服務(wù)關(guān)聯(lián)角色
更新時(shí)間:
本文為您介紹服務(wù)關(guān)聯(lián)角色(AliyunServiceRoleForRPA)的背景信息和應(yīng)用場景,以及如何刪除服務(wù)關(guān)聯(lián)角色和RAM用戶(子賬號)創(chuàng)建服務(wù)關(guān)聯(lián)角色所需的權(quán)限。
背景信息
在某些場景下,為了實(shí)現(xiàn)RPA的成員賬號管理功能,您需要獲取其他云服務(wù)的訪問權(quán)限。阿里云提供了服務(wù)關(guān)聯(lián)角色 SLR(Service Linked Role)來滿足此類場景的需求。
更多關(guān)于服務(wù)關(guān)聯(lián)角色的信息,請參見服務(wù)關(guān)聯(lián)角色。
應(yīng)用場景
RPA需要訪問阿里云應(yīng)用身份服務(wù)(IDaaS)、文字識別(OCR)等相關(guān)的資源,通過服務(wù)關(guān)聯(lián)角色能夠獲取訪問權(quán)限。
AliyunServiceRoleForRPA介紹
角色名稱:AliyunServiceRoleForRPA
角色權(quán)限策略:AliyunServiceRolePolicyForRPA
權(quán)限說明:允許阿里云RPA使用此角色訪問您的IDaaS云身份服務(wù)、文字識別等產(chǎn)品服務(wù)
{
"Version": "1",
"Statement": [
{
"Effect": "Allow",
"Action": [
"eiam:CreateApplication",
"eiam:DeleteApplication",
"eiam:SetApplicationSsoConfig",
"eiam:GetApplicationSsoConfig",
"eiam:ListApplicationClientSecrets",
"eiam:ObtainApplicationClientSecret",
"eiam:EnableApplicationApiInvoke",
"eiam:SetApplicationProvisioningScope",
"eiam:SetApplicationGrantScope",
"eiam:ListInstances",
"eiam:ListApplications",
"eiam:UpdateApplicationAuthorizationType",
"eiam:EnableApplicationProvisioning",
"eiam:SetApplicationProvisioningConfig",
"eiam:GetApplicationProvisioningConfig",
"eiam:AuthorizeApplicationToOrganizationalUnits"
],
"Resource": "*"
},
{
"Effect": "Allow",
"Action": [
"ocr:RecognizeAdvanced",
"ocr:RecognizeHandwriting",
"ocr:RecognizeTableOcr",
"ocr:RecognizeBasic",
"ocr:RecognizeGeneral",
"ocr:RecognizeDocumentStructure",
"ocr:RecognizeIdcard",
"ocr:RecognizeBankCard",
"ocr:RecognizeMixedInvoices",
"ocr:RecognizeInvoice",
"ocr:RecognizeQuotaInvoice",
"ocr:RecognizeAirItinerary",
"ocr:RecognizeTrainInvoice",
"ocr:RecognizeTaxiInvoice",
"ocr:RecognizeRollTicket",
"ocr:RecognizeRideHailingItinerary",
"ocr:RecognizeCarVinCode",
"ocr:RecognizeCarNumber",
"ocr:RecognizeDrivingLicense",
"ocr:RecognizeVehicleLicense"
],
"Resource": "*"
},
{
"Action": "ram:DeleteServiceLinkedRole",
"Resource": "*",
"Effect": "Allow",
"Condition": {
"StringEquals": {
"ram:ServiceName": "rpa.aliyuncs.com"
}
}
}
]
}
刪除服務(wù)關(guān)聯(lián)角色
如果您需要?jiǎng)h除AliyunServiceRoleForRPA(服務(wù)關(guān)聯(lián)角色),請先確保您賬號下沒有正在使用該角色進(jìn)行成員管理、調(diào)用OCR能力等操作。如何刪除,請參見刪除服務(wù)關(guān)聯(lián)角色。
文檔內(nèi)容是否對您有幫助?