Help Center/ Cloud Data Center / User Guide/ Permissions/ Creating an IAM User and Granting CloudDC Permissions
Updated on 2025-03-31 GMT+08:00

Creating an IAM User and Granting CloudDC Permissions

You can use Identity and Access Management (IAM) for fine-grained permissions control for your Cloud Data Center (DC). With IAM, you can:

  • Create IAM users for personnel based on your enterprise's organizational structure. Each IAM user has their own identity credentials for accessing CloudDC resources.
  • Grant only the permissions required for users to perform a specific task.
  • Entrust a Huawei Cloud account or a cloud service to perform efficient O&M on your CloudDC resources.

If your Huawei Cloud account does not require individual IAM users, you may skip this section.

Figure 1 shows the procedure for granting permissions.

Prerequisites

Before granting permissions to user groups, learn about system-defined permissions in for CloudDC in Table 1.

Table 1 System-defined permissions for CloudDC

Role/Policy Name

Description

Type

Dependencies

CloudDC FullAccess

Full permissions for CloudDC.

System-defined policy

None.

To grant permissions for other services, learn about all system-defined permissions supported by IAM.

Process Flow

Figure 1 Process for granting CloudDC permissions

  1. On the IAM console, create a user group and grant it permissions.

    Create a user group on the IAM console and assign the CloudDC FullAccess permissions to the group.

  2. Create an IAM user and add it to the created user group.

    Create a user on the IAM console and add the user to the group created in 1.

  3. Log in as the IAM user and verify permissions.

    In the authorized region, perform the following operations:

    Choose Service List > Cloud Data Center. Then click Try Now to go to the CloudDC overview page. If the page is displayed, the CloudDC FullAccess permissions are in effect.