Data Lake Compute manages user permissions through user authorization and work group authorization.
If users are granted different permissions from those in their work groups, all the granted permissions will take effect.
Select Permission management on the left sidebar in the Data Lake Compute console.
Create a work group.
Click Work group > Add work group. You can bind users to the created work group or create an empty work group. For detailed directions, see User and User Group
Authorize the work group.
After creating the work group, click Authorize in the Operation column to add permissions, including Data permission and Engine permission.
Create a user.
Add a user and bind the user to a work group: Click User > Add user. Set User type to General user and bind the user to a work group, so that the user can get all the permissions of the work group. If you set User type to Admin, you don't need to bind the user to a work group.
Authorize a user.
Authorize a user in the user list. Data permission and Engine permission can be granted, just like with a work group.
For detailed directions, see Sub-Account Permission Management.