CAM 概述
产品功能
应用场景
基本概念
使用限制
用户类型
| CAM中产品名 | 角色名称 | 角色类型 | 角色载体 |
|---|---|---|---|
| 数据加速器 GooseFS | GooseFS_QCSLinkedRoleInManageCloudService | 服务相关角色 | managecloudservice.goosefs.cloud.tencent.com |
使用场景: 当前角色为数据加速器GooseFS(GooseFS)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"action": [
"vpc:DescribeVpcEx",
"vpc:DescribeVpcPrivateIpAddresses",
"vpc:DescribeSubnetEx",
"cvm:RunInstances",
"cvm:TerminateInstances",
"cvm:DescribeInstancesStatus",
"cvm:DescribeInstances",
"cvm:DescribeImages",
"tat:RunCommand",
"tat:DescribeInvocations",
"tat:DescribeAutomationAgentStatus",
"cos:GetBucket",
"cos:GetBucketObjectVersions",
"cos:PutObject",
"cos:PutObjectCopy",
"cos:PostObject",
"cos:AppendObject",
"cos:GetObject",
"cos:HeadBucket",
"cos:HeadObject",
"cos:DeleteObject",
"cos:OptionsObject",
"cos:PostObjectRestore",
"cos:InitiateMultipartUpload",
"cos:UploadPart",
"cos:UploadPartCopy",
"cos:CompleteMultipartUpload",
"cos:AbortMultipartUpload",
"cos:ListMultipartUploads",
"cos:ListParts",
"tat:DescribeInvocationTasks",
"cvm:DeleteSecurityGroup",
"cvm:CreateSecurityGroupWithPolicies",
"cvm:DescribeSecurityGroups",
"cvm:DescribeSecurityGroupAssociationStatistics",
"cvm:DescribeDisasterRecoverGroups",
"cvm:DescribeDisasterRecoverGroupQuota",
"cvm:CreateDisasterRecoverGroup",
"cvm:ModifyDisasterRecoverGroupAttribute",
"cvm:DeleteDisasterRecoverGroups",
"cvm:CreateSecurityGroup",
"cvm:CreateSecurityGroupPolicy",
"cvm:DeleteSecurityGroupPolicy",
"cos:PostBucketInventory",
"cos:GetBucketNotification",
"cos:PutBucketNotification"
],
"resource": "*",
"effect": "allow"
},
{
"effect": "allow",
"action": "finance:*",
"resource": "qcs::cvm:::*"
}
]
}
文档反馈