All Products
Search
Document Center

Resource Management:Attach a custom access control policy

Last Updated:Jul 17, 2026

Attach custom access control policies to folders or members.

Background

  • By default, the FullAliyunAccess system policy is attached to each folder and member.

  • A policy attached to a folder also applies to all its subfolders and their members.

Attachment methods

  • Choose Resource Directory > Control Policy. Click a policy name. On the policy details page, go to the Principals tab to attach the policy to a folder or member.

  • Choose Resource Directory > Management. In the Resource Organization View, click a folder. On the Policy tab, attach a policy to the folder.

  • Choose Resource Directory > Management . In the Member List View , click a member's account UID. On the member details page, go to the Policy tab to attach a policy to the member.

Procedure

  1. Log on to the Resource Management console with a management account.

  2. In the navigation pane on the left, choose Resource Directory > Management.

  3. In the Resource Organization View view, click the target folder in the resource tree on the left.

  4. On the Policy tab, click Attach Policy.

  5. In the Attach Policy panel, select the policy to attach, and click OK.

    The policy takes effect immediately on all members in the selected folder and its subfolders. To avoid service disruptions, verify that the policy produces the expected results.