forked from docs/doc-exports
Reviewed-by: Mützel, Andrea <andrea.muetzel@t-systems.com> Co-authored-by: liusiying77 <liusiying@huawei.com> Co-committed-by: liusiying77 <liusiying@huawei.com>
23 lines
4.7 KiB
HTML
23 lines
4.7 KiB
HTML
<a name="aom_02_0090"></a><a name="aom_02_0090"></a>
|
|
|
|
<h1 class="topictitle1">Creating a User and Granting Permissions</h1>
|
|
<div id="body32001227"><p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p09738234221">This chapter describes how to use <a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0026.html" target="_blank" rel="noopener noreferrer">Identity and Access Management (IAM)</a> for fine-grained permissions control for your AOM resources. With IAM, you can:</p>
|
|
<ul id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_ul99735237229"><li id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li397313237229">Create IAM users for employees based on the organizational structure of your enterprise. Each IAM user has their own security credentials, providing access to AOM resources.</li><li id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li109731523162213">Grant only the permissions required for users to perform a task.</li><li id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li397352362213">Entrust a cloud account or service to perform professional and efficient O&M on your AOM resources.</li></ul>
|
|
<p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p1797316235229">If your account does not need individual IAM users, then you may skip over this section.</p>
|
|
<p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p4973423162213">This section describes the procedure for granting permissions (see <a href="#aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_fig13279111625016">Figure 1</a>).</p>
|
|
<div class="section" id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_section18761381264"><h4 class="sectiontitle">Prerequisites</h4><p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p1093811714432">Learn about the permissions (see <a href="https://docs.otc.t-systems.com/usermanual/aom/aom_06_0021.html" target="_blank" rel="noopener noreferrer">AOM Permissions</a>) supported by AOM and choose policies or roles according to your requirements. For the permissions of other services, see <a href="https://docs.otc.t-systems.com/permissions/index.html" target="_blank" rel="noopener noreferrer">Permission Description</a>.</p>
|
|
</div>
|
|
<div class="section" id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_section346220507231"><h4 class="sectiontitle">Process</h4><div class="fignone" id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_fig13279111625016"><a name="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_fig13279111625016"></a><a name="en-us_topic_0263893539_en-us_topic_0169701339_fig13279111625016"></a><span class="figcap"><b>Figure 1 </b>Process for granting AOM permissions</span><br><span><img id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_image1828011610506" src="en-us_image_0263893658.png" width="NaN" height="NaN"></span></div>
|
|
<ol id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_ol16838205010233"><li id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li11838175082320"><a name="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li11838175082320"></a><a name="en-us_topic_0263893539_en-us_topic_0169701339_li11838175082320"></a><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0030.html" target="_blank" rel="noopener noreferrer">Create a user group and assign permissions</a>.<p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p1583812502237">Create a user group on the IAM console, and assign the <strong id="aom_02_0090__en-us_topic_0263893539_b5469171915211">AOM ReadOnlyAccess</strong> policy to the group.</p>
|
|
</li><li id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li5838135018235"><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0031.html" target="_blank" rel="noopener noreferrer">Create an IAM user</a>.<p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p2083845072319">Create a user on the IAM console and add the user to the group created in <a href="#aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li11838175082320">1</a>.</p>
|
|
</li><li id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_li6838135016230"><a href="https://docs.otc.t-systems.com/usermanual/iam/iam_01_0032.html" target="_blank" rel="noopener noreferrer">Log in</a> and verify permissions.<p id="aom_02_0090__en-us_topic_0263893539_en-us_topic_0169701339_p4838105019234">Log in to the AOM console as the created user, and verify that it only has read permissions for AOM.</p>
|
|
</li></ol>
|
|
</div>
|
|
</div>
|
|
<div>
|
|
<div class="familylinks">
|
|
<div class="parentlink"><strong>Parent topic:</strong> <a href="aom_02_0088.html">Permissions Management</a></div>
|
|
</div>
|
|
</div>
|
|
|