forked from docs/doc-exports
Reviewed-by: Hajba, László Antal <laszlo-antal.hajba@t-systems.com> Co-authored-by: fanqinying <fanqinying@huawei.com> Co-committed-by: fanqinying <fanqinying@huawei.com>
3.3 KiB
3.3 KiB
Creating an IAM User and Granting Enterprise Switch Permissions
This section describes how to use IAM to implement fine-grained permissions control for your enterprise switch resources. With IAM, you can:
- Create IAM users for employees based on the organizational structure of your enterprise. Each IAM user has their own security credentials, providing access to enterprise switch resources.
- Grant only the permissions required for users to perform a specific task.
If your account does not require individual IAM users, skip over this section.
Figure 1 shows the procedure for granting permissions.
Prerequisites
You have learned about the permissions supported by Enterprise Switch and choose policies or roles according to your requirements. Enterprise Switch uses the same system permissions as VPC. For details, see Permissions.
Process Flow
- Create a user group and assign permissions.
Create a user group on the IAM console, and assign the Tenant Guest policy to the group.
- Create a user and add the user to the user group.
Create a user on the IAM console and add the user to the group created in 1.
- Log in and verify permissions.
Click Service List and choose Enterprise Switch. Then click Create in the upper right corner. If the enterprise switch fails to be created, the Tenant Guest permission has taken effect.
Parent topic: Permissions Management
