AliyunComputeNestUserFullAccess 是阿里云管理的產品系統策略,您可以將 AliyunComputeNestUserFullAccess 授權給 RAM 身份(RAM 用戶、RAM 用戶組和 RAM 角色),本策略定義了管理計算巢服務(ComputeNest)的用戶側權限。
策略詳情
類型:系統策略
創建時間:2022-01-05 05:27:00
更新時間:2022-09-08 01:48:58
當前版本:v3
策略內容
{
"Version": "1",
"Statement": [
{
"Action": [
"computenest:*"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"oos:GetParametersByPath",
"oos:GetParameter",
"oos:UpdateParameter"
],
"Resource": "acs:oos:*:*:parameter/computenest/*",
"Effect": "Allow"
},
{
"Action": [
"oos:GetSecretParametersByPath",
"oos:GetSecretParameter",
"oos:UpdateSecretParameter"
],
"Resource": "acs:oos:*:*:secretparameter/computenest/*",
"Effect": "Allow"
},
{
"Action": [
"kms:GetSecretValue",
"kms:PutSecretValue"
],
"Resource": "acs:kms:*:*:secret/oos/computenest/*",
"Effect": "Allow"
},
{
"Action": [
"ram:CreateServiceLinkedRole"
],
"Resource": "*",
"Effect": "Allow",
"Condition": {
"StringEquals": {
"ram:ServiceName": [
"user.computenest.aliyuncs.com"
]
}
}
},
{
"Action": [
"ram:CreateRole",
"ram:GetRole"
],
"Resource": "acs:ram:*:*:role/AliyunCloudMonitorSendOperationMessageToComputeNestRole",
"Effect": "Allow"
}
]
}
相關文檔
文檔內容是否對您有幫助?