Help Center/ CodeArts Governance/ User Guide/ Authorizing IAM Users to Use CodeArts Governance
Updated on 2026-01-22 GMT+08:00

Authorizing IAM Users to Use CodeArts Governance

This section describes how to use IAM to implement fine-grained permissions control for your CodeArts Governance resources. With IAM, you can:

  • Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing CodeArts Governance resources.
  • Grant only the permissions required for users to perform a specific task.
  • Entrust other Huawei Cloud accounts or cloud services to perform efficient O&M on your CodeArts Governance resources.

If your Huawei Cloud account does not require individual IAM users, skip this chapter.

This section describes the procedure for granting permissions (see Figure 1).

Prerequisites

Before granting permissions to user groups, learn about system-defined permissions in Permissions. To grant permissions for other services, learn about all system-defined permissions supported by IAM.

Process

Figure 1 Process of granting CodeArts Governance permissions
  1. On the IAM console, create a user group and grant it permissions.

    On the IAM console, create a user group and assign the CodeArtsInspector Administrator permission to the group.

  2. Create an IAM user and add them to the created user group.

    On the IAM console, create a user and add them to the user group created in 1.

  3. Log in and verify permissions.

    In the authorized region, perform the following operations:

    1. Select CodeArts Governance from the service list, then choose Software Composition Analysis (SCA) > Binary SCA.
    2. Click Create Job. If a job can be created, the CodeArtsInspector Administrator permission has taken effect.