If a RAM user of a management account assumes a role to log on to a member account, you can adjust the logon session duration for that role.
Log on to a member account by assuming a role
Resource Directory automatically creates a RAM role named ResourceDirectoryAccountAccessRole for each member and sets the management account as the trusted entity. You can use a RAM user of the management account, grant it the required permissions, and then assume the ResourceDirectoryAccountAccessRole of a member to log on to that member account. For more information, see Use a RAM role to log on to the Alibaba Cloud Management Console.
Navigate to Resource Management > Resource Directory. On the directory management page, select the target folder. On the Members tab, find the target member in the list and click Log On in the Actions column.
Adjust the logon session duration
When you log on to a member account by assuming the ResourceDirectoryAccountAccessRole role, your session is limited by the maximum session duration configured for that role. After the session expires, you are automatically logged out. On the role details page, click Edit to adjust the maximum session duration. Valid values: 3,600 seconds (1 hour) to 43,200 seconds (12 hours). Default value: 3,600 seconds (1 hour). For more information, see Set the maximum session duration for a RAM role.