Cloud Access Management already supports permission management for most Cloud Services. This document mainly introduces relevant information about the cloud product services that support Cloud Access Management (CAM). Specific dimensions include authorization granularity, console, authorization based on tags, reference documentation, etc. The following list separately lists the services supported by CAM under various major product categories on the cloud platform. Definitions for the information in the table are as follows:
Service: The name of the cloud service that supports CAM, click on the link to the corresponding product service documentation for quick access to relevant information.
Authorization Granularity: The minimum authorization granularity provided by the current service. Authorization granularity is divided into three levels of granularity: service level, operation level, and resource level.
Service Level: Defines whether access permissions to the entire service are granted, divided into allowing full operational permissions for the service or denying all operational permissions for the service.
Operation Level: Defines whether access permissions to specific interfaces (APIs) of the service are granted, for example: authorizing an account to perform read-only operations on the Cloud Virtual Machine service.
Resource Level: Defines whether access permissions to specific resources are granted. This is the finest authorization granularity, for example: authorizing an account to only read and write operations on a specific Cloud Virtual Machine.
Console: Indicates whether sub-accounts can access the current service through the console. "?" indicates support, - indicates temporary lack of support.
Authorization Based on Tags: Indicates whether the current service supports permission management based on tags. "?" indicates support, "-" indicates temporary lack of support.
Reference Documentation: Link to documents related to CAM for the current service. "-" indicates none available.