Creating a User and Granting Permissions¶
This chapter describes how to use to implement fine-grained permissions control for your CloudSearch Service (CSS) resources. With IAM, you can:
Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing CSS resources.
Grant only the permissions required for users to perform a specific task.
Entrust a account or cloud service to perform efficient O&M on your CSS resources.
If your account does not require individual IAM users, skip this chapter.
This section describes the procedure for granting permissions (see Figure 1).
Before assigning permissions to user groups, you should learn about the system policies listed in Permissions Management.
Create a user group on the IAM console, and assign the CSS permission to the group.
Create a user on the IAM console and add the user to the group created in 1. Create a user group a....
Log in as an IAM user and verify permissions.
Log in to the CSS console as the created user, and verify that it only has read permissions for CSS.