Attach custom access control policies to folders or members.
Background
-
By default, the FullAliyunAccess system policy is attached to each folder and member.
-
A policy attached to a folder also applies to all its subfolders and their members.
Attachment methods
-
Choose . Click a policy name. On the policy details page, go to the Principals tab to attach the policy to a folder or member.
-
Choose . In the Resource Organization View, click a folder. On the Policy tab, attach a policy to the folder.
-
Choose . In the Member List View , click a member's account UID. On the member details page, go to the Policy tab to attach a policy to the member.
Procedure
-
Log on to the Resource Management console with a management account.
-
In the navigation pane on the left, choose .
-
In the Resource Organization View view, click the target folder in the resource tree on the left.
-
On the Policy tab, click Attach Policy.
-
In the Attach Policy panel, select the policy to attach, and click OK.
The policy takes effect immediately on all members in the selected folder and its subfolders. To avoid service disruptions, verify that the policy produces the expected results.