日本熟妇hd丰满老熟妇,中文字幕一区二区三区在线不卡 ,亚洲成片在线观看,免费女同在线一区二区

PTS服務(wù)關(guān)聯(lián)角色

本文介紹PTS服務(wù)關(guān)聯(lián)角色AliyunServiceRoleForPts以及如何刪除該角色。

背景信息

PTS服務(wù)關(guān)聯(lián)角色AliyunServiceRoleForPts是PTS在某些情況下,為了完成自身的某個功能,需要獲取其他云服務(wù)的訪問權(quán)限而提供的RAM角色。更多關(guān)于服務(wù)關(guān)聯(lián)角色的信息,請參見服務(wù)關(guān)聯(lián)角色

AliyunServiceRoleForPts應(yīng)用場景

PTS需要訪問應(yīng)用實時監(jiān)控服務(wù)ARMS什么是消息隊列 Kafka 版微服務(wù)引擎MSE企業(yè)級分布式應(yīng)用服務(wù)EDAS等云服務(wù)的資源時,可通過自動創(chuàng)建的PTS服務(wù)關(guān)聯(lián)角色AliyunServiceRoleForPts獲取訪問權(quán)限。

AliyunServiceRoleForPts權(quán)限說明

AliyunServiceRoleForPts具備以下云服務(wù)的訪問權(quán)限:

應(yīng)用實時監(jiān)控服務(wù)ARMS的訪問權(quán)限

 {
   "Action": [
     "arms:GetPrometheusApiToken",
     "arms:OpenVCluster",
     "arms:OpenArmsService",
     "arms:CheckServiceStatus",
     "arms:ListDashboards",
     "arms:GetExploreUrl"
   ],
   "Resource": "*",
   "Effect": "Allow"
 } 

云消息隊列 Kafka 版的訪問權(quán)限

{
  "Action": [
    "alikafka:GetInstanceList",
    "alikafka:GetTopicList"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

云數(shù)據(jù)庫 Tair(兼容 Redis)的訪問權(quán)限

{
  "Action": [
    "kvsrote:DescribeInstanceAttribute",
    "kvstore:DescribeInstances"
  ],
  "Resource": "*",
  "Effect": "Allow"
}        

云原生數(shù)據(jù)庫PolarDB的訪問權(quán)限

{
  "Action": [
    "polardb:DescribeDBClusters",
    "polardb:DescribeDatabases",
    "polardb:DescribeDBClusterEndpoints",
    "polardb:DescribeAccounts"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

微服務(wù)引擎MSE的訪問權(quán)限

 {
  "Action": [
    "mse:GetServiceListPage",
    "mse:GetServiceProvidersPage",
    "mse:GetServiceDetail",
    "mse:ListGatewayRoute"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

企業(yè)級分布式應(yīng)用服務(wù)EDAS的訪問權(quán)限

 {
  "Action": [
    "edas:GetServiceListPage",
    "edas:GetServiceProvidersPage",
    "edas:GetServiceMethodPage"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

日志服務(wù)SLS的訪問權(quán)限

 {
  "Action": [
    "log:ListLogStores",
    "log:GetLogs",
    "log:GetLogStoreLogs"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

云監(jiān)控服務(wù)的訪問權(quán)限

 {
  "Action": [
    "cms:NodeList",
    "cms:QueryMetricList",
    "cms:NodeStatusList",
    "cms:ListNodeStatus",
    "cms:GetNodeStatus",
    "cms:ListNode",
    "cms:ListNodeProcesses",
    "cms:CreateAgentInstallTask",
    "cms:GetProfile",
  ],
  "Resource": "*",
  "Effect": "Allow"
}

DDoS防護服務(wù)的訪問權(quán)限

 {
  "Action": [
    "ecs:DescribeInstances",
    "ecs:DescribeInstances",
    "ecs:DescribeInstanceMonitorData",
    "ecs:DescribeInstanceAttribute",
    "ecs:DescribeInstanceTypes",
    "ecs:DescribeInstanceDisks",
    "ecs:AuthorizeSecurityGroup",
    "ecs:RevokeSecurityGroup",
    "ecs:DescribeRegions",
    "ecs:DescribeSecurityGroups",
    "ecs:CreateNetworkInterface",
    "ecs:DeleteNetworkInterface",
    "ecs:DescribeNetworkInterfaces",
    "ecs:CreateNetworkInterfacePermission",
    "ecs:DescribeNetworkInterfacePermissions",
    "ecs:DeleteNetworkInterfacePermission"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

云服務(wù)器ECS的訪問權(quán)限

 {
  "Action": [
    "yundun-ddoscoo:DescribeInstances",
    "yundun-ddoscoo:DescribeInstanceDetails",
    "yundun-ddoscoo:DescribeInstanceList",
    "yundun-ddoscoo:DescribeInstanceSpecs",
    "yundun-ddoscoo:DescribeDomains",
    "yundun-ddoscoo:DescribeLayer7InstanceRelations"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

彈性公網(wǎng)IP的訪問權(quán)限

 {
  "Action": [
    "eip:DescribeEipAddresses",
    "eip:DescribeEipMonitorData"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

云數(shù)據(jù)庫RDS MySQL版的訪問權(quán)限

 {
  "Action": [
    "rds:DescribeDatabases",
    "rds:DescribeDBInstanceDetail",
    "rds:DescribeDBInstances",
    "rds:DescribeDBInstanceAttribute",
    "rds:DescribeSlowLogs",
    "rds:DescribeSlowLogRecords",
    "rds:DescribeErrorLogs",
    "rds:DescribeRegions"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

負(fù)載均衡SLB的訪問權(quán)限

 {
  "Action": [
    "slb:DescribeLoadBalancers",
    "slb:DescribeLoadBalancerAttribute",
    "slb:DescribeHealthStatus",
    "slb:DescribeRegions"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

Web應(yīng)用防火墻WAF的訪問權(quán)限

 {
  "Action": [
    "yundun-waf:DescribePayInfo",
    "yundun-waf:DescribeDomainNames",
    "yundun-waf:DescribeDomainConfig"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

專有網(wǎng)絡(luò)VPC的訪問權(quán)限

 {
  "Action": [
    "vpc:DescribeVpcs",
    "vpc:DescribeVSwitches",
    "vpc:DescribeVSwitchAttributes"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

阿里云容器服務(wù)的訪問權(quán)限

 {
  "Action": [
    "cs:ListClusters",
    "cs:GetClusterById",
    "cs:DescribeClusterInnerServiceKubeconfig",
    "cs:RevokeClusterInnerServiceKubeconfig"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

數(shù)據(jù)管理服務(wù)DMS的訪問權(quán)限

 {
  "Action": [
    "dms:SearchDatabase",
    "dms:ListTables",
    "dms:GetMetaTableDetailInfo",
    "dms:CreateStructSyncOrder",
    "dms:GetOrderBaseInfo"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

bss的訪問權(quán)限

 {
  "Action": [
    "bss:CreateOrder"
  ],
  "Resource": "*",
  "Effect": "Allow"
}

刪除AliyunServiceRoleForPts

如果您使用了PTS功能,然后需要刪除PTS服務(wù)關(guān)聯(lián)角色AliyunServiceRoleForPts,例如出于安全考慮,需要刪除該角色,則需要先明確刪除后的影響:刪除AliyunServiceRoleForPts后,無法使用服務(wù)測試、服務(wù)壓測功能。

刪除AliyunServiceRoleForPts的操作步驟如下:

  1. 使用阿里云賬號登錄RAM控制臺,在左側(cè)導(dǎo)航欄中單擊身份管理 > 角色

  2. 角色頁面創(chuàng)建角色右側(cè)的搜索框中,輸入AliyunServiceRoleForPts,自動搜索到PTS的服務(wù)關(guān)聯(lián)角色AliyunServiceRoleForPts。

  3. 在AliyunServiceRoleForPts的操作列單擊刪除

  4. 刪除角色對話框,單擊確定

常見問題

為什么我的RAM用戶無法自動創(chuàng)建PTS服務(wù)關(guān)聯(lián)角色AliyunServiceRoleForPts?

您需要擁有指定的權(quán)限,才能自動創(chuàng)建或刪除AliyunServiceRoleForPts。因此,在RAM用戶無法自動創(chuàng)建AliyunServiceRoleForPts時,您需為其添加以下權(quán)限策略。

{
    "Statement": [
        {
            "Action": [
                "ram:CreateServiceLinkedRole"
            ],
            "Resource": "acs:ram:*:主賬號ID:role/*",
            "Effect": "Allow",
            "Condition": {
                "StringEquals": {
                    "ram:ServiceName": [
                        "pts.aliyuncs.com"
                    ]
                }
            }
        }
    ],
    "Version": "1"
}
說明

請將主賬號ID替換為您實際的阿里云賬號ID。