tencent cloud

피드백

Authorizing a Sub-account Read/Write Access to All Files in Specified Directory Except Specified Files

마지막 업데이트 시간:2024-01-23 18:02:53
The organizational account CompanyExample (ownerUin: 12345678; appId: 1250000000) has a sub-account Developer that requires read/write permissions for all objects except the Object1 object in the dir1 directory of the Bucket1 bucket of the COS service in the Shanghai region under the CompanyExample account.
Solution A:
Step 1. Create the following policy according to the policy syntax:
{
"version": "2.0",
"statement":
[
{
"effect": "allow",
"action": "cos:*",
"resource": "qcs::cos:ap-shanghai:uid/1250000000:Bucket1-1250000000/dir1/*"
},
{
"effect": "deny",
"action": "cos:*",
"resource": "qcs::cos:ap-shanghai:uid/1250000000:Bucket1-1250000000/dir1/Object1"
}
]
}
Step 2. Associate the policy with the sub-account. For more information on authorization, please see Authorization Management.
Solution B:
Set the policy and ACL in the COS Console. For more information, please see ACL Practices.
문의하기

고객의 업무에 전용 서비스를 제공해드립니다.

기술 지원

더 많은 도움이 필요하시면, 티켓을 통해 연락 바랍니다. 티켓 서비스는 연중무휴 24시간 제공됩니다.

연중무휴 24시간 전화 지원