Under the corporate account CompanyExample (with ownerUin as 12345678), there is a sub-account named Developer. This sub-account requires operation permissions for all machines in the Guangzhou region under the corporate account CompanyExample.
Solution A:
The corporate account CompanyExample directly authorizes the preset policy QcloudCVMReadOnlyAccess to the sub-account Developer. For the method of authorization, please see Authorization Management.
Solution B:
1. Create a policy through policy syntax.
{"version": "2.0","statement": [{"action": "cvm:*","resource": "qcs::cvm:gz::*","effect": "allow"}]}
2. Grant this policy to the sub-account. For the authorization method, please see Authorization Management.