tencent cloud

CAM Service Role Authorization
Last updated:2025-09-26 10:08:53
CAM Service Role Authorization
Last updated: 2025-09-26 10:08:53
The use of Tencent Cloud Mesh involves service mesh-related cloud resources. To use Tencent Cloud Mesh features normally, you need to authorize the service role TCM_QCSRole of Tencent Cloud Mesh. The Tencent Cloud Mesh service can use related cloud resources only after authorization.
Scenario that requires service authorization is Initial Login to the Tencent Cloud Mesh Console. The scenario correspond to the policy QcloudAccessForTCMRole .

Initial Login to the Tencent Cloud Mesh Console

Authorization Scenario

When you log in to the Tencent Cloud Mesh console for the first time after registering and logging in to a Tencent Cloud account, you need to go to the Cloud access management page to grant the current account Tencent Cloud Mesh permissions for operating on TKE, SSL certificates, CLS, and other cloud resources. The permissions are granted by associating the preset policy QcloudAccessForTCMRole with the service role TCM_QCSRole of Tencent Cloud Mesh. This authorization process also involves the creation of a Tencent Cloud Mesh service role if you have not created a Tencent Cloud Mesh service role yet.

Authorization Steps

1. Log in to the Tencent Cloud Mesh console. For the initial login, the Service authorization window automatically pops up.



2. Click Go to cloud access management to enter the Service authorization page.
3. Click Grant to complete authentication.



Permission Content

TKE
Permission
Description
Resource
DescribeClusterSecurity
Querying cluster keys
All resources *
SSL certificate
Permission
Description
Resource
DescribeCertificateDetail
Obtaining certificate details
All resources *
CLS
Permission
Description
Resource
getLogset
Obtaining logset details
All resources *
getTopic
Obtaining log topic details
All resources *
createLogset
Creating a logset
All resources *
createTopic
Creating a log topic
All resources *
modifyIndex
Modifying an index
All resources *
listLogset
Obtaining a logset list
All resources *
listTopic
Obtaining a log topic list
All resources *
Was this page helpful?
You can also Contact Sales or Submit a Ticket for help.
Yes
No

Feedback