tencent cloud

Tencent Cloud Organization

Product Introduction
Overview
Concepts
Purchase Guide
Operation Guide
Console Overview
Organization Settings
Department Management
Member Account Management
Member Finance Management
Member Access Management
Resource Management
Member Audit
Identity Center Management
API Documentation
History
Introduction
API Category
Making API Requests
Organization Settings APIs
Department and Member Management APIs
ListOrganizationIdentity
Unified Member Login APIs
Organization Service Management APIs
Organization Management Policy APIs
Resource Sharing APIs
Identity Center Management APIs
Identity Center User Management APIs
Identity Center User Group Management APIs
Identity Center Management SCIM Synchronization APIs
Identity Center Single Sign-On Management APIs
Identity Center Permission Configuration Management APIs
Identity Center Multi-Account Authorization Management APIs
Identity Center Sub-User Synchronization Management APIs
Data Types
Error Codes
TCO API 2018-12-25
Related Agreement
Statement of Tencent Cloud Customers’ Tencent Cloud Organization
FAQs
Concept
Basic
Operation
Glossary

Overview of Permission Configuration

PDF
Mode fokus
Ukuran font
Terakhir diperbarui: 2026-03-17 17:22:58
Permission Configuration is a configuration template used by Identity Center users to access accounts. It includes CAM's predefined strategies and supports custom policies. You can use this template to authorize Identity Center users on the account.

First Deployment of Permission Configuration

When you set permissions for users or user groups on the account, you need to specify a Permission Configuration. If no other users or user groups have deployed a Permission Configuration on that account, the Identity Center will perform the deployment actions for the Permission Configuration in the account's CAM for you. The deployment in CAM includes the following:
Create a CAM role with the Identity Center Synchronization type .
On the CAM role, bind the system policy and custom policy specified in the binding permission configuration.
If no authorizations have been made on the account, create an Identity Provider , allowing Identity Center users to use Role SSO log in to the account.
You can view the aforementioned CAM roles and Identity Providers in the CAM console of the account, but you cannot make any modifications or deletions .

Redeploy Permission Configuration

If the Permission Configuration has already been deployed on the account, but changes have been made, these changes will not automatically update to the account. You need to manually redeploy (add or remove system policies) to apply the changes.

Bantuan dan Dukungan

Apakah halaman ini membantu?

masukan