doc-exports/docs/tms/umn/tms_04_0002.html
Wei, Hongmin 751359ff3f TMS UMN 0406 version
Reviewed-by: Hasko, Vladimir <vladimir.hasko@t-systems.com>
Co-authored-by: Wei, Hongmin <weihongmin1@huawei.com>
Co-committed-by: Wei, Hongmin <weihongmin1@huawei.com>
2023-06-01 09:43:25 +00:00

26 lines
4.1 KiB
HTML

<a name="tms_04_0002"></a><a name="tms_04_0002"></a>
<h1 class="topictitle1">Creating a User and Granting Permissions</h1>
<div id="body1559032253789"><p id="tms_04_0002__p8232511121319">This section describes how to use <a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0026.html" target="_blank" rel="noopener noreferrer">IAM</a> to implement fine-grained permissions control for your DMS resources. With IAM, you can:</p>
<ul id="tms_04_0002__ul7233101171310"><li id="tms_04_0002__li102331411131311">Create IAM users or user groups for personnel based on your enterprise's organizational structure. Each IAM user has their own identity credentials for accessing TMS resources.</li><li id="tms_04_0002__li9233171112135">Grant users only the permissions required to perform a given task based on their job responsibilities.</li><li id="tms_04_0002__li32331011151310">Entrust an account or a cloud service to perform efficient O&amp;M on your TMS resources.</li></ul>
<p id="tms_04_0002__p2233161113130">If your account meets your permissions requirements, you can skip this section.</p>
<p id="tms_04_0002__p08195915312"><a href="#tms_04_0002__fig33941114133916">Figure 1</a> shows the process flow for granting permissions.</p>
<div class="note" id="tms_04_0002__note1542317186111"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="tms_04_0002__p184241618161113">If users do not have the <strong id="tms_04_0002__b116601391768">TMS Administrator</strong> permissions, the following situations occur:</p>
<ul id="tms_04_0002__ul110817185128"><li id="tms_04_0002__li610881881213">Users cannot access the TMS console.</li><li id="tms_04_0002__li15681123111210">On consoles of other cloud services, users cannot view or use predefined tags created on the TMS console.</li></ul>
</div></div>
<div class="section" id="tms_04_0002__section11406145543717"><h4 class="sectiontitle">Prerequisites</h4><p id="tms_04_0002__p4530185320476">Before granting permissions, learn about the TMS permissions and select the permissions as required. For details about the system-defined permissions in RBAC supported by TMS, see <a href="tms_01_0009.html#tms_01_0009__section1814075113611">TMS Permissions</a>. To grant permissions for other services, learn about all <a href="https://docs.otc.t-systems.com/permissions/index.html" target="_blank" rel="noopener noreferrer">permissions</a>.</p>
</div>
<div class="section" id="tms_04_0002__section1239239103819"><h4 class="sectiontitle">Process Flow</h4><div class="fignone" id="tms_04_0002__fig33941114133916"><a name="tms_04_0002__fig33941114133916"></a><a name="fig33941114133916"></a><span class="figcap"><b>Figure 1 </b>Process for granting TMS permissions</span><br><span><img id="tms_04_0002__image1287411318349" src="en-us_image_0281161475.jpg"></span></div>
<ol id="tms_04_0002__ol196331133917"><li id="tms_04_0002__li563317113393"><p id="tms_04_0002__li563317113393p0"><a name="tms_04_0002__li563317113393"></a><a name="li563317113393"></a><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0030.html" target="_blank" rel="noopener noreferrer">create a user group and grant it permissions</a> (TMS Administrator as an example).</p>
</li><li id="tms_04_0002__li1763316116395"><p id="tms_04_0002__li1763316116395p0"><a name="tms_04_0002__li1763316116395"></a><a name="li1763316116395"></a><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0031.html" target="_blank" rel="noopener noreferrer">Create an IAM user and add it to the created user group</a>.</p>
</li><li id="tms_04_0002__li1063317123910"><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0032.html" target="_blank" rel="noopener noreferrer">Log in</a> and verify permissions.<p id="tms_04_0002__p16271336392">Log in to the TMS console as the created user, and verify that it only has the <strong id="tms_04_0002__b8221143174310">TMS Administrator</strong> permissions.</p>
</li></ol>
</div>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="tms_04_0000.html">Permissions Management</a></div>
</div>
</div>