON object:[ \n { \n \"remote\": [ \n { \n ", - "doc_type":"", - "kw":"Syntax of Identity Conversion Rules,Federated Identity Authentication,User Guide", - "title":"Syntax of Identity Conversion Rules", - "githuburl":"" - }, - { - "uri":"iam_10_0002.html", - "product_code":"", - "code":"48", - "des":"MFA authentication provides an additional layer of protection on top of the username and password. If you enable MFA authentication, users need to enter the username and ", - "doc_type":"", - "kw":"MFA Authentication and Virtual MFA Device,User Guide,User Guide", - "title":"MFA Authentication and Virtual MFA Device", - "githuburl":"" - }, { "uri":"iam_01_0000.html", - "product_code":"", - "code":"49", + "product_code":"iam", + "code":"79", "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", + "doc_type":"usermanual", "kw":"FAQs", "title":"FAQs", "githuburl":"" }, { "uri":"iam_01_0002.html", - "product_code":"", - "code":"50", + "product_code":"iam", + "code":"80", "des":"For account security purposes, you are advised to enable login authentication. After this function is enabled, users need to enter an SMS, MFA, or email verification code", - "doc_type":"", + "doc_type":"usermanual", "kw":"How Do I Enable Login Authentication?,FAQs,User Guide", "title":"How Do I Enable Login Authentication?", "githuburl":"" }, { "uri":"iam_01_0003.html", - "product_code":"", - "code":"51", + "product_code":"iam", + "code":"81", "des":"MFA authentication provides an additional layer of protection on top of the username and password. If MFA–based login authentication is enabled, you will need to enter a ", - "doc_type":"", + "doc_type":"usermanual", "kw":"How Do I Bind a Virtual MFA Device?,FAQs,User Guide", "title":"How Do I Bind a Virtual MFA Device?", "githuburl":"" }, { "uri":"iam_01_0001.html", - "product_code":"", - "code":"52", + "product_code":"iam", + "code":"82", "des":"After MFA–based login authentication is enabled, you need to enter an MFA verification code in addition to the username and password when logging in to the console. Open ", - "doc_type":"", + "doc_type":"usermanual", "kw":"How Do I Obtain MFA Verification Codes?,FAQs,User Guide", "title":"How Do I Obtain MFA Verification Codes?", "githuburl":"" }, { "uri":"iam_01_0004.html", - "product_code":"", - "code":"53", + "product_code":"iam", + "code":"83", "des":"You can unbind the virtual MFA device as long as the mobile phone used to bind the MFA device is available and the MFA application is still installed on the phone.On the ", - "doc_type":"", + "doc_type":"usermanual", "kw":"How Do I Unbind a Virtual MFA Device?,FAQs,User Guide", "title":"How Do I Unbind a Virtual MFA Device?", "githuburl":"" }, { "uri":"en-us_topic_0046611300.html", - "product_code":"", - "code":"54", + "product_code":"iam", + "code":"84", "des":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "doc_type":"", + "doc_type":"usermanual", "kw":"Change History,User Guide", "title":"Change History", "githuburl":"" diff --git a/docs/iam/umn/CLASS.TXT.json b/docs/iam/umn/CLASS.TXT.json index 85143d7a..5ada8fe7 100644 --- a/docs/iam/umn/CLASS.TXT.json +++ b/docs/iam/umn/CLASS.TXT.json @@ -1,488 +1,758 @@ [ { "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", + "product_code":"iam", "title":"Service Overview", "uri":"iam_01_0021.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"", "code":"1" }, { "desc":"Identity and Access Management (IAM) provides identity authentication, permissions management, and access control. With IAM, you can create users for individuals, systems", - "product_code":"", + "product_code":"iam", "title":"What Is IAM?", "uri":"iam_01_0026.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"1", "code":"2" }, { "desc":"IAM provides the following basic functions:Refined permissions managementYou can control user access to different projects and grant different permissions to users for th", - "product_code":"", + "product_code":"iam", "title":"IAM Features", "uri":"en-us_topic_0046611276.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"1", "code":"3" }, { - "desc":"You can manage users in your account and their security credentials. In addition, you can configure federated identity authentication so that users in other systems can a", - "product_code":"", + "desc":"You can manage users in your account and their security credentials. In addition, you can configure identity federation so that users in other systems can access the clou", + "product_code":"iam", "title":"Identity Management", "uri":"iam_01_0023.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"1", "code":"4" }, { "desc":"You can grant users permissions to access different resources.Plan user groups and grant permissions to each user group.Add a user to a specific user group so that the us", - "product_code":"", + "product_code":"iam", "title":"Permissions Management", "uri":"iam_01_0024.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"1", "code":"5" }, { "desc":"To prevent personal data, such as the username, password, and mobile number, from being accessed by unauthorized entities or individuals, IAM encrypts the data before sto", - "product_code":"", + "product_code":"iam", "title":"Personal Data Protection Mechanism", "uri":"iam_01_0035.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"1", "code":"6" }, { "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", + "product_code":"iam", "title":"Getting Started", "uri":"iam_01_0027.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"", "code":"7" }, { "desc":"Your account has full access to your resources. For security purposes, create a security administrator and perform routine management as the security administrator.If a u", - "product_code":"", + "product_code":"iam", "title":"Getting Started with IAM", "uri":"iam_01_0034.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"7", "code":"8" }, { "desc":"For security purposes, create a security administrator and manage users in your account as the security administrator.Programmatic access: Users can access cloud services", - "product_code":"", + "product_code":"iam", "title":"Creating a Security Administrator", "uri":"iam_01_0029.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"7", "code":"9" }, { "desc":"As a security administrator, you can create user groups and grant them permissions.To enable users to directly view their permissions, set a description for the user grou", - "product_code":"", + "product_code":"iam", "title":"Creating a User Group and Assigning Permissions", "uri":"iam_01_0030.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"7", "code":"10" }, { "desc":"As a security administrator, you can create a user and add the user to a user group. The user automatically inherits the permissions of the user group.For security purpos", - "product_code":"", + "product_code":"iam", "title":"Creating a User and Adding the User to a User Group", "uri":"iam_01_0031.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"7", "code":"11" }, { - "desc":"You can log in to the cloud system as a user and access cloud services based on granted permissions.Verify the information displayed on the Login Verification page during", - "product_code":"", - "title":"Logging In as a User", + "desc":"You can log in to the cloud platform as an IAM user and access cloud services based on granted permissions.If either of the following has been configured on Security Sett", + "product_code":"iam", + "title":"Logging In as an IAM User", "uri":"iam_01_0032.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"7", "code":"12" }, { "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", + "product_code":"iam", "title":"User Guide", "uri":"iam_01_0040.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"", "code":"13" }, { "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"Auditing", - "uri":"iam_01_0011.html", - "doc_type":"", + "product_code":"iam", + "title":"IAM Users", + "uri":"iam_01_06.html", + "doc_type":"usermanual", "p_code":"13", "code":"14" }, { - "desc":"Table 1 lists Identity and Access Management (IAM) operations that can be recorded by Cloud Trace Service (CTS).", - "product_code":"", - "title":"IAM Operations That Can Be Recorded by CTS", - "uri":"iam_01_0012.html", - "doc_type":"", + "desc":"If you need to share resources in your account to other users, you can create users by using the console or by calling an API, and set security credentials and required p", + "product_code":"iam", + "title":"Creating a User", + "uri":"en-us_topic_0046611303.html", + "doc_type":"usermanual", "p_code":"14", "code":"15" }, { - "desc":"After you enable CTS, it records key operations performed on IAM. You can view the operation records of the last 7 days on the CTS console.The following filters are avail", - "product_code":"", - "title":"Viewing Audit Logs", - "uri":"iam_01_0013.html", - "doc_type":"", + "desc":"IAM users created without being added to any groups do not have permissions. You can assign permissions to these IAM users on the IAM console. After authorization, the us", + "product_code":"iam", + "title":"Assigning Permissions to an IAM User", + "uri":"en-us_topic_0079496985.html", + "doc_type":"usermanual", "p_code":"14", "code":"16" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"User and User Group Management", - "uri":"iam_01_06.html", - "doc_type":"", - "p_code":"13", + "desc":"You can log in to the console as an IAM user or obtain the IAM user login link from the administrator and then use the link to log in.Domain name: The name of the account", + "product_code":"iam", + "title":"Logging In as an IAM User", + "uri":"iam_01_0552.html", + "doc_type":"usermanual", + "p_code":"14", "code":"17" }, { - "desc":"As a security administrator, you can grant permissions to a user group and add users to it. The users inherit the permissions of the user group and can access the cloud s", - "product_code":"", - "title":"Managing Users and Permissions", - "uri":"en-us_topic_0079496985.html", - "doc_type":"", - "p_code":"17", + "desc":"You can modify the user information, including the status, access type, description, external identity ID, and belonged user group.If the job responsibilities of a user a", + "product_code":"iam", + "title":"Viewing and Modifying User Information", + "uri":"en-us_topic_0046661675.html", + "doc_type":"usermanual", + "p_code":"14", "code":"18" }, { - "desc":"Projects are used to group and isolate OpenStack resources, including compute, storage, and network resources. A project can be a department or a project team. Resources ", - "product_code":"", - "title":"Managing Projects", - "uri":"en-us_topic_0066738518.html", - "doc_type":"", - "p_code":"17", + "desc":"After an IAM user is deleted, they can no longer log in and their username, password, access keys, and authorizations will be cleared and cannot be recovered.Make sure th", + "product_code":"iam", + "title":"Deleting an IAM User", + "uri":"iam_02_0004.html", + "doc_type":"usermanual", + "p_code":"14", "code":"19" }, { - "desc":"You can plan user groups based on user responsibilities and grant the required permissions to the user groups. Users inherit permissions from the user groups to which the", - "product_code":"", - "title":"Creating a User Group", - "uri":"en-us_topic_0046611269.html", - "doc_type":"", - "p_code":"17", + "desc":"As an administrator, you can reset the password of an IAM user if the user has forgotten the password and no email address or mobile number has been bound to the user.To ", + "product_code":"iam", + "title":"Changing the Login Password of an IAM User", + "uri":"iam_01_0653.html", + "doc_type":"usermanual", + "p_code":"14", "code":"20" }, { - "desc":"If you need to share resources in your account to other users, you can create users by using the console or by calling an API, and set security credentials and required p", - "product_code":"", - "title":"Creating a User", - "uri":"en-us_topic_0046611303.html", - "doc_type":"", - "p_code":"17", + "desc":"You can modify user permissions using either of the following methods:Change the user groups to which a user belongs on the Modify User page. Choose this method if you wa", + "product_code":"iam", + "title":"Modifying User Permissions", + "uri":"en-us_topic_0080335069.html", + "doc_type":"usermanual", + "p_code":"14", "code":"21" }, { "desc":"Resources in different projects or regions are isolated. You can access resources only in the projects or regions for which you have been granted permissions. If you do n", - "product_code":"", + "product_code":"iam", "title":"Switching Projects or Regions", "uri":"en-us_topic_0079497018.html", - "doc_type":"", - "p_code":"17", + "doc_type":"usermanual", + "p_code":"14", "code":"22" }, { - "desc":"As an administrator, you can view and modify the basic information, user groups, and logs of each user. In addition, you can change the groups to which a user belongs if ", - "product_code":"", - "title":"Viewing and Modifying User Information", - "uri":"en-us_topic_0046661675.html", - "doc_type":"", - "p_code":"17", + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"User Groups and Authorization", + "uri":"iam_01_0655.html", + "doc_type":"usermanual", + "p_code":"13", "code":"23" }, { - "desc":"As a security administrator, you can view and modify the basic information, permissions, and users of a user group. You can modify users' permissions by changing the grou", - "product_code":"", - "title":"Viewing and Modifying User Group Information", - "uri":"en-us_topic_0085605493.html", - "doc_type":"", - "p_code":"17", + "desc":"You can plan user groups based on user responsibilities and grant the required permissions to the user groups. Users inherit permissions from the user groups to which the", + "product_code":"iam", + "title":"Creating a User Group and Assigning Permissions", + "uri":"en-us_topic_0046611269.html", + "doc_type":"usermanual", + "p_code":"23", "code":"24" }, { - "desc":"You can modify user permissions using either of the following methods:Change the user groups to which a user belongs on the Modify User page. Choose this method if you wa", - "product_code":"", - "title":"Modifying User Permissions", - "uri":"en-us_topic_0080335069.html", - "doc_type":"", - "p_code":"17", + "desc":"A user inherits permissions from the groups to which the user belongs. To change the permissions of a user, add the user to a new group or remove the user from an existin", + "product_code":"iam", + "title":"Adding Users to or Removing Users from a User Group", + "uri":"iam_03_0002.html", + "doc_type":"usermanual", + "p_code":"23", "code":"25" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"Fine-Grained Policy Management", - "uri":"iam_01_0015.html", - "doc_type":"", - "p_code":"13", + "desc":"To delete a user group, do the following:To delete multiple user groups at a time, do the following:", + "product_code":"iam", + "title":"Deleting a User Group", + "uri":"iam_01_0430.html", + "doc_type":"usermanual", + "p_code":"23", "code":"26" }, { - "desc":"A fine-grained policy is a set of permissions that define operations allowed to be performed on specific cloud services. A policy can contain multiple permission sets. Af", - "product_code":"", - "title":"Fine-Grained Policies", - "uri":"iam_01_019.html", - "doc_type":"", - "p_code":"26", + "desc":"As a security administrator, you can view and modify the basic information, permissions, and users of a user group. You can modify users' permissions by changing the grou", + "product_code":"iam", + "title":"Viewing and Modifying User Group Information", + "uri":"en-us_topic_0085605493.html", + "doc_type":"usermanual", + "p_code":"23", "code":"27" }, { - "desc":"A fine-grained policy consists of the policy version (the Version field) and statement (the Statement field).Version: Distinguishes between role-based access control (RBA", - "product_code":"", - "title":"Policy Syntax", - "uri":"iam_01_0017.html", - "doc_type":"", - "p_code":"26", + "desc":"To revoke a policy or role attached to a user group, do the following:To revoke multiple policies or roles attached to a user group, do as follows:", + "product_code":"iam", + "title":"Revoking Permissions of a User Group", + "uri":"iam_03_0004.html", + "doc_type":"usermanual", + "p_code":"23", "code":"28" }, { - "desc":"You can create custom policies to supplement system-defined policies and implement more refined access control.Global services: Select this option if the services to whic", - "product_code":"", - "title":"Creating a Custom Policy", - "uri":"iam_01_0016.html", - "doc_type":"", - "p_code":"26", + "desc":"Cloud services interwork with each other. Roles of some services take effect only if they are assigned along with roles of other services.For example, the DNS Administrat", + "product_code":"iam", + "title":"Assigning Dependency Roles", + "uri":"iam_01_0657.html", + "doc_type":"usermanual", + "p_code":"23", "code":"29" }, { - "desc":"Use the following method to assign permissions of the FullAccess policy to a user but also forbid the user from accessing CTS. Create a custom policy for denying access t", - "product_code":"", - "title":"Custom Policy Use Cases", - "uri":"iam_01_0600.html", - "doc_type":"", - "p_code":"26", + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Permissions", + "uri":"iam_01_0015.html", + "doc_type":"usermanual", + "p_code":"13", "code":"30" }, { - "desc":"Users with Security Administrator permissions can configure a login authentication policy, password policy, and ACL to keep your user information and system secure.In the", - "product_code":"", - "title":"Account Settings", - "uri":"en-us_topic_0046611308.html", - "doc_type":"", - "p_code":"13", + "desc":"By default, new IAM users do not have permissions assigned. You need to add a user to one or more groups, and attach permissions policies or roles to these groups. Users ", + "product_code":"iam", + "title":"Basic Concepts", + "uri":"iam_01_019.html", + "doc_type":"usermanual", + "p_code":"30", "code":"31" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"Agency Management", - "uri":"en-us_topic_0079496986.html", - "doc_type":"", - "p_code":"13", + "desc":"Roles are a type of coarse-grained authorization mechanism that defines service-level permissions based on user responsibilities. IAM provides a limited number of roles f", + "product_code":"iam", + "title":"Roles", + "uri":"iam_01_0601.html", + "doc_type":"usermanual", + "p_code":"30", "code":"32" }, { - "desc":"Agency is a trust relationship between a delegating account and a delegated account. By creating an agency, you can grant permissions to another account or cloud service ", - "product_code":"", - "title":"Delegating Resource Access to Another Account", - "uri":"iam_01_0054.html", - "doc_type":"", - "p_code":"32", + "desc":"A fine-grained policy consists of the policy version (the Version field) and statement (the Statement field).Version: Distinguishes between role-based access control (RBA", + "product_code":"iam", + "title":"Policy Syntax", + "uri":"iam_01_0017.html", + "doc_type":"usermanual", + "p_code":"30", "code":"33" }, { - "desc":"By creating an agency, you can share your resources with another account or a cloud service (such as ECS), or delegate an individual or team to manage your resources. You", - "product_code":"", - "title":"Creating an Agency (by a Delegating Party)", - "uri":"en-us_topic_0046613147.html", - "doc_type":"", - "p_code":"32", + "desc":"You can create custom policies to supplement system-defined policies and implement more refined access control.Global services: Select this option if the services to whic", + "product_code":"iam", + "title":"Creating a Custom Policy", + "uri":"iam_01_0016.html", + "doc_type":"usermanual", + "p_code":"30", "code":"34" }, { - "desc":"When a trust relationship is established between another account and your account, you become a delegated party and you can authorize a user to manage resources for the d", - "product_code":"", - "title":"Assigning Permissions to a User (by a Delegated Party)", - "uri":"iam_01_0063.html", - "doc_type":"", - "p_code":"32", + "desc":"Use the following method to assign permissions of the FullAccess policy to a user but also forbid the user from accessing CTS. Create a custom policy for denying access t", + "product_code":"iam", + "title":"Custom Policy Use Cases", + "uri":"iam_01_0600.html", + "doc_type":"usermanual", + "p_code":"30", "code":"35" }, { - "desc":"When an account establishes a trust relationship between itself and your account, you become a delegated party. You and all the users you have authorized can switch to th", - "product_code":"", - "title":"Switching Roles (by a Delegated Party)", - "uri":"en-us_topic_0046613148.html", - "doc_type":"", - "p_code":"32", + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Security Settings", + "uri":"en-us_topic_0046611308.html", + "doc_type":"usermanual", + "p_code":"13", "code":"36" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"Federated Identity Authentication", - "uri":"en-us_topic_0059870089.html", - "doc_type":"", - "p_code":"13", + "desc":"You can configure the account settings, critical operation protection, login authentication policy, password policy, and access control list (ACL) on the Security Setting", + "product_code":"iam", + "title":"Security Settings Overview", + "uri":"iam_07_0001.html", + "doc_type":"usermanual", + "p_code":"36", "code":"37" }, { - "desc":"If you have an identity authentication system, you do not need to create new users in the service provider system. Instead, you can configure federated identity authentic", - "product_code":"", - "title":"Introduction", - "uri":"en-us_topic_0079620341.html", - "doc_type":"", - "p_code":"37", + "desc":"As an account administrator, both you and your IAM users can manage basic information on this page.A mobile number or an email address can be bound only to one account or", + "product_code":"iam", + "title":"Basic Information", + "uri":"iam_01_0703.html", + "doc_type":"usermanual", + "p_code":"36", "code":"38" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"SAML-based Federated Identity Authentication", - "uri":"iam_08_0002.html", - "doc_type":"", - "p_code":"37", + "desc":"Only an administrator can configure critical operation protection, and IAM users can only view the configurations. If an IAM user needs to modify the configurations, the ", + "product_code":"iam", + "title":"Critical Operation Protection", + "uri":"iam_07_0002.html", + "doc_type":"usermanual", + "p_code":"36", "code":"39" }, { - "desc":"To establish a trust relationship between an enterprise identity provider and the cloud system, upload the metadata file of the cloud system to the identity provider, and", - "product_code":"", - "title":"Step 1: Create an Identity Provider", - "uri":"iam_08_0003.html", - "doc_type":"", - "p_code":"39", + "desc":"The Login Authentication Policy tab of the Security Settings page provides the Session Timeout, Account Lockout, Recent Login Information, Recent Login Information, and C", + "product_code":"iam", + "title":"Login Authentication Policy", + "uri":"iam_01_0704.html", + "doc_type":"usermanual", + "p_code":"36", "code":"40" }, { - "desc":"As the enterprise administrator, you can manage identities and permissions of federated users in the enterprise identity provider. By configuring identity conversion rule", - "product_code":"", - "title":"Step 2: Configure Identity Conversion Rules", - "uri":"iam_08_0004.html", - "doc_type":"", - "p_code":"39", + "desc":"The Password Policy tab of the Security Settings page provides the Password Composition & Reuse, Password Expiration, and Minimum Password Age settings.Only the administr", + "product_code":"iam", + "title":"Password Policy", + "uri":"iam_01_0607.html", + "doc_type":"usermanual", + "p_code":"36", "code":"41" }, { - "desc":"Configure the login link of the identity provider in the enterprise management system so that enterprise users can use this link to access the cloud system.An identity pr", - "product_code":"", - "title":"Step 3: Configure Login Link in the Enterprise Management System", - "uri":"iam_08_0005.html", - "doc_type":"", - "p_code":"39", + "desc":"The ACL tab of the Security Settings page provides the IP Address Ranges, IPv4 CIDR Blocks, and VPC Endpoints settings for allowing user access only from specified IP add", + "product_code":"iam", + "title":"ACL", + "uri":"iam_07_0003.html", + "doc_type":"usermanual", + "p_code":"36", "code":"42" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"OpenID Connect–based Federated Identity Authentication", - "uri":"iam_08_0010.html", - "doc_type":"", - "p_code":"37", + "desc":"Projects are used to group and isolate OpenStack resources, including compute, storage, and network resources. A project can be a department or a project team. Resources ", + "product_code":"iam", + "title":"Projects", + "uri":"en-us_topic_0066738518.html", + "doc_type":"usermanual", + "p_code":"13", "code":"43" }, { - "desc":"To establish a trust relationship between an enterprise identity provider and the cloud system, create an identity provider and configure authorization information on the", - "product_code":"", - "title":"Step 1: Create an Identity Provider", - "uri":"iam_08_0009.html", - "doc_type":"", - "p_code":"43", + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Agencies", + "uri":"en-us_topic_0079496986.html", + "doc_type":"usermanual", + "p_code":"13", "code":"44" }, { - "desc":"As the enterprise administrator, you can manage identities and permissions of federated users in the enterprise identity provider. By configuring identity conversion rule", - "product_code":"", - "title":"Step 2: Configure Identity Conversion Rules", - "uri":"iam_08_0008.html", - "doc_type":"", - "p_code":"43", + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Account Delegation", + "uri":"iam_01_0054.html", + "doc_type":"usermanual", + "p_code":"44", "code":"45" }, { - "desc":"Configure the login link of the identity provider in the enterprise management system so that enterprise users can use this link to access the cloud system.An identity pr", - "product_code":"", - "title":"Step 3: Configure Login Link in the Enterprise Management System", - "uri":"iam_08_0007.html", - "doc_type":"", - "p_code":"43", + "desc":"The agency function enables you to delegate another account to implement O&M on your resources based on assigned permissions.You can delegate resource access only to acco", + "product_code":"iam", + "title":"Delegating Resource Access to Another Account", + "uri":"iam_06_0001.html", + "doc_type":"usermanual", + "p_code":"45", "code":"46" }, { - "desc":"An identity conversion rule is a JSON object which can be modified. The following is an example JSON object:[ \n { \n \"remote\": [ \n { \n ", - "product_code":"", - "title":"Syntax of Identity Conversion Rules", - "uri":"en-us_topic_0079620340.html", - "doc_type":"", - "p_code":"37", + "desc":"By creating an agency, you can share your resources with another account, or delegate an individual or team to manage your resources. You do not need to share your securi", + "product_code":"iam", + "title":"Creating an Agency (by a Delegating Party)", + "uri":"en-us_topic_0046613147.html", + "doc_type":"usermanual", + "p_code":"45", "code":"47" }, { - "desc":"MFA authentication provides an additional layer of protection on top of the username and password. If you enable MFA authentication, users need to enter the username and ", - "product_code":"", - "title":"MFA Authentication and Virtual MFA Device", - "uri":"iam_10_0002.html", - "doc_type":"", - "p_code":"13", + "desc":"When a trust relationship is established between your account and another account, you become a delegated party. By default, only your account and the members of the admi", + "product_code":"iam", + "title":"(Optional) Assigning Permissions to an IAM User (by a Delegated Party)", + "uri":"iam_01_0063.html", + "doc_type":"usermanual", + "p_code":"45", "code":"48" }, { - "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", - "title":"FAQs", - "uri":"iam_01_0000.html", - "doc_type":"", - "p_code":"", + "desc":"When an account establishes a trust relationship with your account, you become a delegated party. You and all the users you have authorized can switch to the delegating a", + "product_code":"iam", + "title":"Switching Roles (by a Delegated Party)", + "uri":"en-us_topic_0046613148.html", + "doc_type":"usermanual", + "p_code":"45", "code":"49" }, { - "desc":"For account security purposes, you are advised to enable login authentication. After this function is enabled, users need to enter an SMS, MFA, or email verification code", - "product_code":"", - "title":"How Do I Enable Login Authentication?", - "uri":"iam_01_0002.html", - "doc_type":"", - "p_code":"49", + "desc":"Services on the cloud platform interwork with each other, and some cloud services are dependent on other services. To delegate a cloud service to access other services an", + "product_code":"iam", + "title":"Cloud Service Delegation", + "uri":"iam_06_0004.html", + "doc_type":"usermanual", + "p_code":"44", "code":"50" }, { - "desc":"MFA authentication provides an additional layer of protection on top of the username and password. If MFA–based login authentication is enabled, you will need to enter a ", - "product_code":"", - "title":"How Do I Bind a Virtual MFA Device?", - "uri":"iam_01_0003.html", - "doc_type":"", - "p_code":"49", + "desc":"To modify the permissions, validity period, and description of an agency, click Modify in the row containing the agency you want to modify.You can change the cloud servic", + "product_code":"iam", + "title":"Deleting or Modifying Agencies", + "uri":"iam_01_0730.html", + "doc_type":"usermanual", + "p_code":"44", "code":"51" }, { - "desc":"After MFA–based login authentication is enabled, you need to enter an MFA verification code in addition to the username and password when logging in to the console. Open ", - "product_code":"", - "title":"How Do I Obtain MFA Verification Codes?", - "uri":"iam_01_0001.html", - "doc_type":"", - "p_code":"49", + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Identity Providers", + "uri":"en-us_topic_0059870089.html", + "doc_type":"usermanual", + "p_code":"13", "code":"52" }, { - "desc":"You can unbind the virtual MFA device as long as the mobile phone used to bind the MFA device is available and the MFA application is still installed on the phone.On the ", - "product_code":"", - "title":"How Do I Unbind a Virtual MFA Device?", - "uri":"iam_01_0004.html", - "doc_type":"", - "p_code":"49", + "desc":"The cloud platform provides identity federation based on Security Assertion Markup Language (SAML) or OpenID Connect. This function allows users in your enterprise manage", + "product_code":"iam", + "title":"Introduction", + "uri":"en-us_topic_0079620341.html", + "doc_type":"usermanual", + "p_code":"52", "code":"53" }, + { + "desc":"IAM supports two SSO types: virtual user SSO and IAM user SSO. This section describes the two SSO types and their differences, helping you to choose an appropriate type f", + "product_code":"iam", + "title":"Application Scenarios of Virtual User SSO and IAM User SSO", + "uri":"iam_08_0251.html", + "doc_type":"usermanual", + "p_code":"52", + "code":"54" + }, { "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", - "product_code":"", + "product_code":"iam", + "title":"Virtual User SSO via SAML", + "uri":"iam_08_0002.html", + "doc_type":"usermanual", + "p_code":"52", + "code":"55" + }, + { + "desc":"The cloud platform supports identity federation with Security Assertion Markup Language (SAML), which is an open standard that many identity providers (IdPs) use. During ", + "product_code":"iam", + "title":"Overview of Virtual User SSO via SAML", + "uri":"iam_08_0021.html", + "doc_type":"usermanual", + "p_code":"55", + "code":"56" + }, + { + "desc":"To establish a trust relationship between an enterprise IdP and the cloud platform, upload the metadata file of the cloud platform to the enterprise IdP, and then create ", + "product_code":"iam", + "title":"Step 1: Create an IdP Entity", + "uri":"iam_08_0003.html", + "doc_type":"usermanual", + "p_code":"55", + "code":"57" + }, + { + "desc":"You can configure parameters in the enterprise IdP to determine what information will be sent to the cloud platform. The cloud platform authenticates the federated identi", + "product_code":"iam", + "title":"Step 2: Configure the Enterprise IdP", + "uri":"iam_08_0252.html", + "doc_type":"usermanual", + "p_code":"55", + "code":"58" + }, + { + "desc":"After an enterprise IdP user logs in to the cloud platform, the cloud platform authenticates the identity and assigns permissions to the user based on the identity conver", + "product_code":"iam", + "title":"Step 3: Configure Identity Conversion Rules", + "uri":"iam_08_0004.html", + "doc_type":"usermanual", + "p_code":"55", + "code":"59" + }, + { + "desc":"Federated users can initiate a login from the IdP or SP.Initiating a login from an IdP, for example, Microsoft Active Directory Federation Services (AD FS) or Shibboleth.", + "product_code":"iam", + "title":"Step 4: Verify the Federated Login", + "uri":"iam_08_0025.html", + "doc_type":"usermanual", + "p_code":"55", + "code":"60" + }, + { + "desc":"Configure a federated login entry in the enterprise IdP to enable enterprise users use the login link to access the cloud platform.An IdP entity has been created on the c", + "product_code":"iam", + "title":"(Optional) Step 5: Configure a Federated Login Entry in the Enterprise IdP", + "uri":"iam_08_0005.html", + "doc_type":"usermanual", + "p_code":"55", + "code":"61" + }, + { + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"IAM User SSO via SAML", + "uri":"iam_08_0253.html", + "doc_type":"usermanual", + "p_code":"52", + "code":"62" + }, + { + "desc":"The cloud platform supports identity federation with Security Assertion Markup Language (SAML), which is an open standard that many identity providers (IdPs) use. During ", + "product_code":"iam", + "title":"Overview of IAM User SSO via SAML", + "uri":"iam_08_0254.html", + "doc_type":"usermanual", + "p_code":"62", + "code":"63" + }, + { + "desc":"To establish a trust relationship between an enterprise IdP and the cloud platform, upload the metadata file of the cloud platform to the enterprise IdP, and then create ", + "product_code":"iam", + "title":"Step 1: Create an IdP Entity", + "uri":"iam_08_0255.html", + "doc_type":"usermanual", + "p_code":"62", + "code":"64" + }, + { + "desc":"You can configure parameters in the enterprise IdP to determine what information will be sent to the cloud platform. The cloud platform authenticates the federated identi", + "product_code":"iam", + "title":"Step 2: Configure the Enterprise IdP", + "uri":"iam_08_0256.html", + "doc_type":"usermanual", + "p_code":"62", + "code":"65" + }, + { + "desc":"For the IAM user SSO type, you must configure an external identity ID for the IAM user which the federated user maps to on the cloud platform. The external identity ID mu", + "product_code":"iam", + "title":"Step 3: Configure an External Identity ID", + "uri":"iam_08_0257.html", + "doc_type":"usermanual", + "p_code":"62", + "code":"66" + }, + { + "desc":"Federated users can initiate a login from the IdP or SP.Initiating a login from an IdP, for example, Microsoft Active Directory Federation Services (AD FS) or Shibboleth.", + "product_code":"iam", + "title":"Step 4: Verify the Federated Login", + "uri":"iam_08_0258.html", + "doc_type":"usermanual", + "p_code":"62", + "code":"67" + }, + { + "desc":"Configure a federated login entry in the enterprise IdP to enable enterprise users use the login link to access the cloud platform.An IdP entity has been created on the c", + "product_code":"iam", + "title":"(Optional) Step 5: Configure a Federated Login Entry in the Enterprise IdP", + "uri":"iam_08_0259.html", + "doc_type":"usermanual", + "p_code":"62", + "code":"68" + }, + { + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Virtual User SSO via OpenID Connect", + "uri":"iam_08_0022.html", + "doc_type":"usermanual", + "p_code":"52", + "code":"69" + }, + { + "desc":"This section describes how to configure identity federation and how identity federation works.The following describes how to configure your enterprise IdP and the cloud p", + "product_code":"iam", + "title":"Overview of Virtual User SSO via OpenID Connect", + "uri":"iam_08_0010.html", + "doc_type":"usermanual", + "p_code":"69", + "code":"70" + }, + { + "desc":"To establish a trust relationship between an enterprise IdP and the cloud platform, set the user redirect URLs and create OAuth 2.0 credentials in the enterprise IdP. On ", + "product_code":"iam", + "title":"Step 1: Create an IdP Entity", + "uri":"iam_08_0009.html", + "doc_type":"usermanual", + "p_code":"69", + "code":"71" + }, + { + "desc":"Federated users are named FederationUser by default in the cloud platform. These users can only log in to the cloud platform and they do not have any other permissions. Y", + "product_code":"iam", + "title":"Step 2: Configure Identity Conversion Rules", + "uri":"iam_08_0008.html", + "doc_type":"usermanual", + "p_code":"69", + "code":"72" + }, + { + "desc":"Configure a federated login entry in the enterprise IdP to enable enterprise users use the login link to access the cloud platform.An IdP entity has been created on the c", + "product_code":"iam", + "title":"(Optional) Step 3: Configure Login Link in the Enterprise Management System", + "uri":"iam_08_0007.html", + "doc_type":"usermanual", + "p_code":"69", + "code":"73" + }, + { + "desc":"An identity conversion rule is a JSON object which can be modified. The following is an example JSON object:[ \n { \n \"remote\": [ \n { \n ", + "product_code":"iam", + "title":"Syntax of Identity Conversion Rules", + "uri":"en-us_topic_0079620340.html", + "doc_type":"usermanual", + "p_code":"52", + "code":"74" + }, + { + "desc":"MFA authentication provides an additional layer of protection on top of the username and password. If you enable MFA authentication, users need to enter the username and ", + "product_code":"iam", + "title":"MFA Authentication and Virtual MFA Device", + "uri":"iam_10_0002.html", + "doc_type":"usermanual", + "p_code":"13", + "code":"75" + }, + { + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"Auditing", + "uri":"iam_01_0011.html", + "doc_type":"usermanual", + "p_code":"13", + "code":"76" + }, + { + "desc":"Table 1 lists Identity and Access Management (IAM) operations that can be recorded by Cloud Trace Service (CTS).", + "product_code":"iam", + "title":"IAM Operations That Can Be Recorded by CTS", + "uri":"iam_01_0012.html", + "doc_type":"usermanual", + "p_code":"76", + "code":"77" + }, + { + "desc":"After you enable CTS, it records key operations performed on IAM. You can view the operation records of the last 7 days on the CTS console.The following filters are avail", + "product_code":"iam", + "title":"Viewing Audit Logs", + "uri":"iam_01_0013.html", + "doc_type":"usermanual", + "p_code":"76", + "code":"78" + }, + { + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", + "title":"FAQs", + "uri":"iam_01_0000.html", + "doc_type":"usermanual", + "p_code":"", + "code":"79" + }, + { + "desc":"For account security purposes, you are advised to enable login authentication. After this function is enabled, users need to enter an SMS, MFA, or email verification code", + "product_code":"iam", + "title":"How Do I Enable Login Authentication?", + "uri":"iam_01_0002.html", + "doc_type":"usermanual", + "p_code":"79", + "code":"80" + }, + { + "desc":"MFA authentication provides an additional layer of protection on top of the username and password. If MFA–based login authentication is enabled, you will need to enter a ", + "product_code":"iam", + "title":"How Do I Bind a Virtual MFA Device?", + "uri":"iam_01_0003.html", + "doc_type":"usermanual", + "p_code":"79", + "code":"81" + }, + { + "desc":"After MFA–based login authentication is enabled, you need to enter an MFA verification code in addition to the username and password when logging in to the console. Open ", + "product_code":"iam", + "title":"How Do I Obtain MFA Verification Codes?", + "uri":"iam_01_0001.html", + "doc_type":"usermanual", + "p_code":"79", + "code":"82" + }, + { + "desc":"You can unbind the virtual MFA device as long as the mobile phone used to bind the MFA device is available and the MFA application is still installed on the phone.On the ", + "product_code":"iam", + "title":"How Do I Unbind a Virtual MFA Device?", + "uri":"iam_01_0004.html", + "doc_type":"usermanual", + "p_code":"79", + "code":"83" + }, + { + "desc":"HUAWEI CLOUD Help Center presents technical documents to help you quickly get started with HUAWEI CLOUD services. The technical documents include Service Overview, Price Details, Purchase Guide, User Guide, API Reference, Best Practices, FAQs, and Videos.", + "product_code":"iam", "title":"Change History", "uri":"en-us_topic_0046611300.html", - "doc_type":"", + "doc_type":"usermanual", "p_code":"", - "code":"54" + "code":"84" } ] \ No newline at end of file diff --git a/docs/iam/umn/en-us_image_0000001089129340.png b/docs/iam/umn/en-us_image_0000001089129340.png deleted file mode 100644 index 226e1519..00000000 Binary files a/docs/iam/umn/en-us_image_0000001089129340.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0000001100309480.png b/docs/iam/umn/en-us_image_0000001100309480.png new file mode 100644 index 00000000..25ea05ab Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001100309480.png differ diff --git a/docs/iam/umn/en-us_image_0000001117174928.png b/docs/iam/umn/en-us_image_0000001117174928.png new file mode 100644 index 00000000..5eb55cbb Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001117174928.png differ diff --git a/docs/iam/umn/en-us_image_0000001146589991.png b/docs/iam/umn/en-us_image_0000001146589991.png new file mode 100644 index 00000000..7dd9279b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001146589991.png differ diff --git a/docs/iam/umn/en-us_image_0000001146708849.png b/docs/iam/umn/en-us_image_0000001146708849.png new file mode 100644 index 00000000..3f6c95ef Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001146708849.png differ diff --git a/docs/iam/umn/en-us_image_0000001162246460.png b/docs/iam/umn/en-us_image_0000001162246460.png new file mode 100644 index 00000000..c54038cf Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001162246460.png differ diff --git a/docs/iam/umn/en-us_image_0000001162406406.png b/docs/iam/umn/en-us_image_0000001162406406.png new file mode 100644 index 00000000..780afc2a Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001162406406.png differ diff --git a/docs/iam/umn/en-us_image_0000001207367895.png b/docs/iam/umn/en-us_image_0000001207367895.png new file mode 100644 index 00000000..6d1b02dc Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001207367895.png differ diff --git a/docs/iam/umn/en-us_image_0000001207368543.png b/docs/iam/umn/en-us_image_0000001207368543.png new file mode 100644 index 00000000..e0168a60 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001207368543.png differ diff --git a/docs/iam/umn/en-us_image_0000001209454671.png b/docs/iam/umn/en-us_image_0000001209454671.png new file mode 100644 index 00000000..46cfcbc0 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001209454671.png differ diff --git a/docs/iam/umn/en-us_image_0000001209613221.png b/docs/iam/umn/en-us_image_0000001209613221.png new file mode 100644 index 00000000..e55805d8 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001209613221.png differ diff --git a/docs/iam/umn/en-us_image_0000001209614103.png b/docs/iam/umn/en-us_image_0000001209614103.png new file mode 100644 index 00000000..59f695c7 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001209614103.png differ diff --git a/docs/iam/umn/en-us_image_0000001474176978.png b/docs/iam/umn/en-us_image_0000001474176978.png new file mode 100644 index 00000000..028963cc Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001474176978.png differ diff --git a/docs/iam/umn/en-us_image_0000001511377602.png b/docs/iam/umn/en-us_image_0000001511377602.png new file mode 100644 index 00000000..0ed42639 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001511377602.png differ diff --git a/docs/iam/umn/en-us_image_0000001511378178.png b/docs/iam/umn/en-us_image_0000001511378178.png new file mode 100644 index 00000000..f0f1b222 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001511378178.png differ diff --git a/docs/iam/umn/en-us_image_0000001511524692.png b/docs/iam/umn/en-us_image_0000001511524692.png new file mode 100644 index 00000000..a73628e5 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001511524692.png differ diff --git a/docs/iam/umn/en-us_image_0000001511856446.png b/docs/iam/umn/en-us_image_0000001511856446.png new file mode 100644 index 00000000..32218a8b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001511856446.png differ diff --git a/docs/iam/umn/en-us_image_0000001524684833.png b/docs/iam/umn/en-us_image_0000001524684833.png new file mode 100644 index 00000000..098d5498 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001524684833.png differ diff --git a/docs/iam/umn/en-us_image_0000001562564797.png b/docs/iam/umn/en-us_image_0000001562564797.png new file mode 100644 index 00000000..004dde38 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001562564797.png differ diff --git a/docs/iam/umn/en-us_image_0000001562896221.png b/docs/iam/umn/en-us_image_0000001562896221.png new file mode 100644 index 00000000..f6d61c7e Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001562896221.png differ diff --git a/docs/iam/umn/en-us_image_0000001606753690.png b/docs/iam/umn/en-us_image_0000001606753690.png new file mode 100644 index 00000000..5931a145 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606753690.png differ diff --git a/docs/iam/umn/en-us_image_0000001606779168.png b/docs/iam/umn/en-us_image_0000001606779168.png new file mode 100644 index 00000000..d799cda9 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606779168.png differ diff --git a/docs/iam/umn/en-us_image_0000001606781176.png b/docs/iam/umn/en-us_image_0000001606781176.png new file mode 100644 index 00000000..6ccded3d Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606781176.png differ diff --git a/docs/iam/umn/en-us_image_0000001606781944.png b/docs/iam/umn/en-us_image_0000001606781944.png new file mode 100644 index 00000000..7c3090f4 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606781944.png differ diff --git a/docs/iam/umn/en-us_image_0000001606783928.png b/docs/iam/umn/en-us_image_0000001606783928.png new file mode 100644 index 00000000..130ed766 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606783928.png differ diff --git a/docs/iam/umn/en-us_image_0000001606937268.png b/docs/iam/umn/en-us_image_0000001606937268.png new file mode 100644 index 00000000..ae2fcdf6 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606937268.png differ diff --git a/docs/iam/umn/en-us_image_0000001606939052.png b/docs/iam/umn/en-us_image_0000001606939052.png new file mode 100644 index 00000000..acf7c27f Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606939052.png differ diff --git a/docs/iam/umn/en-us_image_0000001606942104.png b/docs/iam/umn/en-us_image_0000001606942104.png new file mode 100644 index 00000000..77a3b294 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606942104.png differ diff --git a/docs/iam/umn/en-us_image_0000001606944408.png b/docs/iam/umn/en-us_image_0000001606944408.png new file mode 100644 index 00000000..7825da49 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606944408.png differ diff --git a/docs/iam/umn/en-us_image_0000001606945160.png b/docs/iam/umn/en-us_image_0000001606945160.png new file mode 100644 index 00000000..c17d826c Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001606945160.png differ diff --git a/docs/iam/umn/en-us_image_0000001607193154.png b/docs/iam/umn/en-us_image_0000001607193154.png new file mode 100644 index 00000000..6b8230c2 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001607193154.png differ diff --git a/docs/iam/umn/en-us_image_0000001607216988.png b/docs/iam/umn/en-us_image_0000001607216988.png new file mode 100644 index 00000000..5931a145 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001607216988.png differ diff --git a/docs/iam/umn/en-us_image_0000001607217960.png b/docs/iam/umn/en-us_image_0000001607217960.png new file mode 100644 index 00000000..bfd0595b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001607217960.png differ diff --git a/docs/iam/umn/en-us_image_0000001607219512.png b/docs/iam/umn/en-us_image_0000001607219512.png new file mode 100644 index 00000000..de9bb3d5 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001607219512.png differ diff --git a/docs/iam/umn/en-us_image_0000001607256960.png b/docs/iam/umn/en-us_image_0000001607256960.png new file mode 100644 index 00000000..35e5a61d Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001607256960.png differ diff --git a/docs/iam/umn/en-us_image_0000001607259280.png b/docs/iam/umn/en-us_image_0000001607259280.png new file mode 100644 index 00000000..96c1014e Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001607259280.png differ diff --git a/docs/iam/umn/en-us_image_0000001646287137.png b/docs/iam/umn/en-us_image_0000001646287137.png new file mode 100644 index 00000000..1073f956 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001646287137.png differ diff --git a/docs/iam/umn/en-us_image_0000001646293253.png b/docs/iam/umn/en-us_image_0000001646293253.png new file mode 100644 index 00000000..1073f956 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001646293253.png differ diff --git a/docs/iam/umn/en-us_image_0000001646367745.png b/docs/iam/umn/en-us_image_0000001646367745.png new file mode 100644 index 00000000..1073f956 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001646367745.png differ diff --git a/docs/iam/umn/en-us_image_0000001646415725.png b/docs/iam/umn/en-us_image_0000001646415725.png new file mode 100644 index 00000000..92e75d68 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001646415725.png differ diff --git a/docs/iam/umn/en-us_image_0000001646542753.png b/docs/iam/umn/en-us_image_0000001646542753.png new file mode 100644 index 00000000..1073f956 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001646542753.png differ diff --git a/docs/iam/umn/en-us_image_0000001646661553.png b/docs/iam/umn/en-us_image_0000001646661553.png new file mode 100644 index 00000000..1073f956 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001646661553.png differ diff --git a/docs/iam/umn/en-us_image_0000001655953453.png b/docs/iam/umn/en-us_image_0000001655953453.png new file mode 100644 index 00000000..35e5a61d Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001655953453.png differ diff --git a/docs/iam/umn/en-us_image_0000001655985477.png b/docs/iam/umn/en-us_image_0000001655985477.png new file mode 100644 index 00000000..1bd90371 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001655985477.png differ diff --git a/docs/iam/umn/en-us_image_0000001656073017.png b/docs/iam/umn/en-us_image_0000001656073017.png new file mode 100644 index 00000000..5955c9c8 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656073017.png differ diff --git a/docs/iam/umn/en-us_image_0000001656273117.png b/docs/iam/umn/en-us_image_0000001656273117.png new file mode 100644 index 00000000..ae2fcdf6 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656273117.png differ diff --git a/docs/iam/umn/en-us_image_0000001656300001.png b/docs/iam/umn/en-us_image_0000001656300001.png new file mode 100644 index 00000000..bfd0595b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656300001.png differ diff --git a/docs/iam/umn/en-us_image_0000001656303477.png b/docs/iam/umn/en-us_image_0000001656303477.png new file mode 100644 index 00000000..4098788b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656303477.png differ diff --git a/docs/iam/umn/en-us_image_0000001656303721.png b/docs/iam/umn/en-us_image_0000001656303721.png new file mode 100644 index 00000000..bfd0595b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656303721.png differ diff --git a/docs/iam/umn/en-us_image_0000001656337241.png b/docs/iam/umn/en-us_image_0000001656337241.png new file mode 100644 index 00000000..6b8230c2 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656337241.png differ diff --git a/docs/iam/umn/en-us_image_0000001656340545.png b/docs/iam/umn/en-us_image_0000001656340545.png new file mode 100644 index 00000000..f98876a4 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656340545.png differ diff --git a/docs/iam/umn/en-us_image_0000001656341101.png b/docs/iam/umn/en-us_image_0000001656341101.png new file mode 100644 index 00000000..acf7c27f Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656341101.png differ diff --git a/docs/iam/umn/en-us_image_0000001656344889.png b/docs/iam/umn/en-us_image_0000001656344889.png new file mode 100644 index 00000000..0dd626d0 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656344889.png differ diff --git a/docs/iam/umn/en-us_image_0000001656458721.png b/docs/iam/umn/en-us_image_0000001656458721.png new file mode 100644 index 00000000..c6bbaae6 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656458721.png differ diff --git a/docs/iam/umn/en-us_image_0000001656459361.png b/docs/iam/umn/en-us_image_0000001656459361.png new file mode 100644 index 00000000..96c1014e Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656459361.png differ diff --git a/docs/iam/umn/en-us_image_0000001656493417.png b/docs/iam/umn/en-us_image_0000001656493417.png new file mode 100644 index 00000000..3d60b14b Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656493417.png differ diff --git a/docs/iam/umn/en-us_image_0000001656576929.png b/docs/iam/umn/en-us_image_0000001656576929.png new file mode 100644 index 00000000..876b8483 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656576929.png differ diff --git a/docs/iam/umn/en-us_image_0000001656578205.png b/docs/iam/umn/en-us_image_0000001656578205.png new file mode 100644 index 00000000..df30add2 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656578205.png differ diff --git a/docs/iam/umn/en-us_image_0000001656580725.png b/docs/iam/umn/en-us_image_0000001656580725.png new file mode 100644 index 00000000..d799cda9 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656580725.png differ diff --git a/docs/iam/umn/en-us_image_0000001656582221.png b/docs/iam/umn/en-us_image_0000001656582221.png new file mode 100644 index 00000000..130ed766 Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656582221.png differ diff --git a/docs/iam/umn/en-us_image_0000001656585157.png b/docs/iam/umn/en-us_image_0000001656585157.png new file mode 100644 index 00000000..fefc43eb Binary files /dev/null and b/docs/iam/umn/en-us_image_0000001656585157.png differ diff --git a/docs/iam/umn/en-us_image_0272447834.png b/docs/iam/umn/en-us_image_0272447834.png new file mode 100644 index 00000000..92e75d68 Binary files /dev/null and b/docs/iam/umn/en-us_image_0272447834.png differ diff --git a/docs/iam/umn/en-us_image_0274186850.png b/docs/iam/umn/en-us_image_0274186850.png deleted file mode 100644 index b9fa6e46..00000000 Binary files a/docs/iam/umn/en-us_image_0274186850.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274186858.png b/docs/iam/umn/en-us_image_0274186858.png deleted file mode 100644 index 912ba652..00000000 Binary files a/docs/iam/umn/en-us_image_0274186858.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187167.png b/docs/iam/umn/en-us_image_0274187167.png deleted file mode 100644 index 1b96313d..00000000 Binary files a/docs/iam/umn/en-us_image_0274187167.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187171.png b/docs/iam/umn/en-us_image_0274187171.png deleted file mode 100644 index a790ced5..00000000 Binary files a/docs/iam/umn/en-us_image_0274187171.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187197.png b/docs/iam/umn/en-us_image_0274187197.png deleted file mode 100644 index 99ca885a..00000000 Binary files a/docs/iam/umn/en-us_image_0274187197.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187199.png b/docs/iam/umn/en-us_image_0274187199.png deleted file mode 100644 index 724d9f76..00000000 Binary files a/docs/iam/umn/en-us_image_0274187199.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187214.png b/docs/iam/umn/en-us_image_0274187214.png deleted file mode 100644 index 8543c1b6..00000000 Binary files a/docs/iam/umn/en-us_image_0274187214.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187218.png b/docs/iam/umn/en-us_image_0274187218.png deleted file mode 100644 index 81df9923..00000000 Binary files a/docs/iam/umn/en-us_image_0274187218.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187226.png b/docs/iam/umn/en-us_image_0274187226.png deleted file mode 100644 index 5bd110cf..00000000 Binary files a/docs/iam/umn/en-us_image_0274187226.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187229.png b/docs/iam/umn/en-us_image_0274187229.png deleted file mode 100644 index 3f186234..00000000 Binary files a/docs/iam/umn/en-us_image_0274187229.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187237.png b/docs/iam/umn/en-us_image_0274187237.png deleted file mode 100644 index c6c5afd2..00000000 Binary files a/docs/iam/umn/en-us_image_0274187237.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187239.png b/docs/iam/umn/en-us_image_0274187239.png deleted file mode 100644 index 4158dfa8..00000000 Binary files a/docs/iam/umn/en-us_image_0274187239.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187264.png b/docs/iam/umn/en-us_image_0274187264.png deleted file mode 100644 index f6063cb7..00000000 Binary files a/docs/iam/umn/en-us_image_0274187264.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0274187275.png b/docs/iam/umn/en-us_image_0274187275.png deleted file mode 100644 index e233ebe1..00000000 Binary files a/docs/iam/umn/en-us_image_0274187275.png and /dev/null differ diff --git a/docs/iam/umn/en-us_image_0289500726.png b/docs/iam/umn/en-us_image_0289500726.png new file mode 100644 index 00000000..f20088ed Binary files /dev/null and b/docs/iam/umn/en-us_image_0289500726.png differ diff --git a/docs/iam/umn/en-us_topic_0046611269.html b/docs/iam/umn/en-us_topic_0046611269.html index e1b0ee3c..9052e474 100644 --- a/docs/iam/umn/en-us_topic_0046611269.html +++ b/docs/iam/umn/en-us_topic_0046611269.html @@ -1,17 +1,52 @@ -
You can plan user groups based on user responsibilities and grant the required permissions to the user groups. Users inherit permissions from the user groups to which they belong.
-To enable users to directly view their permissions, set a description for the user group. For example, if you assign the Security Administrator role to a user group, you can set any description in the Description text box. For example: Security Administrator: Permissions for creating, deleting, and modifying users as well as granting permissions to users. For details about the permissions for all cloud services, see Permissions
+To enable users to directly view their permissions, set a description for the user group. For example, if you assign the Security Administrator role to a user group, you can set any description in the Description text box. For example: Security Administrator: Permissions for creating, deleting, and modifying users as well as granting permissions to users. For details about the permissions for all cloud services, see Permissions.
The user group is displayed in the user group list.
-If the system-defined policies do not meet your requirements, you can click Create Policy in the upper right to create custom policies for fine-grained permissions control. For details, see Creating a Custom Policy.
++
Scope + |
+Description + |
+
---|---|
All resources + |
+IAM users can use the resources in all region-specific projects and the global services in your account based on the assigned permissions. + |
+
Region-specific projects + |
+IAM users can use the resources in the region-specific projects you select based on the assigned permissions. +If some of the selected permissions belong to global services, the system automatically sets the authorization scope of these permissions to All resources. Selected permissions for project-level services will apply to the region-specific projects you select. + |
+
Global services + |
+IAM users can use global services based on the assigned permissions. Global services are deployed with no physical regions specified. IAM users do not need to specify a region when accessing these services, such as Object Storage Service (OBS) and Content Delivery Network (CDN). +If some of the selected permissions belong to project-level services, the system automatically sets the authorization scope of these permissions to All resources. Selected permissions for global services will apply to the global services. + |
+
Released On +
![]()
![]()
![]() If you have specified the access type as Programmatic access, you can download the access key on the Finish page. +![]() If you have specified the access type as Programmatic access, download the access key on the Finish page.
-
Parent topic: User and User Group Management
+Parent topic: IAM Users
Account Settings-Users with Security Administrator permissions can configure a login authentication policy, password policy, and ACL to keep your user information and system secure. -Procedure
Security Settings+
+
Parent topic: User Guide
Creating an Agency (by a Delegating Party)-By creating an agency, you can share your resources with another account or a cloud service (such as ECS), or delegate an individual or team to manage your resources. You do not need to share your security credentials (the password and access keys) with the delegated party. Instead, the delegated party can log in with its own account credentials and then switches the role to your account and manage your resources. -Procedure
| |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Management console access diff --git a/docs/iam/umn/iam_01_0032.html b/docs/iam/umn/iam_01_0032.html index 9b49e97e..8bd3531c 100644 --- a/docs/iam/umn/iam_01_0032.html +++ b/docs/iam/umn/iam_01_0032.html @@ -1,8 +1,8 @@ -Logging In as a User-You can log in to the cloud system as a user and access cloud services based on granted permissions. -ContextVerify the information displayed on the Login Verification page during login if any of the following settings has been configured:
Logging In as an IAM User+You can log in to the cloud platform as an IAM user and access cloud services based on granted permissions. +BackgroundIf either of the following has been configured on Security Settings > Login Authentication Policy, you will see the Login Verification page after login:
Procedure
|