forked from docs/doc-exports
Reviewed-by: Sarda, Priya <prsarda@noreply.gitea.eco.tsi-dev.otc-service.com> Co-authored-by: Qin Ying, Fan <fanqinying@huawei.com> Co-committed-by: Qin Ying, Fan <fanqinying@huawei.com>
26 lines
4.3 KiB
HTML
26 lines
4.3 KiB
HTML
<a name="permission_0003"></a><a name="permission_0003"></a>
|
|
|
|
<h1 class="topictitle1">Creating a User and Granting VPC Permissions</h1>
|
|
<div id="body1558602290736"><div class="p" id="permission_0003__p1455916456132">This section describes how to use IAM to implement fine-grained permissions control for your VPC resources. With IAM, you can:<ul id="permission_0003__ul175591445111317"><li id="permission_0003__li769213742311">Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing VPC resources.</li><li id="permission_0003__li155944510132">Grant users only the permissions required to perform a given task based on their job responsibilities.</li><li id="permission_0003__li256094510130">Entrust a cloud account or cloud service to perform efficient O&M on your VPC resources.</li></ul>
|
|
</div>
|
|
<p id="permission_0003__p856014453130">If your cloud account meets your permissions requirements, you can skip this section.</p>
|
|
<p id="permission_0003__p380814801312"><a href="#permission_0003__fig1447123814172">Figure 1</a> shows the process flow for granting permissions.</p>
|
|
<div class="section" id="permission_0003__section6808937111712"><h4 class="sectiontitle">Prerequisites</h4><p id="permission_0003__p45218912710">Before granting permissions to user groups, learn about permissions (<a href="overview_permission.html">Permissions</a>) for VPC.</p>
|
|
<p id="permission_0003__p3526959143112">To grant permissions for other services, learn about all <a href="https://docs.otc.t-systems.com/permissions/index.html" target="_blank" rel="noopener noreferrer">permissions</a> supported by IAM.</p>
|
|
</div>
|
|
<div class="section" id="permission_0003__section197617372174"><h4 class="sectiontitle">Process Flow</h4><div class="fignone" id="permission_0003__fig1447123814172"><a name="permission_0003__fig1447123814172"></a><a name="fig1447123814172"></a><span class="figcap"><b>Figure 1 </b>Process for granting VPC permissions</span><br><span><img class="vsd" id="permission_0003__image59111724141619" src="en-us_image_0000001818823522.png"></span></div>
|
|
<p id="permission_0003__p19447103881712"></p>
|
|
<ol id="permission_0003__ol15447153801718"><li id="permission_0003__li8447183891715"><p id="permission_0003__li8447183891715p0"><a name="permission_0003__li8447183891715"></a><a name="li8447183891715"></a>On the IAM console, <a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0030.html" target="_blank" rel="noopener noreferrer">create a user group and assign permissions to it</a> (<strong id="permission_0003__b1425143120319">VPC ReadOnlyAccess</strong> as an example).</p>
|
|
</li><li id="permission_0003__li194471738201718"><p id="permission_0003__li194471738201718p0"><a name="permission_0003__li194471738201718"></a><a name="li194471738201718"></a><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0031.html" target="_blank" rel="noopener noreferrer">Create an IAM user and add it to the created user group</a>.</p>
|
|
</li><li id="permission_0003__li1444753881716"><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0032.html" target="_blank" rel="noopener noreferrer">Log in as the IAM user</a> and verify permissions.<p id="permission_0003__p14448838131712">In the authorized region, perform the following operations:</p>
|
|
<ul id="permission_0003__ul0221541101419"><li id="permission_0003__li1522741121412">Choose <strong id="permission_0003__b1783014229115">Service List</strong> > <strong id="permission_0003__b17310185201212">Virtual Private Cloud</strong>. Then click <strong id="permission_0003__b2037131771212">Create VPC</strong> on the VPC console. If a message appears indicating that you have insufficient permissions to perform the operation, the <strong id="permission_0003__b47271649181319">VPC ReadOnlyAccess</strong> policy is in effect.</li><li id="permission_0003__li12221641131415">Choose another service from <strong id="permission_0003__b14740195166">Service List</strong>. If a message appears indicating that you have insufficient permissions to access the service, the <strong id="permission_0003__b0800543131614">VPC ReadOnlyAccess</strong> policy is in effect.</li></ul>
|
|
</li></ol>
|
|
</div>
|
|
</div>
|
|
<div>
|
|
<div class="familylinks">
|
|
<div class="parentlink"><strong>Parent topic:</strong> <a href="permission_0001.html">Permissions Management</a></div>
|
|
</div>
|
|
</div>
|
|
|