Creating a User and Granting Permissions

For fine-grained management of CTS permissions, you can use Identity and Access Management (IAM). With IAM, you can:

  • Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing CTS resources.

  • Manage permissions on a principle of least permissions (PoLP) basis.

  • Entrust an account or cloud service to perform efficient O&M on your CTS resources.

If your account does not require individual IAM users, skip this section.

Prerequisites

Learn about the permissions (see Permissions) supported by CTS and choose policies or roles according to your requirements.

Process Flow

**Figure 1** Process of granting CTS permissions

Figure 1 Process of granting CTS permissions

  1. Create a user group and assign permissions.

    Create a user group on the IAM console, and attach the CTS Administrator policy to the group.

  2. Create a user and add the user to the user group.

    Create a user on the IAM console and add the user to the user group created in 1.

  3. Log in as the created user and verify permissions.

    Log in to the console by using the created user and verify permissions in the authorized region.