Updated on 2025-02-17 GMT+08:00

Preparations

Before using MgC, you need to sign up for a HUAWEI ID or create an IAM user. This section describes how to sign up for a HUAWEI ID, enable Huawei Cloud services, complete real-name authentication, and create an IAM user.

Signing up for a HUAWEI ID, Enabling Huawei Cloud Services, and Completing Real-Name Authentication

If you already have a HUAWEI ID, skip this part.

  1. Visit Huawei Cloud and click Sign Up.
  2. Sign up for a HUAWEI ID and enable Huawei Cloud services.
  3. Complete real-name authentication.

Creating an IAM User

You can use your account to create IAM users to ensure the security of accounts and resources. For more information about IAM users, see Creating an IAM User. This section describes how to create an IAM user with permissions to access MgC. If you do not need to use any IAM users, skip this part.

  1. Visit Huawei Cloud. Click Console in the upper right corner. Sign in to the console using the HUAWEI ID you signed up for.
  2. Hover your cursor over the username in the upper right corner, and choose Identity and Access Management from the drop-down list.
  3. Create a user group and assign permissions to it.

    Create a user group. In the user group list, locate the user group you created and click Authorize in the Operation column. On the Authorize User Group page, search for MgC in the search box. Select the permissions to be assigned to the user group.

    For details about all system-defined policies supported by MgC, see Table 1.

    Table 1 System-defined policies supported by MgC

    Policy Name

    Description

    Type

    MgC FullAccess

    Administrator permissions for MgC. Users with these permissions can perform all operations on MgC.

    System-defined policy

    MgC ReadOnlyAccess

    Read-only permissions for MgC. Users with these permissions can only view MgC data.

    System-defined policy

    MgC DiscoveryAccess

    Permissions for resource discovery of MgC. Users with these permissions can use the resource discovery function of MgC and view MgC data.

    System-defined policy

    MgC AssessAccess

    Permissions for application assessment of MgC. Users with these permissions can use the resource discovery and application assessment functions of MgC and view MgC data.

    System-defined policy

    MgC MigrateAccess

    Permissions for application migration of MgC. Users with these permissions can use the resource discovery, application assessment, and application migration functions of MgC and view MgC data.

    System-defined policy

    MgC AppDiscoveryAccess

    Permissions for resource discovery of MgC. Users with these permissions can use the resource discovery and data collection functions of MgC and view MgC data.

    System-defined policy

    MgC MrrAccess

    Permissions for service verification of MgC. Users with these permissions can use the service verification function of MgC and view MgC data.

    System-defined policy

    For the common operations supported by each system-defined policy of MgC, see Table 2.

    Table 2 Common operations supported by each MgC system-defined policy

    Operation

    MgC

    FullAccess

    MgC ReadOnlyAccess

    MgC DiscoveryAccess

    MgC

    AssessAccesss

    MgC

    MigrateAccess

    MgC AppDiscoveryAccess

    Performing operations on MgC resources

    x

    x

    x

    x

    x

    Viewing MgC resources

    Discovering resources

    x

    Assessing applications

    x

    x

    x

    Migrating applications

    x

    x

    x

    x

    Discovering resources and collecting resource data

    x

    x

    x

    x

  4. Create an IAM user and add it to the user group.

    Create a user and add it to the user group authorized with MgC permissions in Step 3.

Obtaining Access Keys (AK/SK)

Access keys are identity credentials used to call APIs. The account administrator and IAM users can only use their own access keys to call APIs. For details about how to obtain an access key, see Access Keys.