Resource Management is integrated with ActionTrail. In the ActionTrail console, you can query the management events that are generated when you manage Resource Management resources. ActionTrail can deliver management events to Logstores in Log Service or Object Storage Service (OSS) buckets. This way, you can audit the events in real time and locate the causes of issues.
ActionTrail generates management events when you manage cloud resources by using APIs or the Alibaba Cloud Management Console. The following table describes the management events of Resource Management that you can query in the ActionTrail console.
Accepts an invitation.
Accepts a resource sharing invitation.
Associates resources or members with a resource share.
Attaches a custom access control policy.
Attaches a policy to an object.
Binds a mobile phone number to a resource account.
Cancels the creation of a member of the cloud account type.
Cancels an invitation.
Cancels the switching for the type of a member from resource account to cloud account.
Performs a member deletion check.
Checks whether the Alibaba Cloud account is available.
Checks the service-linked role that you want to delete.
Checks whether a service-linked role can be deleted.
Checks the status of resource sharing.
Creates a member of the cloud account type.
Creates a custom access control policy.
Creates a folder.
Creates a policy.
Creates a version of a policy.
Creates a member of the resource account type.
Creates a resource group.
Creates a resource share.
Creates a Resource Access Management (RAM) role.
Creates a service-linked role.
Rejects an invitation.
Deletes a member of the resource account type.
Deletes a custom access control policy.
Deletes a folder.
Deletes invalid cloud accounts.
Deletes a policy.
Deletes a version of a policy.
Deletes a resource group.
Deletes a resource share.
Deletes a RAM role.
Deletes a service-linked role.
Removes a delegated administrator account.
Queries the regions in which Resource Sharing is available.
Deletes a resource directory.
Disables a resource directory.
Detaches a custom access control policy.
Detaches a policy from an object.
Disables the Control Policy feature.
Disassociates resources or accounts from a resource share.
Enables the Control Policy feature.
Enables a resource directory.
Enables resource sharing within a resource directory.
Queries the information about a member.
Queries the result of a member deletion check.
Queries the deletion status of a member.
Queries the overview information about an Alibaba Cloud account.
Queries the details of an access control policy.
Queries the status of the Control Policy feature.
Queries the information about a folder.
Queries the information about an invitation.
Queries the information about a billing account.
Queries the information about a policy.
Queries the information about a policy version.
Queries the information about a resource directory.
Queries a member of a resource directory.
Queries the information about a resource group.
Checks the status of the switch that controls whether you can query ACLs of a resource group.
Queries the information about a RAM role.
Queries the status of the task that is used to delete a service-linked role.
Queries a service-linked role template.
Enables a resource directory.
Checks whether a resource directory exists.
Initializes resource sharing.
Invites an account to join a resource directory.
Queries the information about the accounts in a folder.
Queries the information about all members in a resource directory.
Queries the information about members in a folder.
Queries the information about all parent folders of a specified folder.
Queries all members and folders in a specified parent folder.
Queries access control policies.
Queries the access control policies that are attached to a folder or member.
Queries delegated administrator accounts.
Queries the trusted services for which a member is specified as a delegated administrator account.
Queries the information about all subfolders of a folder.
Queries the invitations that are associated with an account.
Queries invitations in a resource directory.
Queries the parent folders of a subfolder.
Queries the attachment records of policies.
Queries the versions of a policy.
Queries resource groups.
Queries resources that can be accessed by the current account in resource groups.
Queries the association records of resource shares.
Queries the resource sharing invitations that are received.
Queries resource shares.
Queries RAM roles.
Queries RAM roles for a service.
Queries the resources you share with other accounts or the resources other accounts share with you.
Queries tag keys.
Queries tag values.
Queries the objects to which an access control policy is attached.
Queries the Alibaba Cloud services that are integrated with Resource Directory.
Moves a member from a folder to another.
Moves resources from one resource group to another.
Checks whether an account in a resource directory can be the main account.
Upgrades a member from a resource account to a cloud account.
Specifies a member in a resource directory as a delegated administrator account of a trusted service.
Rejects a resource sharing invitation.
Removes a member of the cloud account type.
Resends an email that is used to confirm the creation of a cloud account.
Resends an email that is used to confirm the upgrade from a resource account to a cloud account.
Sends a verification code to the mobile phone number that you want to bind to a resource account in a resource directory for security purposes.
Sends a verification code to the mobile phone number bound to a newly created account.
Sets the default version for a policy.
Enables or disables the member deletion feature.
Creates and adds tags to specified resources.
Removes tags from specified resources.
Changes the name of a member.
Updates a custom access control policy.
Changes the name of a folder.
Updates the basic information about a resource group.
Changes the status of the switch that controls whether you can query ACLs of a resource group.
Modifies the name of a resource share.
Updates the information about a RAM role.