CAM中产品名 | 角色名称 | 角色类型 | 角色载体 |
---|---|---|---|
私有网络 | VPC_QCSLinkedRoleInEipTat | 服务相关角色 | eiptat.vpc.cloud.tencent.com |
私有网络 | VPC_QCSLinkedRoleInSnapshot | 服务相关角色 | snapshot.vpc.cloud.tencent.com |
私有网络 | VPC_QCSLinkedRoleInVpcflowlog | 服务相关角色 | vpcflowlog.vpc.cloud.tencent.com |
私有网络 | VPC_QCSLinkedRoleInPrivateLink | 服务相关角色 | privatelink.vpc.cloud.tencent.com |
私有网络 | VPC_QCSLinkedRoleInFlowLogAdvanceAnalysis | 服务相关角色 | flowlogadvanceanalysis.vpc.cloud.tencent.com |
使用场景: 当前角色为私有网络(VPC)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"statement": [
{
"action": [
"tat:DescribeCommands",
"tat:DescribeInvocations",
"tat:DescribeInvocationTasks",
"tat:CreateCommand",
"tat:DeleteCommand",
"tat:InvokeCommand",
"tat:RunCommand"
],
"effect": "allow",
"resource": [
"*"
]
}
],
"version": "2.0"
}
使用场景: 当前角色为私有网络(VPC)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"action": [
"cos:GetService",
"cos:HeadBucket",
"cos:GetBucket",
"cos:PutBucket",
"cos:ListMultipartUploads",
"cos:GetObject*",
"cos:HeadObject",
"cos:GetBucketObjectVersions",
"cos:OptionsObject",
"cos:ListParts",
"cos:DeleteObject",
"cos:PostObject",
"cos:PostObjectRestore",
"cos:PutObject*",
"cos:InitiateMultipartUpload",
"cos:UploadPart",
"cos:UploadPartCopy",
"cos:CompleteMultipartUpload",
"cos:AbortMultipartUpload",
"cos:DeleteMultipleObjects",
"cos:AppendObject"
],
"resource": "*"
}
]
}
使用场景: 当前角色为私有网络(VPC)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"resource": [
"*"
],
"action": [
"ckafka:DescribeInstances",
"ckafka:DescribeTopic",
"ckafka:DescribeRoute",
"ckafka:DeleteRoute",
"ckafka:DescribeInstanceAttributes",
"ckafka:DescribeInstancesDetail",
"ckafka:CreateRoute"
]
}
]
}
使用场景: 当前角色为私有网络(VPC)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"action": [
"redis:DescribeInstances",
"cdb:DescribeDBInstances",
"clb:DescribeGatewayLoadBalancers",
"mongodb:DescribeDBInstances"
],
"resource": "*",
"effect": "allow"
}
]
}
使用场景: 当前角色为私有网络(VPC)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"action": [
"cls:DescribeLogsets",
"cls:CreateLogset",
"cls:CreateTopic",
"cls:DescribeTopics",
"cls:DeleteTopic",
"cls:DescribeIndex",
"cls:ModifyIndex",
"cls:CreateIndex",
"cls:DeleteIndex",
"cls:GetDashboard",
"cls:CreateDashboard",
"cls:DeleteDashboard",
"cls:ModifyDashboard",
"cls:ListDashboard",
"cls:pushLog"
],
"resource": "*",
"effect": "allow"
}
]
}
本页内容是否解决了您的问题?