Help Center> VPC Endpoint> Service Overview> Security> Identity and Access Management
Updated on 2024-05-09 GMT+08:00

Identity and Access Management

Permissions Management

You can use Identity and Access Management (IAM) to control access to your VPC Endpoint resources. IAM permissions define which actions on your cloud resources are allowed or denied. After creating an IAM user, the administrator needs to add it to a user group and grant the permissions required by VPC Endpoint to the user group. Then, all users in this group automatically inherit the granted permissions.

For details, see Permissions.

Access Control

  • To control the access to a VPC endpoint service in one account from a VPC endpoint in another, configure a whitelist for the VPC endpoint service. For details, see Managing Whitelist Records of a VPC Endpoint Service.
  • To control IP addresses and CIDR blocks that can access a VPC endpoint, configure a whitelist. When or after purchasing a VPC endpoint, you can enable or disable access control for the VPC endpoint, and add or delete a whitelist record. For details, see Configuring Access Control for a VPC Endpoint.