Sets the asset scope for a specified control policy.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
yundun-bastionhost:SetPolicyAssetScope |
update |
*All Resource
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| InstanceId |
string |
Yes |
The instance ID of the bastion host. Note
You can invoke the DescribeInstances operation to obtain this parameter. |
bastionhost-cn-st220aw**** |
| RegionId |
string |
No |
The region ID of the bastion host. Note
For the mapping between region IDs and region names, see Regions and zones. |
cn-hangzhou |
| PolicyId |
string |
Yes |
The ID of the control policy to modify. Note
You can call the ListPolicies operation to obtain this parameter. |
7 |
| ScopeType |
string |
Yes |
The asset scope for the control policy. Valid values:
|
All |
| Hosts |
array<object> |
No |
The hosts to which the control policy applies. Note
Required when ScopeType is set to Host. A maximum of 500 hosts can be specified. |
|
|
object |
No |
|||
| HostId |
string |
No |
The host ID. |
1 |
| AccountScopeType |
string |
No |
The scope of host accounts to which the control policy applies. Valid values:
|
All |
| HostAccountIds |
array |
No |
The host accounts to which the control policy applies. Note
Required when AccountScopeType is set to AccountId. |
|
|
string |
No |
The list of host account IDs. |
["96"] |
|
| Databases |
array<object> |
No |
The databases to which the control policy applies. Note
Required when ScopeType is set to Database. A maximum of 500 databases can be specified. |
|
|
object |
No |
|||
| DatabaseId |
string |
No |
The database instance ID. |
3 |
| AccountScopeType |
string |
No |
The scope of database accounts to which the control policy applies. Valid values:
|
AccountId |
| DatabaseAccountIds |
array |
No |
The database accounts to which the control policy applies. Note
Required when AccountScopeType is set to AccountId. |
|
|
string |
No |
The list of database account IDs. |
["3"] |
|
| HostGroups |
array<object> |
No |
The asset groups to which the control policy applies. Note
Required when ScopeType is set to HostGroup. A maximum of 100 asset groups can be specified. |
|
|
object |
No |
|||
| HostGroupId |
string |
No |
The asset group ID. |
86 |
| AccountScopeType |
string |
No |
The scope of asset accounts to which the control policy applies. Valid values:
|
All |
| AccountNames |
array |
No |
The asset accounts to which the control policy applies. Note
Required when AccountScopeType is set to AccountNames. |
|
|
string |
No |
The asset account name. |
["root", "admin"] |
|
|
No |
The project ID. |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
|||
| RequestId |
string |
The unique request ID generated by Alibaba Cloud for this request. |
5EAB922E-F476-5DFA-9290-313C608E724B |
Examples
Success response
JSON format
{
"RequestId": "5EAB922E-F476-5DFA-9290-313C608E724B"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | InvalidParameter | The argument is invalid. | The argument is invalid. |
| 500 | InternalError | An unknown error occurred. | An unknown error occurred. |
| 404 | PolicyNotFound | The policy is not found. | The policy is not found. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.