All Products
Search
Document Center

Resource Access Management:View RAM role details

Last Updated:Apr 02, 2026

After you create a Resource Access Management (RAM) role, you can view its details in the RAM console. This includes its basic information, permission policies, trust policy, and recent activity.

Procedure

  1. Log on to the RAM console as a RAM administrator.

  2. In the left-side navigation pane, choose Identities > Roles.

  3. On the Roles page, click the target RAM role.

  4. The role's details page opens. You can find the following information in the main section and on the available tabs:

    image

    • Basic Information: This section displays the RAM role's fundamental details, including its name, ID, Alibaba Cloud Resource Name (ARN), maximum session duration, creation time, and description.

    • Permissions tab: This tab lists the permission policies that are attached to the RAM role. These policies define what actions the role is allowed or denied to perform on which resources.

    • Trust Policy tab: This tab displays the RAM role's trust policy. The trust policy defines which principals (such as Alibaba Cloud accounts, RAM users, or services) are allowed to assume the role.

    • Events tab: This tab shows the recent API operations that were performed by using this RAM role. The console displays events from the last 90 days. For a longer-term audit history, you can use ActionTrail. For more information, see Create a trail.

    • Permission Audit tab: This tab displays information about when the permissions granted by the attached policies were last used. This is useful for identifying and removing unused permissions. For more information, see Overview of access auditing.