Help Center> EventGrid> User Guide> Permissions Management> Creating a User and Granting EG Permissions
Updated on 2023-05-09 GMT+08:00

Creating a User and Granting EG Permissions

This section describes how to use Identity and Access Management (IAM) to implement fine-grained permissions control for your EG resources. With IAM, you can:

  • Create IAM users for employees based on the organizational structure of your enterprise. Each IAM user has their own security credentials to access EG resources.
  • Grant only the permissions required for users to perform a specific task.
  • Entrust an account or cloud service to perform professional and efficient O&M on your EG resources.

If your account does not require individual IAM users, skip this section.

This section describes the procedure for granting permissions (see Figure 1).

Prerequisites

Learn about the permissions (see System-defined roles and policies supported by EG) supported by EG and choose policies according to your requirements.

For the permissions of other services, see System Permissions.

Process Flow

Figure 1 Process for granting EG permissions

  1. Create a user group and assign permissions.

    Create a user group on the IAM console, and assign it the read-only permissions for EG.

  2. Create an IAM user and add them to the user group.

    Create a user on the IAM console and add the user to the group created in Step 1.

  3. Log in and verify permissions.

    Log in to the EG console as the created user, and verify that the user only has read permissions for EG.