1、策略配置,当前是分开产品配置多个策略,可以考虑写到一个策略里面 服务器策略json参考,具体业务需要给那些权限 ,可以添加和删除:
{
"statement": [
{
"action": [
"cvm:DescribeAccountAttributes",
"cvm:DescribeAccountQuota",
"cvm:DescribeAddressQuota",
"cvm:DescribeAutoSnapshotPolicies",
"cvm:DescribeCbsStorages",
"cvm:DescribeCbsStoragesForRecycle",
"cvm:DescribeDiagnosticReports",
"cvm:DescribeDisasterRecoverGroupQuota",
"cvm:DescribeDiskAssociatedAutoSnapshotPolicy",
"cvm:DescribeDiskAssociatedSnapshots",
"cvm:DescribeDisks",
"cvm:DescribeHostReleaseInfo",
"cvm:DescribeInstanceAttributes",
"cvm:DescribeInstanceChargeTypeConfigs",
"cvm:DescribeInstanceTypeConfigs",
"cvm:DescribeInstanceVolumeTarget",
"cvm:DescribeInstances",
"cvm:DescribeInstancesAttributes",
"cvm:DescribeInstancesDiskNum",
"cvm:DescribeInstancesOperationLimit",
"cvm:DescribeInstancesReturnable",
"cvm:DescribeInstancesStatus",
"cvm:DescribeRegions",
"cvm:DescribeReservedInventories",
"cvm:DescribeResourcesOverview",
"cvm:DescribeSecurityGroupAssociateInstances",
"cvm:DescribeSecurityGroupLimits",
"cvm:DescribeSecurityGroupPolicys",
"cvm:DescribeSnapshotOverview",
"cvm:DescribeSnapshotSharePermission",
"cvm:DescribeSubMethod",
"cvm:DescribeTaskInfo",
"cvm:DescribeTaskOperationLog",
"cvm:DescribeTaskType",
"cvm:DescribeUserDiskResources",
"cvm:DescribeUserLoginAttribute",
"cvm:DescribeUserResources",
"cvm:InquiryPriceRunInstances",
"cvm:ListTimeWindow",
"cvm:DescribeCbsAssociatedAsp"
],
"effect": "allow",
"resource": [
"qcs::cvm::uin/账号ID:instance/实例ID"
]
}
],
"version": "2.0"
}
{
"statement": [
{
"action": [
"monitor:DescribeAbnormalObjects",
"monitor:DescribeCurrentTimestamp",
"monitor:DescribeCvmAgentStatus",
"monitor:DescribeDashboardMetricData",
"monitor:DescribeDashboardMetrics",
"monitor:DescribeDashboardNamespaces",
"monitor:DescribeGraphData",
"monitor:DescribeMonitorProductByIds",
"monitor:DescribeOneClickAlarmConfigs",
"monitor:DescribePolicyGroupCount",
"monitor:DescribeStorageDuration",
"monitor:DescribeWebStorage",
"monitor:GetIntegrationProductList",
"monitor:GetMonitorData",
"monitor:GetMonitorDataInternal",
"monitor:DescribeAgentStatusHistory",
"monitor:DescribeMiniDashboardAlarmInfo",
"monitor:CreateWebStorage",
"monitor:DescribeProductHealthStatusList",
"monitor:DescribeProjectsList"
],
"effect": "allow",
"resource": [
"*"
]
}
],
"version": "2.0"
}
原创声明:本文系作者授权腾讯云开发者社区发表,未经许可,不得转载。
如有侵权,请联系 cloudcommunity@tencent.com 删除。
原创声明:本文系作者授权腾讯云开发者社区发表,未经许可,不得转载。
如有侵权,请联系 cloudcommunity@tencent.com 删除。