Allowing Access to Cloud Assets
CBH has been interconnected with Key Management Service (KMS), Cloud Secret Management Service (CSMS), Elastic Cloud Server (ECS), and Relational Database Service (RDS), making it easier for you to use managed credentials on CBH.

After you authorize CBH to access KMS, CSMS, ECS, and RDS, it takes about 10 minutes before the bastion host can obtain the delegation token.
For details about how to create a secret, see Data Encryption Workshop - Credential Management.
For secrets invoked through the bastion host, the account and password must comply with Key specifications.
Example:
username:root
password:*****
Procedure
- Log in to the management console.
- Click
in the upper left corner and select a region or project. In the upper left corner of the page, click
and select a region. Choose Security & Compliance > Cloud Bastion Host to go to the CBH instance management page.
Figure 1 Instance listTable 1 Instance parameters Parameter
Description
Instance Name
Instance name you specify. It cannot be modified after the instance is created.
Status
Status of the instance, including the status of the standby host.
Instance Type
Instance type you select.
Login Address
Private IP address of the instance.
EIP
EIP of the instance.
Billing Mode
Billing mode of the current instance.
Enterprise Project
Enterprise project that the instance belongs to.
- Click Cloud Asset Authorization in the upper right corner.
- In the displayed dialog box, switch to
in the Operation column to enable the authorization.
Figure 2 Cloud asset authorization - For details about how to add a resource account, see Creating a Resource Account and Associating It with Resources.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot