CAM中产品名 | 角色名称 | 角色类型 | 角色载体 |
---|---|---|---|
腾讯云数据仓库 TCHouse-P | CDWPG_QCSLinkedRoleInPGCOS | 服务相关角色 | pgcos.cdwpg.cloud.tencent.com |
腾讯云数据仓库 TCHouse-P | CDWPG_QCSLinkedRoleInPGKMS | 服务相关角色 | pgkms.cdwpg.cloud.tencent.com |
使用场景: 当前角色为云数据仓库 PostgreSQL(CDWPG)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"action": [
"cos:AbortMultipartUpload",
"cos:GetBucket",
"cos:GetBucketACL",
"cos:GetBucketAccelerate",
"cos:GetBucketCORS",
"cos:GetBucketDomain",
"cos:GetBucketEncryption",
"cos:GetBucketIntelligentTiering",
"cos:GetBucketInventory",
"cos:GetBucketLifecycle",
"cos:GetBucketLocation",
"cos:GetBucketLogging",
"cos:GetBucketNotification",
"cos:GetBucketObjectVersions",
"cos:GetBucketOrigin",
"cos:GetBucketPolicy",
"cos:GetBucketReferer",
"cos:GetBucketReplication",
"cos:GetBucketTagging",
"cos:GetBucketVersionAcl",
"cos:GetBucketVersioning",
"cos:GetBucketWebsite",
"cos:GetObject",
"cos:GetObjectACL",
"cos:DeleteObject",
"cos:DeleteMultipleObjects",
"cos:GetObjectTagging",
"cos:GetObjectVersionAcl",
"cos:GetService",
"cos:HeadBucket",
"cos:HeadObject",
"cos:ListMultipartUploads",
"cos:ListParts",
"cos:OptionsObject",
"cos:AppendObject",
"cos:CompleteMultipartUpload",
"cos:InitiateMultipartUpload",
"cos:PostObject",
"cos:PostObjectRestore",
"cos:PutBucket",
"cos:PutBucketEncryption",
"cos:PutBucketIntelligentTiering",
"cos:PutBucketInventory",
"cos:PutBucketLifecycle",
"cos:PutBucketLogging",
"cos:PutBucketReplication",
"cos:PutBucketVersioning",
"cos:PutObject",
"cos:PutObjectCopy",
"cos:PutObjectTagging",
"cos:UploadPart",
"cos:UploadPartCopy",
"chdfs:DescribeMountPoint",
"chdfs:DescribeFileSystem",
"chdfs:DescribeAccessGroups",
"chdfs:DescribeAccessRules",
"chdfs:ModifyFileSystem",
"chdfs:ModifyAccessRules",
"chdfs:CreateAccessGroup",
"chdfs:CreateAccessRules",
"chdfs:AssociateAccessGroups",
"chdfs:DisassociateAccessGroups",
"chdfs:DeleteAccessGroup",
"chdfs:DeleteAccessRules",
"chdfs:DescribeFileSystems",
"chdfs:DescribeMountPoints"
],
"resource": [
"*"
]
}
]
}
使用场景: 当前角色为腾讯云数据仓库 TCHouse-P(CDWPG)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"action": [
"kms:ListKeyDetail",
"kms:CreateKey",
"kms:GenerateDataKey",
"kms:Decrypt",
"kms:BindCloudResource",
"kms:UnbindCloudResource"
],
"resource": "*",
"effect": "allow"
}
]
}
本页内容是否解决了您的问题?