You can revoke permissions that are no longer needed from a Resource Access Management (RAM) user group. This topic describes how to revoke permissions from a RAM user group. You can use one of the following methods to revoke permissions from a RAM user group:
After you revoke permissions from a RAM user group, the RAM users in the RAM user group no longer have the permissions to access specific resources. Before you revoke permissions from a RAM user group, make sure that the operation meets your business requirements.
Method 1: Revoke permissions from a RAM user group on the Groups page
Log on to the RAM console by using your Alibaba Cloud account.
In the left-side navigation pane, choose .
On the Group page, click the name of a group.
On the page that appears, click the Permissions tab, find the policy that you want to detach from the RAM user, and then click Revoke Permission in the Actions column.
In the Revoke Permission message, click Revoke Permission.
Method 2: Revoke permissions from a RAM user group on the Grants page
Log on to the RAM console by using your Alibaba Cloud account.
In the left-side navigation pane, choose .
On the Grants page, find the RAM user group and click Revoke Permission in the Actions column.
In the Revoke Permission message, click Revoke Permission.