Updated on 2024-03-15 GMT+08:00

Access Control for Cloud Eye

Cloud Eye interconnects with Identity and Access Management (IAM) . If you need to assign different permissions to employees in your enterprise to access your Cloud Eye resources, IAM is a good choice for fine-grained permissions management. IAM provides identity authentication, permissions management, and access control, helping you securely manage access to your Huawei Cloud resources.

Authentication

You can log in to Huawei Cloud using the following methods (see Figure 1):

  • Account login: Log in with the account that was created when you use Huawei Cloud. Your account has full access permissions for your cloud resources and makes payments for the use of these resources.
  • IAM user login: IAM users are created by an administrator to use specific cloud services.

    Federated user login: Federated users are registered with an enterprise IdP that is created by the administrator in IAM.

Figure 1 Logging in to Huawei Cloud

Access control

You need to configure system-defined or custom policies provided by Cloud Eye for IAM users to allow them to create or access Cloud Eye resources. For details, see Creating a User and Granting Permissions You are advised to create custom policies for Cloud Eye based on the principle of least privilege (PoLP).